Arrow Research search
Back to FormaliSE

FormaliSE 2017

Model Checking for Mobile Android Malware Evolution

Conference Paper Security Verification Formal Methods ยท Logic in Computer Science

Abstract

Software engineering researchers have largely demonstrated that newer versions of software make use of previous versions of existing software. No exception to this rule for the so-called malicious software, that frequently evolves in order to evade the detection by antimalware. As matter of fact, mobile malicious programs, such as trojans, are frequently related to previous malware through evolutionary relationships. Discovering those relationships and constructing a phylogenetic model is expected to be helpful for analyzing new malware and for establishing a principled naming scheme. In this paper we propose a model checking based method to infer mobile malware phylogenetic trees. We demonstrate, implementing our approach in the droid-Sapiens tool, that mobile malware families come from an ancestor and they infuence own descendant, basing on the payload that they exhibit.

Authors

Keywords

  • Malware
  • Mobile communication
  • Model checking
  • Androids
  • Humanoid robots
  • Phylogeny
  • Matter Of Fact
  • Planktonic
  • Samples In Order
  • Metamorphic
  • Network Resources
  • Malicious Behavior
  • System Calls
  • Signature Extraction
  • Row Block
  • security
  • evolution
  • phylogenesys

Context

Venue
IEEE/ACM International Conference on Formal Methods in Software Engineering
Archive span
2013-2025
Indexed papers
156
Paper id
242649904628351446
v2026.09.13