Longitudinal performance analysis of machine learning based Android malware detectors

dc.cclicenceCC-BY-NCen
dc.contributor.authorYerima, Suleiman
dc.contributor.authorKhan, Sarmadullah
dc.date.acceptance2019-03-26
dc.date.accessioned2019-05-16T13:01:27Z
dc.date.available2019-05-16T13:01:27Z
dc.date.issued2019-06
dc.description.abstractThis paper presents a longitudinal study of the performance of machine learning classifiers for Android malware detection. The study is undertaken using features extracted from Android applications first seen between 2012 and 2016. The aim is to investigate the extent of performance decay over time for various machine learning classifiers trained with static features extracted from date-labelled benign and malware application sets. Using date-labelled apps allows for true mimicking of zero-day testing, thus providing a more realistic view of performance than the conventional methods of evaluation that do not take date of appearance into account. In this study, all the investigated machine learning classifiers showed progressive diminishing performance when tested on sets of samples from a later time period. Overall, it was found that false positive rate (misclassifying benign samples as malicious) increased more substantially compared to the fall in True Positive rate (correct classification of malicious apps) when older models were tested on newer app samples.en
dc.funderNo external funderen
dc.identifier.citationYerima, S. and Khan, S. (2019) Longitudinal performance analysis of machine learning based Android malware detectors. International Conference on Cyber Security and Protection of Digital Services (Cyber Security 2019), Oxford, UK, June 3-4, 2019.en
dc.identifier.urihttps://www.dora.dmu.ac.uk/handle/2086/17840
dc.language.isoenen
dc.peerreviewedYesen
dc.researchinstituteCyber Technology Institute (CTI)en
dc.subjectAndroid malware detectionen
dc.subjectLongitudinal performance analysisen
dc.subjectStatic analysisen
dc.subjectMachine learningen
dc.subjectAndroid securityen
dc.titleLongitudinal performance analysis of machine learning based Android malware detectorsen
dc.typeConferenceen

Files

Original bundle
Now showing 1 - 1 of 1
Loading...
Thumbnail Image
Name:
yerima-cyber-security-2019.pdf
Size:
797.86 KB
Format:
Adobe Portable Document Format
Description:
Main article
License bundle
Now showing 1 - 1 of 1
No Thumbnail Available
Name:
license.txt
Size:
4.2 KB
Format:
Item-specific license agreed upon to submission
Description: