09.08.2015 Views

Hack.lu edition 2012 A forensic analysis of Android Malware

Hack.lu edition 2012 A forensic analysis of Android Malware

Hack.lu edition 2012 A forensic analysis of Android Malware

SHOW MORE
SHOW LESS
  • No tags were found...

You also want an ePaper? Increase the reach of your titles

YUMPU automatically turns print PDFs into web optimized ePapers that Google loves.

QuestionWe have what we are looking for by picking in market categoriesYes but in our approach we did not take yet the information <strong>of</strong> malware distribution indifferent categoriesLet’s see if we can rely on packaging pattern for isolating malware in categoriesExample : The APP_WALLPAPER categoryBy observing the same metric (i.e. certs. which have signed the most application on agiven day)We isolate 334 apps for Sig. by cert. > 2272 (81.44%) are ’malicious’272=42% <strong>of</strong> malware in this categoryNoteThis search works also inside categories. We can increase our probability <strong>of</strong> findingmalware.K. Allix, Q. Jerome (SnT) <strong>Hack</strong>.<strong>lu</strong> <strong>Hack</strong>.<strong>lu</strong> <strong>2012</strong>-24-10 26 / 33

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!