Situational Awareness Framework for Threat Intelligence

Measurement of Android Malware

Mookyu Park1, Junwoo Seo1, Jaehyeok Han1, Haengrok Oh2, and Kyungho Lee1+

 

1School of Information Security, Korea University, 145, Anam-ro, Seongbuk-gu, Seoul, Republic of Korea

{ctupmk, junuseo, one01h, kevinlee}@korea.ac.kr

2Agency for Defense Development(ADD), 460, Ogeum-ro, Songpa-gu, Seoul, Republic of Korea

haengrok@add.re.kr

 

Abstract

With the development of the Internet of Things (IoT) technology, various devices are connected to the network. The availability of mobile devices is increasing to remotely control these electronic products. As the importance of mobile devices increases, operating systems such as Android OS and iOS are targeted for cyber attacks. In addition, mobile devices are used to manage business data as well as private areas, including text messages and contacts, so the risk of attack is also increasing. This paper proposes threat intelligence evaluation for mobile malware from the viewpoint of situational awareness by extracting features that can detect Android malware using machine learning algorithms.

Keywords: Situational Awareness, Threat Intelligence, Android Malware, Threat Measurement.

 

+: Corresponding author: Kyungho Lee
School of Information Security, Korea University, 145, Anam-ro, Seongbuk-gu, Seoul, Republic of Korea,
Tel: +82-(0)2-3290-4885, Email: kevinlee@korea.ac.kr

 
Journal of Wireless Mobile Networks, Ubiquitous Computing, and Dependable Applications
 (JoWUA)

Vol. 9, No. 3, pp. 25-38, September 2018 [pdf]
DOI: 10.22667/JOWUA.2018.09.30.025