节点文献

移动网络中恶意代码优化检测仿真研究

Research on Malware Optimizing Detection Simulation in Mobile Network

  • 推荐 CAJ下载
  • PDF下载
  • 不支持迅雷等下载工具,请取消加速工具后下载。

【作者】 芦天亮冯朝辉蔡满春刘颖卿

【Author】 LU Tian-liang;FENG Zhao-hui;CAI Man-chun;LIU Ying-qing;CIC of Security and Law for Cyberspace,People’s Public Security University of China;Information and Network Security Institute,People’s Public Security University of China;Research Institute of China Mobile Communications Co.Ltd.;

【机构】 中国人民公安大学网络空间安全与法治协同创新中心中国人民公安大学信息技术与网络安全学院中国移动通信有限公司研究院

【摘要】 针对现有移动恶意代码检测准确率低和检测器生成质量差等问题,为了提高检测器对非我空间的覆盖率,提出了一种基于超椭球免疫理论的移动恶意代码检测模型。利用动态和静态分析结合的方法全面提取和表征移动恶意代码特征,采用超椭球对免疫检测器进行编码。基于阴性选择算法通过免疫耐受生成成熟检测器,对亲和度较高的超椭球检测器进行克隆变异实现检测器的优化,获得检测性能更加优良的变异后代。最后,对收集的Android恶意应用样本进行仿真,结果表明,所提出模型生成的超椭球检测器具有较高的恶意代码检测效率和准确率。

【Abstract】 According to the problem of low detection rate and bad quality of generated detectors,to improve the non-self space coverage,a mobile malware detection model based on hyper-ellipsoid immune theory was proposed.The method of combined dynamic and static analysis was used to comprehensively extract and characterize mobile malware characteristics,and immune detectors were encoded based on hyper-ellipsoid.Mature detectors were generated through immune tolerance based on negative selection algorithm.Hyper-ellipsoid detectors were optimized through clone,the high affinity detectors were mutated,and the offspring with better detection performances were obtained.Finally,Android malicious application samples were collected and experimental simulation was carried out.The results show that the proposed model has higher detection efficiency and accuracy.

【关键词】 免疫理论超椭球移动恶意代码检测
【Key words】 Immune theoryHyper-ellipsoidMobile malwareDetection
【基金】 国家自然科学基金(61602489);赛尔网络下一代互联网技术创新项目(NGII20160405)
  • 【文献出处】 计算机仿真 ,Computer Simulation , 编辑部邮箱 ,2017年08期
  • 【分类号】TP393.08
  • 【被引频次】2
  • 【下载频次】73
节点文献中: 

本文链接的文献网络图示:

本文的引文网络