{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2025,3,25]],"date-time":"2025-03-25T23:55:11Z","timestamp":1742946911297,"version":"3.40.3"},"publisher-location":"Cham","reference-count":30,"publisher":"Springer Nature Switzerland","isbn-type":[{"type":"print","value":"9783031663253"},{"type":"electronic","value":"9783031663260"}],"license":[{"start":{"date-parts":[[2024,1,1]],"date-time":"2024-01-01T00:00:00Z","timestamp":1704067200000},"content-version":"tdm","delay-in-days":0,"URL":"https:\/\/www.springernature.com\/gp\/researchers\/text-and-data-mining"},{"start":{"date-parts":[[2024,1,1]],"date-time":"2024-01-01T00:00:00Z","timestamp":1704067200000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/www.springernature.com\/gp\/researchers\/text-and-data-mining"}],"content-domain":{"domain":["link.springer.com"],"crossmark-restriction":false},"short-container-title":[],"published-print":{"date-parts":[[2024]]},"DOI":"10.1007\/978-3-031-66326-0_10","type":"book-chapter","created":{"date-parts":[[2024,7,29]],"date-time":"2024-07-29T12:59:46Z","timestamp":1722257986000},"page":"151-165","update-policy":"https:\/\/doi.org\/10.1007\/springer_crossmark_policy","source":"Crossref","is-referenced-by-count":0,"title":["Towards Behavior-Based Analysis of\u00a0Android Obfuscated Malware"],"prefix":"10.1007","author":[{"given":"Zakaria","family":"Sawadogo","sequence":"first","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Muhammad","family":"Taimoor Khan","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"George","family":"Loukas","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Jean-Marie","family":"Dembele","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Georgia","family":"Sakellari","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Gervais","family":"Mendy","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"297","published-online":{"date-parts":[[2024,7,30]]},"reference":[{"key":"10_CR1","unstructured":"Android Malware Detection$$|$$Kaggle. https:\/\/www.kaggle.com\/datasets\/defensedroid\/android-malware-detection?select=Services+Dataset.csv"},{"key":"10_CR2","unstructured":"Kaspersky Security Bulletin 2022. Statistics $$|$$ Securelist. https:\/\/securelist.com\/ksb-2022-statistics\/108129\/"},{"key":"10_CR3","unstructured":"Z3 Theorem Prover. https:\/\/github.com\/Z3Prover"},{"issue":"10","key":"10_CR4","first-page":"30","volume":"8","author":"MT Ahvanooey","year":"2017","unstructured":"Ahvanooey, M.T., Li, P.Q., Rabbani, M., Rajput, A.R.: A survey on smartphones security: software vulnerabilities. Malware Attacks 8(10), 30\u201345 (2017)","journal-title":"Malware Attacks"},{"key":"10_CR5","doi-asserted-by":"publisher","first-page":"509","DOI":"10.1016\/j.future.2020.02.002","volume":"107","author":"M Alazab","year":"2020","unstructured":"Alazab, M., Alazab, M., Shalaginov, A., Mesleh, A.: Intelligent mobile malware detection using permission requests and API calls. Futur. Gener. Comput. Syst. 107, 509\u2013521 (2020). https:\/\/doi.org\/10.1016\/j.future.2020.02.002","journal-title":"Futur. Gener. Comput. Syst."},{"key":"10_CR6","doi-asserted-by":"publisher","DOI":"10.1016\/j.softx.2020.100403","volume":"11","author":"S Aonzo","year":"2020","unstructured":"Aonzo, S., Georgiu, G.C., Verderame, L., Merlo, A.: Obfuscapk: an open-source black-box obfuscation tool for Android apps. SoftwareX 11, 100403 (2020). https:\/\/doi.org\/10.1016\/j.softx.2020.100403","journal-title":"SoftwareX"},{"key":"10_CR7","unstructured":"Barrett, C., Stump, A., Tinelli, C., et\u00a0al.: The smt-lib standard: version 2.0. In: Proceedings of the 8th International Workshop on Satisfiability Modulo Theories (Edinburgh, UK), vol.\u00a013, p.\u00a014 (2010)"},{"key":"10_CR8","doi-asserted-by":"publisher","unstructured":"Canfora, G., Martinelli, F., Mercaldo, F., Nardone, V., Santone, A., Visaggio, C.A.: LEILA: Formal Tool for Identifying Mobile Malicious Behaviour; LEILA: Formal Tool for Identifying Mobile Malicious Behaviour (2019). https:\/\/doi.org\/10.1109\/TSE.2018.2834344","DOI":"10.1109\/TSE.2018.2834344"},{"key":"10_CR9","doi-asserted-by":"publisher","unstructured":"Carrier, T., Victor, P., Tekeoglu, A., Lashkari, A.H.: Detecting Obfuscated Malware using Memory Feature Engineering. https:\/\/doi.org\/10.5220\/0010908200003120","DOI":"10.5220\/0010908200003120"},{"key":"10_CR10","doi-asserted-by":"publisher","unstructured":"Cimitile, A., Martinelli, F., Mercaldo, F., Nardone, V., Santone, A.: Formal methods meet mobile code obfuscation identification of code reordering technique. In: 2017 IEEE 26th International Conference on Enabling Technologies: Infrastructure for Collaborative Enterprises (WETICE), pp. 263\u2013268 (2017). https:\/\/doi.org\/10.1109\/WETICE.2017.23","DOI":"10.1109\/WETICE.2017.23"},{"key":"10_CR11","unstructured":"Dunaev, D., Lengyel, L.: Complexity of a special deobfuscation problem"},{"key":"10_CR12","doi-asserted-by":"publisher","unstructured":"Ezekiel, O.O., Oluwasola, O.A., Martins, I.: An Evaluation of some Machine Learning Algorithms for the detection of Android Applications Malware (January 2021) (2020). https:\/\/doi.org\/10.25046\/aj0506208","DOI":"10.25046\/aj0506208"},{"key":"10_CR13","doi-asserted-by":"publisher","unstructured":"Iadarola, G., Martinelli, F., Mercaldo, F., Santone, A.: Formal methods for android banking malware analysis and detection. In: 2019 6th International Conference on Internet of Things: Systems, Management and Security, IOTSMS 2019, pp. 331\u2013336, October 2019. https:\/\/doi.org\/10.1109\/IOTSMS48152.2019.8939172","DOI":"10.1109\/IOTSMS48152.2019.8939172"},{"key":"10_CR14","unstructured":"Inc, G.: Kotlin and Android | Android. https:\/\/developer.android.com\/kotlin"},{"key":"10_CR15","doi-asserted-by":"publisher","unstructured":"Khan, M.T., Serpanos, D., Shrobe, H., Yousuf, M.M.: Rigorous machine learning for secure and autonomous cyber physical systems. In: 2020 25th IEEE International Conference on Emerging Technologies and Factory Automation (ETFA), vol.\u00a01, pp. 1815\u20131819 (2020). https:\/\/doi.org\/10.1109\/ETFA46521.2020.9212074","DOI":"10.1109\/ETFA46521.2020.9212074"},{"issue":"7","key":"10_CR16","doi-asserted-by":"publisher","first-page":"72","DOI":"10.1109\/MC.2019.2913138","volume":"52","author":"MT Khan","year":"2019","unstructured":"Khan, M.T., Shrobe, H.: Security of cyberphysical systems: chaining induction and deduction. Computer 52(7), 72\u201375 (2019). https:\/\/doi.org\/10.1109\/MC.2019.2913138","journal-title":"Computer"},{"key":"10_CR17","doi-asserted-by":"crossref","unstructured":"Liu, K., Xu, S., Xu, G., Sun, D., Liu, H.: A review of android malware detection approaches based on machine learning, pp. 124579\u2013124607 (2020)","DOI":"10.1109\/ACCESS.2020.3006143"},{"key":"10_CR18","doi-asserted-by":"publisher","unstructured":"Mercaldo, F., Santone, A.: Formal equivalence checking for mobile malware detection and family classification. IEEE Trans. Softw. Eng. 48(7), 2643\u20132657 (2022). https:\/\/doi.org\/10.1109\/TSE.2021.3067061","DOI":"10.1109\/TSE.2021.3067061"},{"key":"10_CR19","doi-asserted-by":"publisher","unstructured":"Millar, S., McLaughlin, N., Del Rincon, J.M., Miller, P., Zhao, Z.: DANdroid: a multi-view discriminative adversarial network for obfuscated android malware detection. In: CODASPY 2020 - Proceedings of the 10th ACM Conference on Data and Application Security and Privacy, pp. 353\u2013364, March 2020. https:\/\/doi.org\/10.1145\/3374664.3375746","DOI":"10.1145\/3374664.3375746"},{"key":"10_CR20","doi-asserted-by":"publisher","DOI":"10.1016\/j.cosrev.2020.100358","volume":"39","author":"A Razgallah","year":"2021","unstructured":"Razgallah, A., Khoury, R., Hall\u00e9, S., Khanmohammadi, K.: A survey of malware detection in Android apps: recommendations and perspectives for future research. Comput. Sci. Rev. 39, 100358 (2021). https:\/\/doi.org\/10.1016\/j.cosrev.2020.100358","journal-title":"Comput. Sci. Rev."},{"key":"10_CR21","unstructured":"Salah, Y., Hamed, I., Nabil, S., Abdulkader, A., Mostafa, M.s.M.: Mobile malware detection: a survey 17(1) (2019)"},{"key":"10_CR22","doi-asserted-by":"publisher","unstructured":"Sawadogo, Z., Dembele, J.M., Tahar, A., Mendy, G., Ouya, S.: DeepMalOb: deep detection of obfuscated android malware. In: Ngatched Nkouatchah, T.M., Woungang, I., Tapamo, J.R., Viriri, S. (eds.) Pan-African Artificial Intelligence and Smart Systems, pp. 307\u2013318. Springer, Cham (2023). https:\/\/doi.org\/10.1007\/978-3-031-25271-6_19","DOI":"10.1007\/978-3-031-25271-6_19"},{"key":"10_CR23","doi-asserted-by":"publisher","unstructured":"Sawadogo, Z., Mendy, G., Dembele, J.M., Ouya, S.: Android malware detection: Investigating the impact of imbalanced data-sets on the performance of machine learning models. In: 2022 24th International Conference on Advanced Communication Technology (ICACT), pp. 435\u2013441 (2022). https:\/\/doi.org\/10.23919\/ICACT53585.2022.9728833","DOI":"10.23919\/ICACT53585.2022.9728833"},{"key":"10_CR24","doi-asserted-by":"publisher","unstructured":"Sawadogo, Z., Mendy, G., Dembelle, J.M., Ouya, S.: Android malware classification: updating features through incremental learning approach (UFILA). In: International Conference on Advanced Communication Technology, ICACT 2022-February, pp. 544\u2013550 (2022). https:\/\/doi.org\/10.23919\/ICACT53585.2022.9728977","DOI":"10.23919\/ICACT53585.2022.9728977"},{"key":"10_CR25","doi-asserted-by":"publisher","unstructured":"Sharma, T., Rattan, D.: Malicious application detection in android - a systematic literature review. Comput. Sci. Rev. 40, 100373 (2021). https:\/\/doi.org\/10.1016\/J.COSREV.2021.100373","DOI":"10.1016\/J.COSREV.2021.100373"},{"key":"10_CR26","doi-asserted-by":"crossref","unstructured":"Suarez-tangil, G., Dash, S.K., Ahmadi, M., Kinder, J., Giacinto, G., Cavallaro, L.: DroidSieve: Fast and Accurate Classification of Obfuscated Android Malware, pp. 309\u2013320 (2017)","DOI":"10.1145\/3029806.3029825"},{"key":"10_CR27","doi-asserted-by":"publisher","unstructured":"Taimoor Khan, M.: Towards practical and formal security risk analysis of iot (internet of things) applications. In: IEEE International Conference on Emerging Technologies and Factory Automation, ETFA, September 2022. https:\/\/doi.org\/10.1109\/ETFA52439.2022.9921511","DOI":"10.1109\/ETFA52439.2022.9921511"},{"key":"10_CR28","doi-asserted-by":"publisher","unstructured":"Wang, Z., Liu, Q., Chi, Y.: Review of android malware detection based on deep learning 8 (2020). https:\/\/doi.org\/10.1109\/ACCESS.2020.3028370","DOI":"10.1109\/ACCESS.2020.3028370"},{"key":"10_CR29","doi-asserted-by":"publisher","first-page":"210","DOI":"10.1016\/j.future.2018.09.042","volume":"92","author":"Y Xu","year":"2019","unstructured":"Xu, Y., Wang, G., Ren, J., Zhang, Y.: An adaptive and configurable protection framework against android privilege escalation threats. Futur. Gener. Comput. Syst. 92, 210\u2013224 (2019). https:\/\/doi.org\/10.1016\/j.future.2018.09.042","journal-title":"Futur. Gener. Comput. Syst."},{"key":"10_CR30","doi-asserted-by":"publisher","DOI":"10.1016\/j.fsidi.2021.301285","volume":"39","author":"X Zhang","year":"2021","unstructured":"Zhang, X., Breitinger, F., Luechinger, E., O\u2019Shaughnessy, S.: Android application forensics: a survey of obfuscation, obfuscation detection and deobfuscation techniques and their impact on investigations. Forensic Sci. Int. Digital Investigation 39, 301285 (2021). https:\/\/doi.org\/10.1016\/j.fsidi.2021.301285","journal-title":"Forensic Sci. Int. Digital Investigation"}],"container-title":["Lecture Notes in Computer Science","Software Architecture. ECSA 2023 Tracks, Workshops, and Doctoral Symposium"],"original-title":[],"language":"en","link":[{"URL":"https:\/\/link.springer.com\/content\/pdf\/10.1007\/978-3-031-66326-0_10","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2024,7,29]],"date-time":"2024-07-29T13:01:47Z","timestamp":1722258107000},"score":1,"resource":{"primary":{"URL":"https:\/\/link.springer.com\/10.1007\/978-3-031-66326-0_10"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2024]]},"ISBN":["9783031663253","9783031663260"],"references-count":30,"URL":"https:\/\/doi.org\/10.1007\/978-3-031-66326-0_10","relation":{},"ISSN":["0302-9743","1611-3349"],"issn-type":[{"type":"print","value":"0302-9743"},{"type":"electronic","value":"1611-3349"}],"subject":[],"published":{"date-parts":[[2024]]},"assertion":[{"value":"30 July 2024","order":1,"name":"first_online","label":"First Online","group":{"name":"ChapterHistory","label":"Chapter History"}},{"value":"ECSA","order":1,"name":"conference_acronym","label":"Conference Acronym","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"European Conference on Software Architecture","order":2,"name":"conference_name","label":"Conference Name","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"Istanbul","order":3,"name":"conference_city","label":"Conference City","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"T\u00fcrkiye","order":4,"name":"conference_country","label":"Conference Country","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"2023","order":5,"name":"conference_year","label":"Conference Year","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"18 September 2023","order":7,"name":"conference_start_date","label":"Conference Start Date","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"22 September 2023","order":8,"name":"conference_end_date","label":"Conference End Date","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"ecsa2023","order":10,"name":"conference_id","label":"Conference ID","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"Double-blind","order":1,"name":"type","label":"Type","group":{"name":"ConfEventPeerReviewInformation","label":"Peer Review Information (provided by the conference organizers)"}},{"value":"EasyChair","order":2,"name":"conference_management_system","label":"Conference Management System","group":{"name":"ConfEventPeerReviewInformation","label":"Peer Review Information (provided by the conference organizers)"}},{"value":"71","order":3,"name":"number_of_submissions_sent_for_review","label":"Number of Submissions Sent for Review","group":{"name":"ConfEventPeerReviewInformation","label":"Peer Review Information (provided by the conference organizers)"}},{"value":"16","order":4,"name":"number_of_full_papers_accepted","label":"Number of Full Papers Accepted","group":{"name":"ConfEventPeerReviewInformation","label":"Peer Review Information (provided by the conference organizers)"}},{"value":"9","order":5,"name":"number_of_short_papers_accepted","label":"Number of Short Papers Accepted","group":{"name":"ConfEventPeerReviewInformation","label":"Peer Review Information (provided by the conference organizers)"}},{"value":"23% - The value is computed by the equation \"Number of Full Papers Accepted \/ Number of Submissions Sent for Review * 100\" and then rounded to a whole number.","order":6,"name":"acceptance_rate_of_full_papers","label":"Acceptance Rate of Full Papers","group":{"name":"ConfEventPeerReviewInformation","label":"Peer Review Information (provided by the conference organizers)"}},{"value":"3","order":7,"name":"average_number_of_reviews_per_paper","label":"Average Number of Reviews per Paper","group":{"name":"ConfEventPeerReviewInformation","label":"Peer Review Information (provided by the conference organizers)"}},{"value":"3","order":8,"name":"average_number_of_papers_per_reviewer","label":"Average Number of Papers per Reviewer","group":{"name":"ConfEventPeerReviewInformation","label":"Peer Review Information (provided by the conference organizers)"}},{"value":"Yes","order":9,"name":"external_reviewers_involved","label":"External Reviewers Involved","group":{"name":"ConfEventPeerReviewInformation","label":"Peer Review Information (provided by the conference organizers)"}}]}}