{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2025,3,27]],"date-time":"2025-03-27T06:00:26Z","timestamp":1743055226186,"version":"3.40.3"},"publisher-location":"Singapore","reference-count":32,"publisher":"Springer Singapore","isbn-type":[{"type":"print","value":"9789813347052"},{"type":"electronic","value":"9789813347069"}],"license":[{"start":{"date-parts":[[2020,1,1]],"date-time":"2020-01-01T00:00:00Z","timestamp":1577836800000},"content-version":"tdm","delay-in-days":0,"URL":"http:\/\/www.springer.com\/tdm"},{"start":{"date-parts":[[2020,1,1]],"date-time":"2020-01-01T00:00:00Z","timestamp":1577836800000},"content-version":"vor","delay-in-days":0,"URL":"http:\/\/www.springer.com\/tdm"}],"content-domain":{"domain":["link.springer.com"],"crossmark-restriction":false},"short-container-title":[],"published-print":{"date-parts":[[2020]]},"DOI":"10.1007\/978-981-33-4706-9_6","type":"book-chapter","created":{"date-parts":[[2020,11,30]],"date-time":"2020-11-30T06:03:03Z","timestamp":1606716183000},"page":"78-94","update-policy":"https:\/\/doi.org\/10.1007\/springer_crossmark_policy","source":"Crossref","is-referenced-by-count":1,"title":["Malware Analysis Method Based Random Access Memory in Android"],"prefix":"10.1007","author":[{"given":"Wenping","family":"Ji","sequence":"first","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Jian","family":"Wang","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Xudong","family":"He","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Jiqiang","family":"Liu","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"297","published-online":{"date-parts":[[2020,12,1]]},"reference":[{"unstructured":"360 Core Security Blog. https:\/\/blogs.360.cn\/post\/review_android_malware_of_2019.html","key":"6_CR1"},{"unstructured":"Mobile malware summary report in 2019. https:\/\/www.freebuf.com\/articles\/terminal\/228295.html","key":"6_CR2"},{"doi-asserted-by":"crossref","unstructured":"Arora, A., Peddoju, S.K.: NTPDroid: a hybrid android malware detector using network traffic and system permissions. In: 17th IEEE International Conference on Trust, Security and Privacy in Computing and Communications\/12th IEEE International Conference on Big Data Science and Engineering (TrustCom\/BigDataSE), New York, NY, pp. 808\u2013813 (2018)","key":"6_CR3","DOI":"10.1109\/TrustCom\/BigDataSE.2018.00115"},{"key":"6_CR4","doi-asserted-by":"publisher","first-page":"76217","DOI":"10.1109\/ACCESS.2018.2883975","volume":"6","author":"F Alswaina","year":"2018","unstructured":"Alswaina, F., Elleithy, K.: Android malware permission-based multi-class classification using extremely randomized trees. IEEE Access 6, 76217\u201376227 (2018)","journal-title":"IEEE Access"},{"key":"6_CR5","doi-asserted-by":"publisher","first-page":"21235","DOI":"10.1109\/ACCESS.2019.2896003","volume":"7","author":"Z Ma","year":"2019","unstructured":"Ma, Z., Ge, H., Liu, Y., Zhao, M., Ma, J.: A combination method for android malware detection based on control flow graphs and machine learning algorithms. IEEE Access 7, 21235\u201321245 (2019). https:\/\/doi.org\/10.1109\/ACCESS.2019.2896003","journal-title":"IEEE Access"},{"doi-asserted-by":"crossref","unstructured":"Zhang, L., Thing, V.L.L., Cheng, Y.: A scalable and extensible framework for android malware detection and family attribution. Comput. Secur. (2018)","key":"6_CR6","DOI":"10.1016\/j.cose.2018.10.001"},{"doi-asserted-by":"publisher","unstructured":"Kim, T., Kang, B., Rho, M., Sezer S., Im, E.G.: A multimodal deep learning method for android malware detection using various features. IEEE Trans. Inf. Forensics Secur. 14(3), 773\u2013788 (2019). https:\/\/doi.org\/10.1109\/tifs.2018.2866319","key":"6_CR7","DOI":"10.1109\/tifs.2018.2866319"},{"doi-asserted-by":"publisher","unstructured":"Xu, Z., Ray, S., Subramanyan, P., Malik, S.: Malware detection using machine learning based analysis of virtual memory access patterns. In: Design, Automation & Test in Europe Conference & Exhibition (DATE), Lausanne, pp. 169\u2013174 (2017). https:\/\/doi.org\/10.23919\/date.2017.7926977","key":"6_CR8","DOI":"10.23919\/date.2017.7926977"},{"doi-asserted-by":"crossref","unstructured":"Rathnayaka, C., Jamdagni, A.: An efficient approach for advanced malware analysis using memory forensic technique. In: IEEE Trustcom\/BigDataSE\/ICESS, Sydney, NSW, pp. 1145\u20131150 (2017)","key":"6_CR9","DOI":"10.1109\/Trustcom\/BigDataSE\/ICESS.2017.365"},{"key":"6_CR10","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"publisher","first-page":"24","DOI":"10.1007\/978-3-319-93411-2_2","volume-title":"Detection of Intrusions and Malware, and Vulnerability Assessment","author":"M Brengel","year":"2018","unstructured":"Brengel, M., Rossow, C.: MemScrimper: time- and space-efficient storage of malware sandbox memory dumps. In: Giuffrida, C., Bardin, S., Blanc, G. (eds.) DIMVA 2018. LNCS, vol. 10885, pp. 24\u201345. Springer, Cham (2018). https:\/\/doi.org\/10.1007\/978-3-319-93411-2_2"},{"issue":"1","key":"6_CR11","doi-asserted-by":"publisher","first-page":"119","DOI":"10.1007\/s11277-017-4859-y","volume":"98","author":"D Javaheri","year":"2017","unstructured":"Javaheri, D., Hosseinzadeh, M.: A framework for recognition and confronting of obfuscated malwares based on memory dumping and filter drivers. Wirel. Pers. Commun. 98(1), 119\u2013137 (2017). https:\/\/doi.org\/10.1007\/s11277-017-4859-y","journal-title":"Wirel. Pers. Commun."},{"key":"6_CR12","doi-asserted-by":"publisher","first-page":"30","DOI":"10.1016\/j.diin.2018.09.006","volume":"27","author":"Y Dai","year":"2018","unstructured":"Dai, Y., Li, H., Qian, Y., Lu, X.: A malware classification method based on memory dump grayscale image. Digit. Invest. 27, 30\u201337 (2018). https:\/\/doi.org\/10.1016\/j.diin.2018.09.006","journal-title":"Digit. Invest."},{"key":"6_CR13","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"publisher","first-page":"109","DOI":"10.1007\/978-3-319-11379-1_6","volume-title":"Research in Attacks, Intrusions and Defenses","author":"A Tang","year":"2014","unstructured":"Tang, A., Sethumadhavan, S., Stolfo, S.J.: Unsupervised anomaly-based malware detection using hardware features. In: Stavrou, A., Bos, H., Portokalidis, G. (eds.) RAID 2014. LNCS, vol. 8688, pp. 109\u2013129. Springer, Cham (2014). https:\/\/doi.org\/10.1007\/978-3-319-11379-1_6"},{"key":"6_CR14","doi-asserted-by":"publisher","first-page":"512","DOI":"10.1109\/TIFS.2019.2924549","volume":"15","author":"K Basu","year":"2020","unstructured":"Basu, K., Krishnamurthy, P., Khorrami, F., Karri, R.: A theoretical study of hardware performance counters-based malware detection. IEEE Trans. Inf. Forensics Secur. 15, 512\u2013525 (2020). https:\/\/doi.org\/10.1109\/TIFS.2019.2924549","journal-title":"IEEE Trans. Inf. Forensics Secur."},{"doi-asserted-by":"publisher","unstructured":"Milosevic, J., Ferrante, A. and Malek, M.: What does the memory say? Towards the most indicative features for efficient malware detection. In 13th IEEE Annual Consumer Communications & Networking Conference (CCNC), Las Vegas, NV, pp. 759\u2013764 (2016). https:\/\/doi.org\/10.1109\/ccnc.2016.7444874","key":"6_CR15","DOI":"10.1109\/ccnc.2016.7444874"},{"doi-asserted-by":"publisher","unstructured":"Milosevic, J., Malek, M., Ferrante, A.: A friend or a foe? Detecting malware using memory and CPU features. In: Proceedings of the 13th International Joint Conference on e-Business and Telecommunications (ICETE 2016): SECRYPT, vol. 4, pp 73\u201384 (2016). https:\/\/doi.org\/10.5220\/0005964200730084","key":"6_CR16","DOI":"10.5220\/0005964200730084"},{"doi-asserted-by":"publisher","unstructured":"Kandukuru, S., Sharma, R.M.: Android malicious application detection using permission vector and network traffic analysis. In: 2nd International Conference for Convergence in Technology (I2CT), Mumbai, pp. 1126\u20131132 (2017). https:\/\/doi.org\/10.1109\/i2ct.2017.8226303","key":"6_CR17","DOI":"10.1109\/i2ct.2017.8226303"},{"doi-asserted-by":"publisher","unstructured":"Hernandez Jimenez, J., Goseva-Popstojanova, K.: Malware detection using power consumption and network traffic data. In: 2nd International Conference on Data Intelligence and Security (ICDIS), South Padre Island, TX, USA, pp. 53\u201359 (2019). https:\/\/doi.org\/10.1109\/icdis.2019.00016","key":"6_CR18","DOI":"10.1109\/icdis.2019.00016"},{"doi-asserted-by":"publisher","unstructured":"Wang, S., et al.: Deep and broad learning based detection of android malware via network traffic. In IEEE\/ACM 26th International Symposium on Quality of Service (IWQoS), Banff, AB, Canada, pp. 1\u20136 (2018). https:\/\/doi.org\/10.1109\/iwqos.2018.8624143","key":"6_CR19","DOI":"10.1109\/iwqos.2018.8624143"},{"doi-asserted-by":"publisher","unstructured":"AlAhmadi, B.A., Martinovic, I.: MalClassifier: malware family classification using network flow sequence behaviour. In: APWG Symposium on Electronic Crime Research (eCrime), San Diego, CA, pp. 1\u201313 (2018). https:\/\/doi.org\/10.1109\/ecrime.2018.8376209","key":"6_CR20","DOI":"10.1109\/ecrime.2018.8376209"},{"doi-asserted-by":"publisher","unstructured":"Wang, W., Zhu, M., Wang, J., Zeng, X., Yang, Z.: End-to-end encrypted traffic classification with one-dimensional convolution neural networks. In: IEEE International Conference on Intelligence and Security Informatics (ISI), Beijing, pp. 43\u201348 (2017). https:\/\/doi.org\/10.1109\/isi.2017.8004872","key":"6_CR21","DOI":"10.1109\/isi.2017.8004872"},{"doi-asserted-by":"publisher","unstructured":"Su, X., Zhang, D., Li, W., Zhao, K.: A deep learning approach to android malware feature learning and detection. In: IEEE Trustcom\/BigDataSE\/ISPA, Tianjin, pp. 244\u2013251 (2016). https:\/\/doi.org\/10.1109\/trustcom.2016.0070","key":"6_CR22","DOI":"10.1109\/trustcom.2016.0070"},{"key":"6_CR23","doi-asserted-by":"publisher","first-page":"376","DOI":"10.1016\/j.cose.2019.04.005","volume":"84","author":"J Zhang","year":"2019","unstructured":"Zhang, J., Qin, Z., Yin, H., Ou, L., Zhang, K.: A feature-hybrid malware variants detection using CNN based opcode embedding and BPNN based API embedding. Comput. Secur. 84, 376\u2013392 (2019). https:\/\/doi.org\/10.1016\/j.cose.2019.04.005","journal-title":"Comput. Secur."},{"doi-asserted-by":"crossref","unstructured":"Wang, Y., An, J., Huang, W.: Using CNN-based representation learning method for malicious traffic identification. In: IEEE\/ACIS 17th International Conference on Computer and Information Science (ICIS), Singapore, pp. 400\u2013404 (2018)","key":"6_CR24","DOI":"10.1109\/ICIS.2018.8466404"},{"doi-asserted-by":"publisher","unstructured":"Wang, W., Zhu, M., Zeng, X., Ye, X., Sheng, Y.: Malware traffic classification using convolutional neural network for representation learning. In: International Conference on Information Networking (ICOIN), Da Nang, pp. 712\u2013717 (2017). https:\/\/doi.org\/10.1109\/icoin.2017.7899588","key":"6_CR25","DOI":"10.1109\/icoin.2017.7899588"},{"doi-asserted-by":"publisher","unstructured":"Sun, G., Qian, Q.: Deep learning and visualization for identifying malware families. IEEE Trans. Depend. Secure Comput. 1 (2018). https:\/\/doi.org\/10.1109\/tdsc.2018.2884928","key":"6_CR26","DOI":"10.1109\/tdsc.2018.2884928"},{"doi-asserted-by":"crossref","unstructured":"Qiao, Y., Jiang, Q., Jiang, Z., Gu, L.: A multi-channel visualization method for malware classification based on deep learning. In: 18th IEEE International Conference on Trust, Security and Privacy in Computing and Communications\/13th IEEE International Conference on Big Data Science and Engineering (TrustCom\/BigDataSE), Rotorua, New Zealand, pp. 757\u2013762 (2019)","key":"6_CR27","DOI":"10.1109\/TrustCom\/BigDataSE.2019.00109"},{"key":"6_CR28","doi-asserted-by":"publisher","first-page":"14510","DOI":"10.1109\/ACCESS.2018.2805301","volume":"6","author":"J Fu","year":"2018","unstructured":"Fu, J., Xue, J., Wang, Y., Liu, Z., Shan, C.: Malware visualization for fine-grained classification. IEEE Access 6, 14510\u201314523 (2018). https:\/\/doi.org\/10.1109\/ACCESS.2018.2805301","journal-title":"IEEE Access"},{"doi-asserted-by":"publisher","unstructured":"Taheri, L., Kadir, A.F.A., Lashkari, A.H.: Extensible android malware detection and family classification using network-flows and API-calls. In: International Carnahan Conference on Security Technology (ICCST), Chennai, India, pp. 1\u20138 (2019). https:\/\/doi.org\/10.1109\/ccst.2019.8888430","key":"6_CR29","DOI":"10.1109\/ccst.2019.8888430"},{"doi-asserted-by":"publisher","unstructured":"Lashkari, A.H., Kadir, A.F., A., Taheri, L., Ghorbani, A.A.: Toward developing a systematic approach to generate benchmark android malware datasets and classification. In: International Carnahan Conference on Security Technology (ICCST), Montreal, QC, pp. 1\u20137 (2018). https:\/\/doi.org\/10.1109\/ccst.2018.8585560","key":"6_CR30","DOI":"10.1109\/ccst.2018.8585560"},{"doi-asserted-by":"crossref","unstructured":"Maldozer Karbab, E.B., Debbabi, M., Derhab, A., Mouheb, D.: MalDozer: automatic framework for android malware detection using deep learning. Digit. Invest. 24, S48\u2013S59 (2018)","key":"6_CR31","DOI":"10.1016\/j.diin.2018.01.007"},{"doi-asserted-by":"publisher","unstructured":"Moonsamy, V., Rong, J., Liu, S.: Mining permission patterns for contrasting clean and malicious android applications. Future Gener. Comput. Syst. 36(July), 122\u2013132 (2014). https:\/\/doi.org\/10.1016\/j.future.2013.09.014","key":"6_CR32","DOI":"10.1016\/j.future.2013.09.014"}],"container-title":["Communications in Computer and Information Science","Applications and Techniques in Information Security"],"original-title":[],"language":"en","link":[{"URL":"https:\/\/link.springer.com\/content\/pdf\/10.1007\/978-981-33-4706-9_6","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2021,4,25]],"date-time":"2021-04-25T01:26:48Z","timestamp":1619314008000},"score":1,"resource":{"primary":{"URL":"https:\/\/link.springer.com\/10.1007\/978-981-33-4706-9_6"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2020]]},"ISBN":["9789813347052","9789813347069"],"references-count":32,"URL":"https:\/\/doi.org\/10.1007\/978-981-33-4706-9_6","relation":{},"ISSN":["1865-0929","1865-0937"],"issn-type":[{"type":"print","value":"1865-0929"},{"type":"electronic","value":"1865-0937"}],"subject":[],"published":{"date-parts":[[2020]]},"assertion":[{"value":"1 December 2020","order":1,"name":"first_online","label":"First Online","group":{"name":"ChapterHistory","label":"Chapter History"}},{"value":"ATIS","order":1,"name":"conference_acronym","label":"Conference Acronym","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"International Conference on Applications and Techniques in Information Security","order":2,"name":"conference_name","label":"Conference Name","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"Brisbane, QLD","order":3,"name":"conference_city","label":"Conference City","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"Australia","order":4,"name":"conference_country","label":"Conference Country","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"2020","order":5,"name":"conference_year","label":"Conference Year","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"12 November 2020","order":7,"name":"conference_start_date","label":"Conference Start Date","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"13 November 2020","order":8,"name":"conference_end_date","label":"Conference End Date","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"11","order":9,"name":"conference_number","label":"Conference Number","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"atis2020","order":10,"name":"conference_id","label":"Conference ID","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"http:\/\/www.atis2020.conferences.academy\/","order":11,"name":"conference_url","label":"Conference URL","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"Single-blind","order":1,"name":"type","label":"Type","group":{"name":"ConfEventPeerReviewInformation","label":"Peer Review Information (provided by the conference organizers)"}},{"value":"EasyChair","order":2,"name":"conference_management_system","label":"Conference Management System","group":{"name":"ConfEventPeerReviewInformation","label":"Peer Review Information (provided by the conference organizers)"}},{"value":"24","order":3,"name":"number_of_submissions_sent_for_review","label":"Number of Submissions Sent for Review","group":{"name":"ConfEventPeerReviewInformation","label":"Peer Review Information (provided by the conference organizers)"}},{"value":"8","order":4,"name":"number_of_full_papers_accepted","label":"Number of Full Papers Accepted","group":{"name":"ConfEventPeerReviewInformation","label":"Peer Review Information (provided by the conference organizers)"}},{"value":"0","order":5,"name":"number_of_short_papers_accepted","label":"Number of Short Papers Accepted","group":{"name":"ConfEventPeerReviewInformation","label":"Peer Review Information (provided by the conference organizers)"}},{"value":"33% - The value is computed by the equation \"Number of Full Papers Accepted \/ Number of Submissions Sent for Review * 100\" and then rounded to a whole number.","order":6,"name":"acceptance_rate_of_full_papers","label":"Acceptance Rate of Full Papers","group":{"name":"ConfEventPeerReviewInformation","label":"Peer Review Information (provided by the conference organizers)"}},{"value":"3","order":7,"name":"average_number_of_reviews_per_paper","label":"Average Number of Reviews per Paper","group":{"name":"ConfEventPeerReviewInformation","label":"Peer Review Information (provided by the conference organizers)"}},{"value":"5","order":8,"name":"average_number_of_papers_per_reviewer","label":"Average Number of Papers per Reviewer","group":{"name":"ConfEventPeerReviewInformation","label":"Peer Review Information (provided by the conference organizers)"}},{"value":"No","order":9,"name":"external_reviewers_involved","label":"External Reviewers Involved","group":{"name":"ConfEventPeerReviewInformation","label":"Peer Review Information (provided by the conference organizers)"}},{"value":"Due to the COVID-19 pandemic the conference was held online.","order":10,"name":"additional_info_on_review_process","label":"Additional Info on Review Process","group":{"name":"ConfEventPeerReviewInformation","label":"Peer Review Information (provided by the conference organizers)"}}]}}