{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,8,21]],"date-time":"2026-08-21T12:44:48Z","timestamp":1787316288273,"version":"build-2736575974"},"reference-count":52,"publisher":"Springer Science and Business Media LLC","issue":"3","license":[{"start":{"date-parts":[[2021,6,26]],"date-time":"2021-06-26T00:00:00Z","timestamp":1624665600000},"content-version":"tdm","delay-in-days":0,"URL":"https:\/\/www.springer.com\/tdm"},{"start":{"date-parts":[[2021,6,26]],"date-time":"2021-06-26T00:00:00Z","timestamp":1624665600000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/www.springer.com\/tdm"}],"content-domain":{"domain":["link.springer.com"],"crossmark-restriction":false},"short-container-title":["J Comput Virol Hack Tech"],"published-print":{"date-parts":[[2022,9]]},"DOI":"10.1007\/s11416-021-00390-2","type":"journal-article","created":{"date-parts":[[2021,6,26]],"date-time":"2021-06-26T05:02:31Z","timestamp":1624683751000},"page":"147-170","update-policy":"https:\/\/doi.org\/10.1007\/springer_crossmark_policy","source":"Crossref","is-referenced-by-count":17,"title":["Detection and robustness evaluation of android malware classifiers"],"prefix":"10.1007","volume":"18","author":[{"given":"M. L.","family":"Anupama","sequence":"first","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"P.","family":"Vinod","sequence":"additional","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-0558-4450","authenticated-orcid":false,"given":"Corrado Aaron","family":"Visaggio","sequence":"additional","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"M. A.","family":"Arya","sequence":"additional","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Josna","family":"Philomina","sequence":"additional","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Rincy","family":"Raphael","sequence":"additional","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Anson","family":"Pinhero","sequence":"additional","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"K. S.","family":"Ajith","sequence":"additional","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"P.","family":"Mathiyalagan","sequence":"additional","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]}],"member":"297","published-online":{"date-parts":[[2021,6,26]]},"reference":[{"key":"390_CR1","unstructured":"Abou-Assaleh, T., Cercone, N., Keselj, V., Sweidan, R.: N-gram-based detection of new malicious code. In: Proceedings of the 28th Annual International Computer Software and Applications Conference, 2004. COMPSAC 2004., vol. 2, pp. 41\u201342. IEEE (2004)"},{"issue":"1","key":"390_CR2","doi-asserted-by":"publisher","first-page":"9","DOI":"10.1007\/s11416-014-0226-7","volume":"11","author":"VM Afonso","year":"2015","unstructured":"Afonso, V.M., de Amorim, M.F., Gr\u00e9gio, A.R.A., Junquera, G.B., de Geus, P.: Identifying Android malware using dynamically obtained features. J. Comput. Virol. Hacking Tech. 11(1), 9\u201317 (2015)","journal-title":"J. Comput. Virol. Hacking Tech."},{"key":"390_CR3","unstructured":"Agarap, A.F.: Towards building an intelligent anti-malware system: a deep learning approach using support vector machine (svm) for malware classification. arXiv preprint arXiv:1801.00318 (2017)"},{"key":"390_CR4","doi-asserted-by":"publisher","first-page":"407","DOI":"10.1016\/j.procs.2015.03.170","volume":"45","author":"SB Almin","year":"2015","unstructured":"Almin, S.B., Chatterjee, M.: A novel approach to detect android malware. Procedia Comput. Sci. 45, 407\u2013417 (2015)","journal-title":"Procedia Comput. Sci."},{"key":"390_CR5","doi-asserted-by":"publisher","first-page":"100403","DOI":"10.1016\/j.softx.2020.100403","volume":"11","author":"S Aonzo","year":"2020","unstructured":"Aonzo, S., Georgiu, G.C., Verderame, L., Merlo, A.: Obfuscapk: an open-source black-box obfuscation tool for Android apps. SoftwareX 11, 100403 (2020)","journal-title":"SoftwareX"},{"key":"390_CR6","unstructured":"APKTool: https:\/\/ibotpeaches.github.io\/Apktool\/install\/"},{"key":"390_CR7","doi-asserted-by":"crossref","unstructured":"Arp, D., Spreitzenbarth, M., Hubner, M., Gascon, H., Rieck, K., Siemens, C.E.R.T.: Drebin: effective and explainable detection of android malware in your pocket. In: Ndss, vol. 14, pp. 23\u201326. (2014)","DOI":"10.14722\/ndss.2014.23247"},{"key":"390_CR8","doi-asserted-by":"publisher","first-page":"4321","DOI":"10.1109\/ACCESS.2018.2792941","volume":"6","author":"S Arshad","year":"2018","unstructured":"Arshad, S., Shah, M.A., Wahid, A., Mehmood, A., Song, H., Hongnian, Y.: Samadroid: a novel 3-level hybrid malware detection model for android operating system. IEEE Access 6, 4321\u20134339 (2018)","journal-title":"IEEE Access"},{"issue":"3","key":"390_CR9","doi-asserted-by":"publisher","first-page":"257","DOI":"10.1007\/s10207-018-0415-3","volume":"18","author":"ML Bernardi","year":"2019","unstructured":"Bernardi, M.L., Cimitile, M., Distante, D., Martinelli, F., Mercaldo, F.: Dynamic malware detection and phylogeny analysis using process mining. Int. J. Inf. Secur. 18(3), 257\u2013284 (2019)","journal-title":"Int. J. Inf. Secur."},{"key":"390_CR10","doi-asserted-by":"publisher","first-page":"317","DOI":"10.1016\/j.patcog.2018.07.023","volume":"84","author":"B Biggio","year":"2018","unstructured":"Biggio, B., Fabio, R.: Wild patterns: ten years after the rise of adversarial machine learning. Pattern Recognit. 84, 317\u2013331 (2018)","journal-title":"Pattern Recognit."},{"key":"390_CR11","doi-asserted-by":"crossref","unstructured":"Burguera, I., Zurutuza, U., Nadjm-Tehrani, S.: Crowdroid: behavior-based malware detection system for android. In: Proceedings of the 1st ACM Workshop on Security and Privacy in Smartphones and Mobile Devices, pp. 15\u201326. (2011)","DOI":"10.1145\/2046614.2046619"},{"key":"390_CR12","doi-asserted-by":"crossref","unstructured":"Chavan, N., Di Troia, F., Stamp, M.: A comparative analysis of android malware. arXiv preprint arXiv:1904.00735 (2019)","DOI":"10.5220\/0007701506640673"},{"key":"390_CR13","doi-asserted-by":"crossref","unstructured":"Chen, L., Hou, S., Ye, Y., Xu, S.: Droideye: fortifying security of learning-based classifier against adversarial android malware attacks. In: 2018 IEEE\/ACM International Conference on Advances in Social Networks Analysis and Mining (ASONAM), pp. 782\u2013789. IEEE (2018)","DOI":"10.1109\/ASONAM.2018.8508284"},{"key":"390_CR14","doi-asserted-by":"publisher","first-page":"326","DOI":"10.1016\/j.cose.2017.11.007","volume":"73","author":"S Chen","year":"2018","unstructured":"Chen, S., Xue, M., Fan, L., Hao, S., Xu, L., Zhu, H., Li, B.: Automated poisoning attacks and defenses in malware detection systems: an adversarial machine learning approach. Comput. Secur. 73, 326\u2013344 (2018)","journal-title":"Comput. Secur."},{"key":"390_CR15","doi-asserted-by":"crossref","unstructured":"Chuang, H.Y., Wang, S.D.: Machine learning based hybrid behavior models for Android malware analysis. In: 2015 IEEE International Conference on Software Quality, Reliability and Security, pp. 201\u2013206. IEEE (2015)","DOI":"10.1109\/QRS.2015.37"},{"issue":"1","key":"390_CR16","doi-asserted-by":"publisher","first-page":"1","DOI":"10.1007\/s11416-015-0261-z","volume":"13","author":"A Damodaran","year":"2017","unstructured":"Damodaran, A., Di Troia, F., Visaggio, C.A., Austin, T.H., Stamp, M.: A comparison of static, dynamic, and hybrid analysis for malware detection. J. Comput. Virol. Hacking Techn. 13(1), 1\u201312 (2017)","journal-title":"J. Comput. Virol. Hacking Techn."},{"key":"390_CR17","doi-asserted-by":"crossref","unstructured":"Demonits, A., Melis, M., Biggio, B., Maiorca, D.A., Rieck,K., Corona, I., Giacinto, G., Roli, F.: Yes, machine learning can be more secure! a case study on android malware detection. In: IEEE Transactions on Dependable and Secure Computing, vol.16, pp. 711\u2013723. IEEE (2019)","DOI":"10.1109\/TDSC.2017.2700270"},{"key":"390_CR18","doi-asserted-by":"crossref","unstructured":"Dimja\u0161evi\u0107, M., Atzeni, S., Ugrina, I., Rakamaric, Z.: Evaluation of android malware detection based on system calls. In: Proceedings of the 2016 ACM on International Workshop on Security And Privacy Analytics, pp. 1\u20138. (2016)","DOI":"10.1145\/2875475.2875487"},{"key":"390_CR19","doi-asserted-by":"crossref","unstructured":"Dong, Y., Liao, F., Pang, T., Su, H., Zhu, J., Hu, X., Li, J.: Boosting adversarial attacks with momentum. In: Proceedings of the IEEE Conference on Computer Vision and Pattern Recognition, pp. 9185\u20139193. (2018)","DOI":"10.1109\/CVPR.2018.00957"},{"key":"390_CR20","doi-asserted-by":"crossref","unstructured":"Gandotra, E., Bansal, Di., Sofat, S.: Malware analysis and classification: a survey. J. Inf. Secur. 2014 (2014)","DOI":"10.4236\/jis.2014.52006"},{"issue":"3","key":"390_CR21","doi-asserted-by":"publisher","first-page":"1","DOI":"10.1145\/3162625","volume":"26","author":"J Garcia","year":"2018","unstructured":"Garcia, J., Hammad, M., Malek, S.: Lightweight, obfuscation-resilient detection and family identification of android malware. ACM Trans. Softw. Eng. Methodol. (TOSEM) 26(3), 1\u201329 (2018)","journal-title":"ACM Trans. Softw. Eng. Methodol. (TOSEM)"},{"issue":"5","key":"390_CR22","doi-asserted-by":"publisher","first-page":"29","DOI":"10.1145\/2898969","volume":"59","author":"S Greengard","year":"2016","unstructured":"Greengard, S.: Cybersecurity gets smart. Commun. ACM 59(5), 29\u201331 (2016)","journal-title":"Commun. ACM"},{"key":"390_CR23","doi-asserted-by":"crossref","unstructured":"Grosse, K., Papernot, N., Manoharan, P., Backes, M.l, McDaniel, P.: Adversarial examples for malware detection. In: European Symposium on Research in Computer Security, pp. 62\u201379. Springer, Cham (2017)","DOI":"10.1007\/978-3-319-66399-9_4"},{"key":"390_CR24","doi-asserted-by":"publisher","first-page":"S48","DOI":"10.1016\/j.diin.2018.01.007","volume":"24","author":"EB Karbab","year":"2018","unstructured":"Karbab, E.B., Debbabi, M., Derhab, A., Mouheb, D.: MalDozer: automatic framework for android malware detection using deep learning. Digit. Investig. 24, S48\u2013S59 (2018)","journal-title":"Digit. Investig."},{"issue":"3","key":"390_CR25","doi-asserted-by":"publisher","first-page":"773","DOI":"10.1109\/TIFS.2018.2866319","volume":"14","author":"TG Kim","year":"2018","unstructured":"Kim, T.G., Kang, B.J., Rho, M., Sezer, S., Im, E.G.: A multimodal deep learning method for android malware detection using various features. IEEE Trans. Inf. Forensics Secur. 14(3), 773\u2013788 (2018)","journal-title":"IEEE Trans. Inf. Forensics Secur."},{"key":"390_CR26","doi-asserted-by":"publisher","first-page":"S118","DOI":"10.1016\/j.diin.2018.04.024","volume":"26","author":"Q Le","year":"2018","unstructured":"Le, Q., Boydell, O., Namee, B.M., Scanlon, M.: Deep learning at the shallow end: malware classification for non-domain experts. Digit. Investig. 26, S118\u2013S126 (2018)","journal-title":"Digit. Investig."},{"issue":"7","key":"390_CR27","doi-asserted-by":"publisher","first-page":"3216","DOI":"10.1109\/TII.2017.2789219","volume":"14","author":"J Li","year":"2018","unstructured":"Li, J., Sun, L., Yan, Q., Li, Z., Srisa-An, W., Ye, H.: Significant permission identification for machine-learning-based android malware detection. IEEE Trans. Ind. Inf. 14(7), 3216\u20133225 (2018)","journal-title":"IEEE Trans. Ind. Inf."},{"key":"390_CR28","doi-asserted-by":"publisher","first-page":"2372","DOI":"10.1016\/j.procs.2017.08.216","volume":"112","author":"F Martinelli","year":"2017","unstructured":"Martinelli, F., Marulli, F., Mercaldo, F.: Evaluating convolutional neural network for effective mobile malware detection. Procedia Comput. Sci. 112, 2372\u20132381 (2017)","journal-title":"Procedia Comput. Sci."},{"key":"390_CR29","doi-asserted-by":"crossref","unstructured":"McLaughlin, N., del Rincon, J.M., Kang, B.J., Yerima, S., Miller, S., Sakir, S., et al.: Deep android malware detection. In: Proceedings of the Seventh ACM on Conference on Data and Application Security and Privacy, pp. 301\u2013308. (2017)","DOI":"10.1145\/3029806.3029823"},{"key":"390_CR30","unstructured":"MonkeyRunner:https:\/\/developer.android.com\/studio\/test\/monkey"},{"key":"390_CR31","doi-asserted-by":"crossref","unstructured":"Nataraj, L., Karthikeyan, S., Jacob, G., Manjunath, B.S.: Malware images: visualization and automatic classification. In: Proceedings of the 8th International Symposium on Visualization for Cyber Security, pp. 1\u20137. (2011)","DOI":"10.1145\/2016904.2016908"},{"key":"390_CR32","doi-asserted-by":"publisher","first-page":"871","DOI":"10.1016\/j.cose.2018.04.005","volume":"77","author":"S Ni","year":"2018","unstructured":"Ni, S., Qian, Q., Zhang, R.: Malware identification using visualization images and deep learning. Comput. Secur. 77, 871\u2013885 (2018)","journal-title":"Comput. Secur."},{"key":"390_CR33","unstructured":"Patel, K., Buddadev, B.: Detection and mitigation of android malware through hybrid approach. In International symposium on Security in Computing and Communication, pp. 455\u2013463. Springer, Cham, (2015)"},{"key":"390_CR34","unstructured":"Pendlebury, F., Pierazzi, F., Jordaney, R., Kinder, J., Cavallaro, L.: TESSERACT: eliminating experimental bias in malware classification across space and time. In: 28th USENIX Security Symposium (USENIX Security 19), pp. 729\u2013746. (2019)"},{"key":"390_CR35","unstructured":"Pierazzi, F., Pendlebury, F., Cortellazzi, J., Cavallaro, L.: Intriguing properties of adversarial ML attacks in the problem space. In: Proceedings of IEEE Symposium on Security and Privacy, 2020, pp.1332\u20131349. IEEE (2020)"},{"key":"390_CR36","unstructured":"SL, S.D., Jaidhar, C.D.: Windows malware detector using convolutional neural network based on visualization images. IEEE Trans. Emerg. Top. Comput. (2019)"},{"key":"390_CR37","first-page":"317","volume":"9","author":"I Santos","year":"2009","unstructured":"Santos, I., Penya, Y.K., Devesa, J., Bringas, P.G.: N-grams-based file signatures for malware detection. ICEIS 9, 317\u2013320 (2009)","journal-title":"ICEIS"},{"issue":"1","key":"390_CR38","doi-asserted-by":"publisher","first-page":"83","DOI":"10.1109\/TDSC.2016.2536605","volume":"15","author":"A Saracino","year":"2016","unstructured":"Saracino, A., Sgandurra, D., Dini, G., Martinelli, F.: Madam: effective and efficient behavior-based android malware detection and prevention. IEEE Trans. Dependable Secure Comput. 15(1), 83\u201397 (2016)","journal-title":"IEEE Trans. Dependable Secure Comput."},{"key":"390_CR39","doi-asserted-by":"crossref","unstructured":"Saxe, J., Berlin, K.: Deep neural network based malware detection using two dimensional binary program features. In: 2015 10th International Conference on Malicious and Unwanted Software (MALWARE), pp. 11\u201320. IEEE (2015)","DOI":"10.1109\/MALWARE.2015.7413680"},{"issue":"10","key":"390_CR40","doi-asserted-by":"publisher","first-page":"2563","DOI":"10.1109\/TIFS.2018.2824250","volume":"13","author":"S Sen","year":"2018","unstructured":"Sen, S., Aydogan, E., Aysan, A.I.: Coevolution of mobile malware and anti-malware. IEEE Trans. Inf. Forensics Secur. 13(10), 2563\u20132574 (2018)","journal-title":"IEEE Trans. Inf. Forensics Secur."},{"key":"390_CR41","unstructured":"Sun, G., Qian, Q.: Deep learning and visualization for identifying malware families. IEEE Trans. Dependable Secure Comput. (2018)"},{"key":"390_CR42","doi-asserted-by":"publisher","first-page":"113581","DOI":"10.1016\/j.eswa.2020.113581","volume":"159","author":"R Surendran","year":"2020","unstructured":"Surendran, R., Thomas, T., Emmanuel, S.: GSDroid: graph signal based compact feature representation for android malware detection. Expert Syst. Appl. 159, 113581 (2020)","journal-title":"Expert Syst. Appl."},{"key":"390_CR43","doi-asserted-by":"crossref","unstructured":"Tam, K., Khan, S.J., Fattori, A., Cavallaro, L.: Copperdroid: automatic reconstruction of android malware behaviors. In: Ndss. (2015)","DOI":"10.14722\/ndss.2015.23145"},{"key":"390_CR44","doi-asserted-by":"publisher","first-page":"123","DOI":"10.1016\/j.cose.2018.11.001","volume":"81","author":"D Ucci","year":"2019","unstructured":"Ucci, D., Leonardo, A., Roberto, B.: Survey of machine learning techniques for malware analysis. Comput. Secur. 81, 123\u2013147 (2019)","journal-title":"Comput. Secur."},{"issue":"4","key":"390_CR45","doi-asserted-by":"publisher","first-page":"255","DOI":"10.1016\/j.icte.2018.10.006","volume":"4","author":"R Vinayakumar","year":"2018","unstructured":"Vinayakumar, R., Soman, K.P.: DeepMalNet: evaluating shallow and deep networks for static PE malware detection. ICT Express 4(4), 255\u2013258 (2018)","journal-title":"ICT Express"},{"key":"390_CR46","doi-asserted-by":"crossref","unstructured":"Wang, X., Yang, Y., Zeng, Y., Tang, C., Shi, J., Xu, K.: A novel hybrid mobile malware detection system integrating anomaly detection with misuse detection. In: Proceedings of the 6th International Workshop on Mobile Cloud Computing and Services, pp. 15\u201322. (2015)","DOI":"10.1145\/2802130.2802132"},{"key":"390_CR47","doi-asserted-by":"crossref","unstructured":"Wu, W.C., Hung, S.H.: DroidDolphin: a dynamic Android malware detection framework using big data and machine learning. In: Proceedings of the 2014 Conference on Research in Adaptive and Convergent Systems, pp. 247\u2013252. (2014)","DOI":"10.1145\/2663761.2664223"},{"issue":"1","key":"390_CR48","doi-asserted-by":"publisher","first-page":"8","DOI":"10.1049\/iet-ifs.2015.0211","volume":"11","author":"X Xiao","year":"2017","unstructured":"Xiao, X., Wang, Z., Li, Q., Xia, S., Jiang, Y.: Back-propagation neural network on Markov chains from system call sequences: a new approach for detecting Android malware with system call sequences. IET Inf. Secur. 11(1), 8\u201315 (2017)","journal-title":"IET Inf. Secur."},{"key":"390_CR49","unstructured":"Xu, W., Qi, Y., Evans, D.: Automatically evading classifiers. In: Proceedings of the 2016 Network and Distributed Systems Symposium, vol. 10. (2016)"},{"issue":"7","key":"390_CR50","doi-asserted-by":"publisher","first-page":"1529","DOI":"10.1109\/TIFS.2017.2661723","volume":"12","author":"Y Xue","year":"2017","unstructured":"Xue, Y., Meng, G., Liu, Y., Tan, T.H., Chen, H., Sun, J., Zhang, J.: Auditing anti-malware tools by evolving android malware and dynamic loading technique. IEEE Trans. Inf. Forensics Secur. 12(7), 1529\u20131544 (2017)","journal-title":"IEEE Trans. Inf. Forensics Secur."},{"key":"390_CR51","doi-asserted-by":"crossref","unstructured":"Zhang, S., Xiao, X.: Cscdroid: Accurately detect android malware via contribution-level-based system call categorization. In 2017 IEEE Trustcom\/BigDataSE\/ICESS, pp. 193\u2013200. IEEE (2017)","DOI":"10.1109\/Trustcom\/BigDataSE\/ICESS.2017.237"},{"issue":"1","key":"390_CR52","doi-asserted-by":"publisher","first-page":"51","DOI":"10.18642\/jmsaa_7100121627","volume":"37","author":"M Zhou","year":"2016","unstructured":"Zhou, M.: A hybrid feature selection method based on fisher score and genetic algorithm. J. Math. Sci. Adv. Appl. 37(1), 51\u201378 (2016)","journal-title":"J. Math. Sci. Adv. Appl."}],"container-title":["Journal of Computer Virology and Hacking Techniques"],"original-title":[],"language":"en","link":[{"URL":"https:\/\/link.springer.com\/content\/pdf\/10.1007\/s11416-021-00390-2.pdf","content-type":"application\/pdf","content-version":"vor","intended-application":"text-mining"},{"URL":"https:\/\/link.springer.com\/article\/10.1007\/s11416-021-00390-2\/fulltext.html","content-type":"text\/html","content-version":"vor","intended-application":"text-mining"},{"URL":"https:\/\/link.springer.com\/content\/pdf\/10.1007\/s11416-021-00390-2.pdf","content-type":"application\/pdf","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2023,1,1]],"date-time":"2023-01-01T11:23:22Z","timestamp":1672572202000},"score":1,"resource":{"primary":{"URL":"https:\/\/link.springer.com\/10.1007\/s11416-021-00390-2"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2021,6,26]]},"references-count":52,"journal-issue":{"issue":"3","published-print":{"date-parts":[[2022,9]]}},"alternative-id":["390"],"URL":"https:\/\/doi.org\/10.1007\/s11416-021-00390-2","relation":{},"ISSN":["2263-8733"],"issn-type":[{"value":"2263-8733","type":"electronic"}],"subject":[],"published":{"date-parts":[[2021,6,26]]},"assertion":[{"value":"7 August 2020","order":1,"name":"received","label":"Received","group":{"name":"ArticleHistory","label":"Article History"}},{"value":"31 May 2021","order":2,"name":"accepted","label":"Accepted","group":{"name":"ArticleHistory","label":"Article History"}},{"value":"26 June 2021","order":3,"name":"first_online","label":"First Online","group":{"name":"ArticleHistory","label":"Article History"}}]}}