{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,3,10]],"date-time":"2026-03-10T22:53:00Z","timestamp":1773183180534,"version":"3.50.1"},"publisher-location":"New York, NY, USA","reference-count":41,"publisher":"ACM","license":[{"start":{"date-parts":[[2010,3,22]],"date-time":"2010-03-22T00:00:00Z","timestamp":1269216000000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/www.acm.org\/publications\/policies\/copyright_policy#Background"}],"content-domain":{"domain":["dl.acm.org"],"crossmark-restriction":true},"short-container-title":[],"published-print":{"date-parts":[[2010,3,22]]},"DOI":"10.1145\/1741866.1741874","type":"proceedings-article","created":{"date-parts":[[2010,3,25]],"date-time":"2010-03-25T12:17:18Z","timestamp":1269519438000},"page":"37-48","update-policy":"https:\/\/doi.org\/10.1145\/crossmark-policy","source":"Crossref","is-referenced-by-count":75,"title":["pBMDS"],"prefix":"10.1145","author":[{"given":"Liang","family":"Xie","sequence":"first","affiliation":[{"name":"The Pennsylvania State University, State College, PA, USA"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Xinwen","family":"Zhang","sequence":"additional","affiliation":[{"name":"Samsung, San Jose, CA, USA"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Jean-Pierre","family":"Seifert","sequence":"additional","affiliation":[{"name":"Technische Universit\u00e4t Berlin, Berlin, Germany"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Sencun","family":"Zhu","sequence":"additional","affiliation":[{"name":"The Pennsylvania State University, State College, PA, USA"}],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"320","published-online":{"date-parts":[[2010,3,22]]},"reference":[{"key":"e_1_3_2_1_1_1","unstructured":"http:\/\/en.wikipedia.org\/wiki\/cross_validation.  http:\/\/en.wikipedia.org\/wiki\/cross_validation."},{"key":"e_1_3_2_1_2_1","unstructured":"http:\/\/trolltech.com\/products\/qtopia.  http:\/\/trolltech.com\/products\/qtopia."},{"key":"e_1_3_2_1_3_1","unstructured":"http:\/\/trolltech.com\/products\/qtopia\/qtopiainuse\/qtopiadevices.  http:\/\/trolltech.com\/products\/qtopia\/qtopiainuse\/qtopiadevices."},{"key":"e_1_3_2_1_4_1","unstructured":"http:\/\/www.elinux.org\/osk.  http:\/\/www.elinux.org\/osk."},{"key":"e_1_3_2_1_5_1","unstructured":"http:\/\/www.f-secure.com\/v-descs\/flexispy_a.shtml.  http:\/\/www.f-secure.com\/v-descs\/flexispy_a.shtml."},{"key":"e_1_3_2_1_6_1","unstructured":"http:\/\/www.us-cert.gov\/press_room\/trendsandanalysisq108.pdf.  http:\/\/www.us-cert.gov\/press_room\/trendsandanalysisq108.pdf."},{"key":"e_1_3_2_1_7_1","unstructured":"http:\/\/www.virtuallogix.com\/.  http:\/\/www.virtuallogix.com\/."},{"key":"e_1_3_2_1_8_1","unstructured":"Mcafee mobile security report 2008 mcafee.com\/us\/research\/mobile_security_report_2008.html.  Mcafee mobile security report 2008 mcafee.com\/us\/research\/mobile_security_report_2008.html."},{"key":"e_1_3_2_1_9_1","unstructured":"Mcafee mobile security report 2009 mcafee.com\/us\/local_content\/reports\/mobile_security_report_2009.pdf.  Mcafee mobile security report 2009 mcafee.com\/us\/local_content\/reports\/mobile_security_report_2009.pdf."},{"key":"e_1_3_2_1_10_1","unstructured":"Mobile device ui design http:\/\/blueflavor.com\/blog\/2006\/apr\/04\/mobile-device-ui-design\/.  Mobile device ui design http:\/\/blueflavor.com\/blog\/2006\/apr\/04\/mobile-device-ui-design\/."},{"key":"e_1_3_2_1_11_1","unstructured":"OpenMoko. http:\/\/wiki.openmoko.org.  OpenMoko. http:\/\/wiki.openmoko.org."},{"key":"e_1_3_2_1_12_1","unstructured":"TCG mobile reference architecture specification version 1.0. https:\/\/www.trustedcomputinggroup.org\/specs\/mobilephone.  TCG mobile reference architecture specification version 1.0. https:\/\/www.trustedcomputinggroup.org\/specs\/mobilephone."},{"key":"e_1_3_2_1_13_1","unstructured":"Virtualization for embedded systems http:\/\/www.ok-labs.com\/.  Virtualization for embedded systems http:\/\/www.ok-labs.com\/."},{"key":"e_1_3_2_1_14_1","doi-asserted-by":"publisher","DOI":"10.1145\/1378600.1378626"},{"key":"e_1_3_2_1_15_1","doi-asserted-by":"publisher","DOI":"10.1145\/1161289.1161307"},{"key":"e_1_3_2_1_16_1","doi-asserted-by":"publisher","DOI":"10.1145\/1247660.1247690"},{"key":"e_1_3_2_1_17_1","volume-title":"Security response: Symbos.lasco.a, symantec","author":"Chien E.","year":"2005","unstructured":"E. Chien . Security response: Symbos.lasco.a, symantec , 2005 . E. Chien. Security response: Symbos.lasco.a, symantec, 2005."},{"key":"e_1_3_2_1_18_1","volume-title":"Security response: Symbos.mabir, symantec","author":"Chien E.","year":"2005","unstructured":"E. Chien . Security response: Symbos.mabir, symantec , 2005 . E. Chien. Security response: Symbos.mabir, symantec, 2005."},{"key":"e_1_3_2_1_19_1","volume-title":"Security response: Symbos.skull, symantec","author":"Chien E.","year":"2004","unstructured":"E. Chien . Security response: Symbos.skull, symantec , 2004 . E. Chien. Security response: Symbos.skull, symantec, 2004."},{"key":"e_1_3_2_1_20_1","volume-title":"Security response: Symbos.cabir","author":"Ferrie P.","year":"2004","unstructured":"P. Ferrie , P. Szor , R. Stanev , and R. Mouritzen . Security response: Symbos.cabir . Symantec Corporation , 2004 . P. Ferrie, P. Szor, R. Stanev, and R. Mouritzen. Security response: Symbos.cabir. Symantec Corporation, 2004."},{"key":"e_1_3_2_1_21_1","doi-asserted-by":"publisher","DOI":"10.5555\/525080.884258"},{"key":"e_1_3_2_1_22_1","volume-title":"IEEE Symposium on Security and Privacy","author":"Forrest S.","year":"1999","unstructured":"S. Forrest and B. Pearlmutter . Detecting instructions using system calls: Alternative data models . In IEEE Symposium on Security and Privacy , 1999 . S. Forrest and B. Pearlmutter. Detecting instructions using system calls: Alternative data models. In IEEE Symposium on Security and Privacy, 1999."},{"key":"e_1_3_2_1_23_1","volume-title":"UCSD","author":"Guo C.","year":"2004","unstructured":"C. Guo , H. Wang , and W. Zhu . Smartphone attacks and defenses. In HotNets-III , UCSD , Nov. 2004 . C. Guo, H. Wang, and W. Zhu. Smartphone attacks and defenses. In HotNets-III, UCSD, Nov. 2004."},{"key":"e_1_3_2_1_24_1","volume-title":"Symbian os platform security","author":"Heath C.","year":"2006","unstructured":"C. Heath . Symbian os platform security . In Symbian Press , 2006 . C. Heath. Symbian os platform security. In Symbian Press, 2006."},{"key":"e_1_3_2_1_25_1","volume-title":"State of cell phone malware","author":"Hypponen M.","year":"2007","unstructured":"M. Hypponen . State of cell phone malware in 2007 , http:\/\/www.usenix.org\/events\/sec07\/tech\/hypponen.pdf. M. Hypponen. State of cell phone malware in 2007, http:\/\/www.usenix.org\/events\/sec07\/tech\/hypponen.pdf."},{"key":"e_1_3_2_1_26_1","doi-asserted-by":"publisher","DOI":"10.1145\/1357054.1357274"},{"key":"e_1_3_2_1_27_1","volume-title":"Proc of USENIX Security Symposium","author":"Kirda E.","year":"2006","unstructured":"E. Kirda and et al. Behavior-based spyware detection . In Proc of USENIX Security Symposium , 2006 . E. Kirda and et al. Behavior-based spyware detection. In Proc of USENIX Security Symposium, 2006."},{"key":"e_1_3_2_1_28_1","volume-title":"Security information: Virus encyclopedia: Symbos_comwar.a: Technical details","author":"Lactaotao M.","year":"2005","unstructured":"M. Lactaotao . Security information: Virus encyclopedia: Symbos_comwar.a: Technical details . Trend Micro Inc ., 2005 . M. Lactaotao. Security information: Virus encyclopedia: Symbos_comwar.a: Technical details. Trend Micro Inc., 2005."},{"key":"e_1_3_2_1_29_1","volume-title":"Proc. of AAAI","author":"Lee W.","year":"1997","unstructured":"W. Lee , S. Stolfo , and P. Chan . Learning patterns from unix process execution traces for intrustion detection . In Proc. of AAAI , 1997 . W. Lee, S. Stolfo, and P. Chan. Learning patterns from unix process execution traces for intrustion detection. In Proc. of AAAI, 1997."},{"key":"e_1_3_2_1_30_1","doi-asserted-by":"publisher","DOI":"10.1109\/ACSAC.2006.55"},{"key":"e_1_3_2_1_31_1","doi-asserted-by":"publisher","DOI":"10.1007\/11790754_6"},{"key":"e_1_3_2_1_32_1","doi-asserted-by":"publisher","DOI":"10.1145\/1377836.1377862"},{"key":"e_1_3_2_1_33_1","volume-title":"Proc. of the","author":"Rabiner L.","year":"1989","unstructured":"L. Rabiner . A tutorial on hidden markov models and selected applications in speech recognition . In Proc. of the IEEE , 1989 . L. Rabiner. A tutorial on hidden markov models and selected applications in speech recognition. In Proc. of the IEEE, 1989."},{"key":"e_1_3_2_1_34_1","volume-title":"Exploiting mms vulnerabilities to stealthily exhause mobile phone's battery","author":"Racic R.","year":"2006","unstructured":"R. Racic , D. Ma , and H. Chen . Exploiting mms vulnerabilities to stealthily exhause mobile phone's battery . In IEEE SecureComm , 2006 . R. Racic, D. Ma, and H. Chen. Exploiting mms vulnerabilities to stealthily exhause mobile phone's battery. In IEEE SecureComm, 2006."},{"key":"e_1_3_2_1_35_1","volume-title":"Proc. of Usenix Security Symposium","author":"Sailer R.","year":"2004","unstructured":"R. Sailer , X. Zhao , T. Jaeger , and L. Doom . Design and implementation of a tcg-based integrity measurement architecture . In Proc. of Usenix Security Symposium , 2004 . R. Sailer, X. Zhao, T. Jaeger, and L. Doom. Design and implementation of a tcg-based integrity measurement architecture. In Proc. of Usenix Security Symposium, 2004."},{"key":"e_1_3_2_1_36_1","doi-asserted-by":"publisher","DOI":"10.1109\/SECPRI.1999.766910"},{"key":"e_1_3_2_1_37_1","volume-title":"IEEE Information Theory Society Newsletter","author":"Welch L.","year":"2003","unstructured":"L. Welch . The shannon lecture: Hidden markov models and the baum-welch algorithm . In IEEE Information Theory Society Newsletter , 2003 . L. Welch. The shannon lecture: Hidden markov models and the baum-welch algorithm. In IEEE Information Theory Society Newsletter, 2003."},{"key":"e_1_3_2_1_38_1","doi-asserted-by":"publisher","DOI":"10.5555\/645838.670723"},{"key":"e_1_3_2_1_39_1","doi-asserted-by":"publisher","DOI":"10.1145\/1367497.1367667"},{"key":"e_1_3_2_1_40_1","volume-title":"Pattern Recognition, Issue.1","author":"Yeung D.","year":"2003","unstructured":"D. Yeung and Y. Ding . Host-based intrustion detection using dynamic and static behavioral models . In Pattern Recognition, Issue.1 , 2003 . D. Yeung and Y. Ding. Host-based intrustion detection using dynamic and static behavioral models. In Pattern Recognition, Issue.1, 2003."},{"key":"e_1_3_2_1_41_1","doi-asserted-by":"publisher","DOI":"10.1145\/1314354.1314359"}],"event":{"name":"WISEC '10: Third ACM Conference on Wireless Network Security","location":"Hoboken New Jersey USA","acronym":"WISEC '10","sponsor":["SIGSAC ACM Special Interest Group on Security, Audit, and Control","SIGMOBILE ACM Special Interest Group on Mobility of Systems, Users, Data and Computing"]},"container-title":["Proceedings of the third ACM conference on Wireless network security"],"original-title":[],"link":[{"URL":"https:\/\/dl.acm.org\/doi\/10.1145\/1741866.1741874","content-type":"unspecified","content-version":"vor","intended-application":"text-mining"},{"URL":"https:\/\/dl.acm.org\/doi\/pdf\/10.1145\/1741866.1741874","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2025,6,18]],"date-time":"2025-06-18T20:22:44Z","timestamp":1750278164000},"score":1,"resource":{"primary":{"URL":"https:\/\/dl.acm.org\/doi\/10.1145\/1741866.1741874"}},"subtitle":["a behavior-based malware detection system for cellphone devices"],"short-title":[],"issued":{"date-parts":[[2010,3,22]]},"references-count":41,"alternative-id":["10.1145\/1741866.1741874","10.1145\/1741866"],"URL":"https:\/\/doi.org\/10.1145\/1741866.1741874","relation":{},"subject":[],"published":{"date-parts":[[2010,3,22]]},"assertion":[{"value":"2010-03-22","order":2,"name":"published","label":"Published","group":{"name":"publication_history","label":"Publication History"}}]}}