{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2025,10,28]],"date-time":"2025-10-28T03:18:34Z","timestamp":1761621514242,"version":"build-2065373602"},"reference-count":51,"publisher":"MDPI AG","issue":"4","license":[{"start":{"date-parts":[[2020,4,12]],"date-time":"2020-04-12T00:00:00Z","timestamp":1586649600000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/creativecommons.org\/licenses\/by\/4.0\/"}],"content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":["Future Internet"],"abstract":"<jats:p>Android malware has become the topmost threat for the ubiquitous and useful Android ecosystem. Multiple solutions leveraging big data and machine-learning capabilities to detect Android malware are being constantly developed. Too often, these solutions are either limited to research output or remain isolated and incapable of reaching end users or malware researchers. An earlier work named PACE (Platform for Android Malware Classification and Performance Evaluation), was introduced as a unified solution to offer open and easy implementation access to several machine-learning-based Android malware detection techniques, that makes most of the research reproducible in this domain. The benefits of PACE are offered through three interfaces: Representational State Transfer (REST) Application Programming Interface (API), Web Interface, and Android Debug Bridge (ADB) interface. These multiple interfaces enable users with different expertise such as IT administrators, security practitioners, malware researchers, etc. to use their offered services. In this paper, we propose PACER (Platform for Android Malware Classification, Performance Evaluation, and Threat Reporting), which extends PACE by adding threat intelligence and reporting functionality for the end-user device through the ADB interface. A prototype of the proposed platform is introduced, and our vision is that it will help malware analysts and end users to tackle challenges and reduce the amount of manual work.<\/jats:p>","DOI":"10.3390\/fi12040066","type":"journal-article","created":{"date-parts":[[2020,4,13]],"date-time":"2020-04-13T04:45:31Z","timestamp":1586753131000},"page":"66","update-policy":"https:\/\/doi.org\/10.3390\/mdpi_crossmark_policy","source":"Crossref","is-referenced-by-count":8,"title":["PACER: Platform for Android Malware Classification, Performance Evaluation and Threat Reporting"],"prefix":"10.3390","volume":"12","author":[{"given":"Ajit","family":"Kumar","sequence":"first","affiliation":[{"name":"School of Computing Science and Engineering, VIT University Bhopal, Bhopal 466114, India"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Vinti","family":"Agarwal","sequence":"additional","affiliation":[{"name":"Department of Information Security and Communication Technology (IIK), Norwegian University of Science and Technology, 2815 Gj\u00f8vik, Norway"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Shishir","family":"Kumar Shandilya","sequence":"additional","affiliation":[{"name":"School of Computing Science and Engineering, VIT University Bhopal, Bhopal 466114, India"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Andrii","family":"Shalaginov","sequence":"additional","affiliation":[{"name":"Department of Information Security and Communication Technology (IIK), Norwegian University of Science and Technology, 2815 Gj\u00f8vik, Norway"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0003-0574-7843","authenticated-orcid":false,"given":"Saket","family":"Upadhyay","sequence":"additional","affiliation":[{"name":"School of Computing Science and Engineering, VIT University Bhopal, Bhopal 466114, India"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Bhawna","family":"Yadav","sequence":"additional","affiliation":[{"name":"School of Computing Science and Engineering, VIT University Bhopal, Bhopal 466114, India"}],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"1968","published-online":{"date-parts":[[2020,4,12]]},"reference":[{"key":"ref_1","doi-asserted-by":"crossref","first-page":"158","DOI":"10.1016\/j.future.2018.02.001","article-title":"FAMOUS: Forensic Analysis of MObile devices Using Scoring of application permissions","volume":"83","author":"Kumar","year":"2018","journal-title":"Future Gener. Comput. Syst."},{"key":"ref_2","first-page":"961","article-title":"Evolution, detection and analysis of malware for smart devices","volume":"16","author":"Tapiador","year":"2013","journal-title":"IEEE Commun. Surv. Tutor."},{"key":"ref_3","doi-asserted-by":"crossref","unstructured":"Faruki, P., Ganmoor, V., Laxmi, V., Gaur, M.S., and Bharmal, A. (2013, January 26\u201328). AndroSimilar: Robust statistical feature signature for Android malware detection. Proceedings of the 6th International Conference on Security of Information and Networks, Aksaray, Turkey.","DOI":"10.1145\/2523514.2523539"},{"key":"ref_4","doi-asserted-by":"crossref","first-page":"887","DOI":"10.1016\/j.future.2019.03.007","article-title":"Mobile malware attacks: Review, taxonomy & future directions","volume":"97","author":"Qamar","year":"2019","journal-title":"Future Gener. Comput. Syst."},{"key":"ref_5","doi-asserted-by":"crossref","unstructured":"Gupta, S., Buriro, A., and Crispo, B. (2019, January 27). A Risk-Driven Model to Minimize the Effects of Human Factors on Smart Devices. Proceedings of the International Workshop on Emerging Technologies for Authorization and Authentication, Luxembourg City, Luxembourg.","DOI":"10.1007\/978-3-030-39749-4_10"},{"key":"ref_6","doi-asserted-by":"crossref","first-page":"76","DOI":"10.1145\/3017427","article-title":"The evolution of android malware and android analysis techniques","volume":"49","author":"Tam","year":"2017","journal-title":"ACM Comput. Surv. (CSUR)"},{"key":"ref_7","doi-asserted-by":"crossref","first-page":"891","DOI":"10.1007\/s11219-017-9368-4","article-title":"A survey on dynamic mobile malware detection","volume":"26","author":"Yan","year":"2018","journal-title":"Softw. Qual. J."},{"key":"ref_8","doi-asserted-by":"crossref","unstructured":"Felt, A.P., Finifter, M., Chin, E., Hanna, S., and Wagner, D. (2011, January 17). A survey of mobile malware in the wild. Proceedings of the 1st ACM workshop on Security and privacy in smartphones and mobile devices, Chicago, IL, USA.","DOI":"10.1145\/2046614.2046618"},{"key":"ref_9","doi-asserted-by":"crossref","unstructured":"Qiu, J., Nepal, S., Luo, W., Pan, L., Tai, Y., Zhang, J., and Xiang, Y. (2019, January 19\u201322). Data-Driven Android Malware Intelligence: A Survey. Proceedings of the International Conference on Machine Learning for Cyber Security, Xi\u2019an, China.","DOI":"10.1007\/978-3-030-30619-9_14"},{"key":"ref_10","doi-asserted-by":"crossref","unstructured":"Samra, A.A.A., Qunoo, H.N., Al-Rubaie, F., and El-Talli, H. (2019, January 26\u201327). A survey of Static Android Malware Detection Techniques. Proceedings of the 2019 IEEE 7th Palestinian International Conference on Electrical and Computer Engineering (PICECE), Gaza, Palestine.","DOI":"10.1109\/PICECE.2019.8747224"},{"key":"ref_11","doi-asserted-by":"crossref","unstructured":"Sahay, S.K., and Sharma, A. (2019). A Survey on the Detection of Android Malicious Apps. Advances in Computer Communication and Computational Sciences, Springer.","DOI":"10.1007\/978-981-13-6861-5_38"},{"key":"ref_12","doi-asserted-by":"crossref","unstructured":"Do\u011fru, \u0130., and K\u0130RAZ, \u00d6. (2018). Web-based android malicious software detection and classification system. Appl. Sci., 8.","DOI":"10.3390\/app8091622"},{"key":"ref_13","doi-asserted-by":"crossref","unstructured":"Au, K.W.Y., Zhou, Y.F., Huang, Z., and Lie, D. (2012, January 16\u201318). Pscout: Analyzing the android permission specification. Proceedings of the 2012 ACM conference on Computer and communications security, Raleigh, NC, USA.","DOI":"10.1145\/2382196.2382222"},{"key":"ref_14","doi-asserted-by":"crossref","unstructured":"McLaughlin, N., Martinez del Rincon, J., Kang, B., Yerima, S., Miller, P., Sezer, S., Safaei, Y., Trickel, E., Zhao, Z., and Doup\u00e9, A. (2017, January 22\u201324). Deep Android Malware Detection. Proceedings of the Seventh ACM on Conference on Data and Application Security and Privacy, Scottsdale, AZ, USA.","DOI":"10.1145\/3029806.3029823"},{"key":"ref_15","doi-asserted-by":"crossref","unstructured":"Kumar, A., Agarwal, V., Shandilya, S.K., Shalaginov, A., Upadhyay, S., and Yadav, B. (2019, January 9\u201312). PACE: Platform for Android Malware Classification and Performance Evaluation. Proceedings of the 2019 IEEE International Conference on Big Data (Big Data), Los Angeles, CA, USA.","DOI":"10.1109\/BigData47090.2019.9006557"},{"key":"ref_16","doi-asserted-by":"crossref","first-page":"120","DOI":"10.1016\/j.cose.2018.10.001","article-title":"A scalable and extensible framework for android malware detection and family attribution","volume":"80","author":"Zhang","year":"2019","journal-title":"Comput. Secur."},{"key":"ref_17","doi-asserted-by":"crossref","unstructured":"Kim, H.M., Song, H.M., Seo, J.W., and Kim, H.K. (2018, January 28\u201330). Andro-Simnet: Android Malware Family Classification using Social Network Analysis. Proceedings of the 2018 16th Annual Conference on Privacy, Security and Trust (PST), Belfast, UK.","DOI":"10.1109\/PST.2018.8514216"},{"key":"ref_18","first-page":"213","article-title":"Analysis of malware families on android mobiles: Detection characteristics recognizable by ordinary phone users and how to fix it","volume":"4","year":"2013","journal-title":"J. Inf. Secur."},{"key":"ref_19","doi-asserted-by":"crossref","first-page":"637","DOI":"10.1007\/s11704-017-6493-y","article-title":"Fingerprinting Android malware families","volume":"13","author":"Xie","year":"2019","journal-title":"Front. Comput. Sci."},{"key":"ref_20","doi-asserted-by":"crossref","unstructured":"Massarelli, L., Aniello, L., Ciccotelli, C., Querzoni, L., Ucci, D., and Baldoni, R. (2017, January 11\u201314). Android malware family classification based on resource consumption over time. Proceedings of the 2017 12th International Conference on Malicious and Unwanted Software (MALWARE), Fajardo, PR, USA.","DOI":"10.1109\/MALWARE.2017.8323954"},{"key":"ref_21","doi-asserted-by":"crossref","unstructured":"Di Cerbo, F., Girardello, A., Michahelles, F., and Voronkova, S. (2010). Detection of malicious applications on android os. Computational Forensics, Springer.","DOI":"10.1007\/978-3-642-19376-7_12"},{"key":"ref_22","doi-asserted-by":"crossref","unstructured":"Sanz, B., Santos, I., Laorden, C., Ugarte-Pedrero, X., Bringas, P.G., and \u00c1lvarez, G. (2013). Puma: Permission usage to detect malware in android. International Joint Conference CISIS\u201912-ICEUTE 12-SOCO 12 Special Sessions, Springer.","DOI":"10.1007\/978-3-642-33018-6_30"},{"key":"ref_23","doi-asserted-by":"crossref","unstructured":"Ghorbanzadeh, M., Chen, Y., Ma, Z., Clancy, T.C., and McGwier, R. (2013, January 28\u201331). A neural network approach to category validation of android applications. Proceedings of the 2013 International Conference on Computing, Networking and Communications (ICNC), San Diego, CA, USA.","DOI":"10.1109\/ICCNC.2013.6504180"},{"key":"ref_24","doi-asserted-by":"crossref","unstructured":"Yerima, S.Y., Sezer, S., McWilliams, G., and Muttik, I. (2013, January 25\u201328). A new android malware detection approach using bayesian classification. Proceedings of the 2013 IEEE 27th International Conference on Advanced Information Networking and Applications (AINA), Barcelona, Spain.","DOI":"10.1109\/AINA.2013.88"},{"key":"ref_25","doi-asserted-by":"crossref","first-page":"1","DOI":"10.1016\/j.diin.2015.01.001","article-title":"APK Auditor: Permission-based Android malware detection system","volume":"13","author":"Talha","year":"2015","journal-title":"Digit. Investig."},{"key":"ref_26","doi-asserted-by":"crossref","first-page":"192","DOI":"10.1016\/j.cose.2014.10.005","article-title":"A Permission verification approach for android mobile applications","volume":"49","author":"Geneiatakis","year":"2015","journal-title":"Comput. Secur."},{"key":"ref_27","doi-asserted-by":"crossref","first-page":"266","DOI":"10.1016\/j.compeleceng.2017.02.013","article-title":"Machine learning aided Android malware classification","volume":"61","author":"Milosevic","year":"2017","journal-title":"Comput. Electr. Eng."},{"key":"ref_28","doi-asserted-by":"crossref","first-page":"3216","DOI":"10.1109\/TII.2017.2789219","article-title":"Significant permission identification for machine-learning-based android malware detection","volume":"14","author":"Li","year":"2018","journal-title":"IEEE Trans. Ind. Inform."},{"key":"ref_29","doi-asserted-by":"crossref","unstructured":"Peiravian, N., and Zhu, X. (2013, January 4\u20136). Machine learning for android malware detection using permission and api calls. Proceedings of the 2013 IEEE 25th International Conference on Tools with Artificial Intelligence, Herndon, VA, USA.","DOI":"10.1109\/ICTAI.2013.53"},{"key":"ref_30","doi-asserted-by":"crossref","unstructured":"Arp, D., Spreitzenbarth, M., Hubner, M., Gascon, H., and Rieck, K. (2014, January 23\u201326). DREBIN: Effective and Explainable Detection of Android Malware in Your Pocket. Proceedings of the 21th Annual Network and Distributed System Security Symposium (NDSS), San Diego, CA, USA.","DOI":"10.14722\/ndss.2014.23247"},{"key":"ref_31","doi-asserted-by":"crossref","first-page":"469","DOI":"10.1080\/01969722.2013.803889","article-title":"MAMA: Manifest analysis for malware detection in android","volume":"44","author":"Sanz","year":"2013","journal-title":"Cybern. Syst."},{"key":"ref_32","doi-asserted-by":"crossref","unstructured":"Wu, W.C., and Hung, S.H. (2014, January 5\u20138). DroidDolphin: A dynamic Android malware detection framework using big data and machine learning. Proceedings of the 2014 Conference on Research in Adaptive and Convergent Systems, Towson, MD, USA.","DOI":"10.1145\/2663761.2664223"},{"key":"ref_33","doi-asserted-by":"crossref","unstructured":"Amos, B., Turner, H., and White, J. (2013, January 1\u20135). Applying machine learning classifiers to dynamic android malware detection at scale. Proceedings of the 2013 9th International Wireless Communications and Mobile Computing Conference (IWCMC), Sardinia, Italy.","DOI":"10.1109\/IWCMC.2013.6583806"},{"key":"ref_34","doi-asserted-by":"crossref","unstructured":"Burguera, I., Zurutuza, U., and Nadjm-Tehrani, S. (2011, January 17). Crowdroid: Behavior-based malware detection system for android. Proceedings of the 1st ACM workshop on Security and privacy in smartphones and mobile devices, Chicago, IL, USA.","DOI":"10.1145\/2046614.2046619"},{"key":"ref_35","doi-asserted-by":"crossref","unstructured":"Rastogi, V., Chen, Y., and Enck, W. (2013, January 18\u201320). AppsPlayground: Automatic security analysis of smartphone applications. Proceedings of the third ACM conference on Data and application security and privacy, San Antonio, TX, USA.","DOI":"10.1145\/2435349.2435379"},{"key":"ref_36","doi-asserted-by":"crossref","unstructured":"Alam, M.S., and Vuong, S.T. (2013, January 20\u201323). Random forest classification for detecting android malware. Proceedings of the 2013 IEEE International Conference on Green Computing and Communications and IEEE Internet of Things and IEEE Cyber, Physical and Social Computing, Beijing, China.","DOI":"10.1109\/GreenCom-iThings-CPSCom.2013.122"},{"key":"ref_37","unstructured":"Dai, S., Wei, T., and Zou, W. (2012, January 3\u20135). DroidLogger: Reveal suspicious behavior of Android applications via instrumentation. Proceedings of the 2012 7th International Conference on Computing and Convergence Technology (ICCCT), Seoul, Korea."},{"key":"ref_38","doi-asserted-by":"crossref","unstructured":"Yuan, Z., Lu, Y., Wang, Z., and Xue, Y. (2014, January 17\u201322). Droid-sec: Deep learning in android malware detection. Proceedings of the ACM SIGCOMM Computer Communication Review, Chicago, IL, USA.","DOI":"10.1145\/2619239.2631434"},{"key":"ref_39","doi-asserted-by":"crossref","first-page":"114","DOI":"10.1109\/TST.2016.7399288","article-title":"Droiddetector: Android malware characterization and detection using deep learning","volume":"21","author":"Yuan","year":"2016","journal-title":"Tsinghua Sci. Technol."},{"key":"ref_40","doi-asserted-by":"crossref","first-page":"1","DOI":"10.1016\/j.cose.2014.02.009","article-title":"Mobile malware detection through analysis of deviations in application network behavior","volume":"43","author":"Shabtai","year":"2014","journal-title":"Comput. Secur."},{"key":"ref_41","doi-asserted-by":"crossref","first-page":"273","DOI":"10.1186\/s40064-016-1861-x","article-title":"Detecting and classifying method based on similarity matching of Android malware behavior with profile","volume":"5","author":"Jang","year":"2016","journal-title":"SpringerPlus"},{"key":"ref_42","unstructured":"Chang, W.L., Sun, H.M., and Wu, W. (2016, January 5\u20138). An Android Behavior-Based Malware Detection Method using Machine Learning. Proceedings of the 2016 IEEE International Conference on Signal Processing, Communications and Computing (ICSPCC), Hong Kong, China."},{"key":"ref_43","doi-asserted-by":"crossref","unstructured":"Moran, K., Linares-V\u00e1squez, M., Bernal-C\u00e1rdenas, C., Vendome, C., and Poshyvanyk, D. (2016, January 11\u201315). Automatically discovering, reporting and reproducing android application crashes. Proceedings of the 2016 IEEE International Conference on Software Testing, Verification and Validation (ICST), Chicago, IL, USA.","DOI":"10.1109\/ICST.2016.34"},{"key":"ref_44","doi-asserted-by":"crossref","first-page":"S12","DOI":"10.1016\/j.diin.2013.06.002","article-title":"Android forensics: Automated data collection and reporting from a mobile device","volume":"10","author":"Grover","year":"2013","journal-title":"Digit. Investig."},{"key":"ref_45","doi-asserted-by":"crossref","unstructured":"Eder, T., Rodler, M., Vymazal, D., and Zeilinger, M. (2013, January 2\u20136). Ananas-a framework for analyzing android applications. Proceedings of the 2013 International Conference on Availability, Reliability and Security, Regensburg, Germany.","DOI":"10.1109\/ARES.2013.93"},{"key":"ref_46","doi-asserted-by":"crossref","unstructured":"Moran, K., Linares-V\u00e1squez, M., Bernal-C\u00e1rdenas, C., and Poshyvanyk, D. (September, January 30). Auto-completing bug reports for android applications. Proceedings of the 2015 10th Joint Meeting on Foundations of Software Engineering, Bergamo, Italy.","DOI":"10.1145\/2786805.2786857"},{"key":"ref_47","doi-asserted-by":"crossref","unstructured":"Winkler, I., and Gomes, A.T. (2016). Advanced Persistent Security: A Cyberwarfare Approach to Implementing Adaptive Enterprise Protection, Detection, and Reaction Strategies, Syngress.","DOI":"10.1016\/B978-0-12-809316-0.00002-6"},{"key":"ref_48","doi-asserted-by":"crossref","unstructured":"Mitra, J., and Ranganath, V.P. (2017, January 8). Ghera: A repository of android app vulnerability benchmarks. Proceedings of the 13th International Conference on Predictive Models and Data Analytics in Software Engineering, Toronto, ON, Canada.","DOI":"10.1145\/3127005.3127010"},{"key":"ref_49","doi-asserted-by":"crossref","unstructured":"Zhang, M., and Yin, H. (2020, April 08). AppSealer: Automatic Generation of Vulnerability-Specific Patches for Preventing Component Hijacking Attacks in Android Applications. Available online: http:\/\/lilicoding.github.io\/SA3Repo\/papers\/2014_zhang2014appsealer.pdf.","DOI":"10.14722\/ndss.2014.23255"},{"key":"ref_50","doi-asserted-by":"crossref","unstructured":"Allix, K., Bissyand\u00e9, T.F., Klein, J., and Le Traon, Y. (2016, January 14\u201315). AndroZoo: Collecting Millions of Android Apps for the Research Community. Proceedings of the 13th International Conference on Mining Software Repositories, Austin, TX, USA.","DOI":"10.1145\/2901739.2903508"},{"key":"ref_51","first-page":"2825","article-title":"Scikit-learn: Machine Learning in Python","volume":"12","author":"Pedregosa","year":"2011","journal-title":"J. Mach. Learning Res."}],"container-title":["Future Internet"],"original-title":[],"language":"en","link":[{"URL":"https:\/\/www.mdpi.com\/1999-5903\/12\/4\/66\/pdf","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2025,10,13]],"date-time":"2025-10-13T13:21:01Z","timestamp":1760361661000},"score":1,"resource":{"primary":{"URL":"https:\/\/www.mdpi.com\/1999-5903\/12\/4\/66"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2020,4,12]]},"references-count":51,"journal-issue":{"issue":"4","published-online":{"date-parts":[[2020,4]]}},"alternative-id":["fi12040066"],"URL":"https:\/\/doi.org\/10.3390\/fi12040066","relation":{},"ISSN":["1999-5903"],"issn-type":[{"type":"electronic","value":"1999-5903"}],"subject":[],"published":{"date-parts":[[2020,4,12]]}}}