{"id":"https://openalex.org/W3008764821","doi":"https://doi.org/10.1109/bigdata47090.2019.9005669","title":"Identifying Android Malware Families Using Android-Oriented Metrics","display_name":"Identifying Android Malware Families Using Android-Oriented Metrics","publication_year":2019,"publication_date":"2019-12-01","ids":{"openalex":"https://openalex.org/W3008764821","doi":"https://doi.org/10.1109/bigdata47090.2019.9005669","mag":"3008764821"},"language":"en","primary_location":{"id":"doi:10.1109/bigdata47090.2019.9005669","is_oa":false,"landing_page_url":"https://doi.org/10.1109/bigdata47090.2019.9005669","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"2019 IEEE International Conference on Big Data (Big Data)","raw_type":"proceedings-article"},"type":"article","indexed_in":["crossref"],"open_access":{"is_oa":false,"oa_status":"closed","oa_url":null,"any_repository_has_fulltext":false},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5052485700","display_name":"William Blanc","orcid":null},"institutions":[{"id":"https://openalex.org/I32480017","display_name":"Florida Polytechnic University","ror":"https://ror.org/01e5mdj42","country_code":"US","type":"education","lineage":["https://openalex.org/I32480017"]}],"countries":["US"],"is_corresponding":true,"raw_author_name":"William Blanc","raw_affiliation_strings":["Department of Computer Science, Florida Polytechnic University"],"affiliations":[{"raw_affiliation_string":"Department of Computer Science, Florida Polytechnic University","institution_ids":["https://openalex.org/I32480017"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5013894800","display_name":"Lina G. Hashem","orcid":null},"institutions":[{"id":"https://openalex.org/I32480017","display_name":"Florida Polytechnic University","ror":"https://ror.org/01e5mdj42","country_code":"US","type":"education","lineage":["https://openalex.org/I32480017"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Lina G. Hashem","raw_affiliation_strings":["Department of Computer Science, Florida Polytechnic University"],"affiliations":[{"raw_affiliation_string":"Department of Computer Science, Florida Polytechnic University","institution_ids":["https://openalex.org/I32480017"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5050045135","display_name":"Karim O. Elish","orcid":"https://orcid.org/0000-0001-6060-4090"},"institutions":[{"id":"https://openalex.org/I32480017","display_name":"Florida Polytechnic University","ror":"https://ror.org/01e5mdj42","country_code":"US","type":"education","lineage":["https://openalex.org/I32480017"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Karim O. Elish","raw_affiliation_strings":["Department of Computer Science, Florida Polytechnic University"],"affiliations":[{"raw_affiliation_string":"Department of Computer Science, Florida Polytechnic University","institution_ids":["https://openalex.org/I32480017"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5081194772","display_name":"M. J. Hussain Almohri","orcid":null},"institutions":[{"id":"https://openalex.org/I36721946","display_name":"Kuwait University","ror":"https://ror.org/021e5j056","country_code":"KW","type":"education","lineage":["https://openalex.org/I36721946"]}],"countries":["KW"],"is_corresponding":false,"raw_author_name":"M. J. Hussain Almohri","raw_affiliation_strings":["Department of Computer Science, Kuwait University"],"affiliations":[{"raw_affiliation_string":"Department of Computer Science, Kuwait University","institution_ids":["https://openalex.org/I36721946"]}]}],"institutions":[],"countries_distinct_count":2,"institutions_distinct_count":4,"corresponding_author_ids":["https://openalex.org/A5052485700"],"corresponding_institution_ids":["https://openalex.org/I32480017"],"apc_list":null,"apc_paid":null,"fwci":2.1698,"has_fulltext":false,"cited_by_count":20,"citation_normalized_percentile":{"value":0.88844937,"is_in_top_1_percent":false,"is_in_top_10_percent":false},"cited_by_percentile_year":{"min":90,"max":99},"biblio":{"volume":"2019","issue":null,"first_page":"4708","last_page":"4713"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T11241","display_name":"Advanced Malware Detection Techniques","score":1.0,"subfield":{"id":"https://openalex.org/subfields/1711","display_name":"Signal Processing"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T11241","display_name":"Advanced Malware Detection Techniques","score":1.0,"subfield":{"id":"https://openalex.org/subfields/1711","display_name":"Signal Processing"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T10400","display_name":"Network Security and Intrusion Detection","score":0.9894000291824341,"subfield":{"id":"https://openalex.org/subfields/1705","display_name":"Computer Networks and Communications"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T10743","display_name":"Software Testing and Debugging Techniques","score":0.9801999926567078,"subfield":{"id":"https://openalex.org/subfields/1712","display_name":"Software"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/malware","display_name":"Malware","score":0.903935968875885},{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.7989502549171448},{"id":"https://openalex.org/keywords/android","display_name":"Android (operating system)","score":0.769706130027771},{"id":"https://openalex.org/keywords/cryptovirology","display_name":"Cryptovirology","score":0.6384820342063904},{"id":"https://openalex.org/keywords/static-analysis","display_name":"Static analysis","score":0.595051646232605},{"id":"https://openalex.org/keywords/system-call","display_name":"System call","score":0.5241915583610535},{"id":"https://openalex.org/keywords/android-malware","display_name":"Android malware","score":0.5185466408729553},{"id":"https://openalex.org/keywords/random-forest","display_name":"Random forest","score":0.5069079995155334},{"id":"https://openalex.org/keywords/malware-analysis","display_name":"Malware analysis","score":0.4895571172237396},{"id":"https://openalex.org/keywords/classifier","display_name":"Classifier (UML)","score":0.46572253108024597},{"id":"https://openalex.org/keywords/machine-learning","display_name":"Machine learning","score":0.44216105341911316},{"id":"https://openalex.org/keywords/mobile-malware","display_name":"Mobile malware","score":0.44154319167137146},{"id":"https://openalex.org/keywords/artificial-intelligence","display_name":"Artificial intelligence","score":0.4047555923461914},{"id":"https://openalex.org/keywords/computer-security","display_name":"Computer security","score":0.39077141880989075},{"id":"https://openalex.org/keywords/operating-system","display_name":"Operating system","score":0.17630916833877563},{"id":"https://openalex.org/keywords/programming-language","display_name":"Programming language","score":0.12570104002952576}],"concepts":[{"id":"https://openalex.org/C541664917","wikidata":"https://www.wikidata.org/wiki/Q14001","display_name":"Malware","level":2,"score":0.903935968875885},{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.7989502549171448},{"id":"https://openalex.org/C557433098","wikidata":"https://www.wikidata.org/wiki/Q94","display_name":"Android (operating system)","level":2,"score":0.769706130027771},{"id":"https://openalex.org/C84525096","wikidata":"https://www.wikidata.org/wiki/Q3506050","display_name":"Cryptovirology","level":3,"score":0.6384820342063904},{"id":"https://openalex.org/C97686452","wikidata":"https://www.wikidata.org/wiki/Q7604153","display_name":"Static analysis","level":2,"score":0.595051646232605},{"id":"https://openalex.org/C2778579508","wikidata":"https://www.wikidata.org/wiki/Q722192","display_name":"System call","level":2,"score":0.5241915583610535},{"id":"https://openalex.org/C2989133298","wikidata":"https://www.wikidata.org/wiki/Q94","display_name":"Android malware","level":3,"score":0.5185466408729553},{"id":"https://openalex.org/C169258074","wikidata":"https://www.wikidata.org/wiki/Q245748","display_name":"Random forest","level":2,"score":0.5069079995155334},{"id":"https://openalex.org/C2779395397","wikidata":"https://www.wikidata.org/wiki/Q15731404","display_name":"Malware analysis","level":3,"score":0.4895571172237396},{"id":"https://openalex.org/C95623464","wikidata":"https://www.wikidata.org/wiki/Q1096149","display_name":"Classifier (UML)","level":2,"score":0.46572253108024597},{"id":"https://openalex.org/C119857082","wikidata":"https://www.wikidata.org/wiki/Q2539","display_name":"Machine learning","level":1,"score":0.44216105341911316},{"id":"https://openalex.org/C2780967490","wikidata":"https://www.wikidata.org/wiki/Q1291200","display_name":"Mobile malware","level":3,"score":0.44154319167137146},{"id":"https://openalex.org/C154945302","wikidata":"https://www.wikidata.org/wiki/Q11660","display_name":"Artificial intelligence","level":1,"score":0.4047555923461914},{"id":"https://openalex.org/C38652104","wikidata":"https://www.wikidata.org/wiki/Q3510521","display_name":"Computer security","level":1,"score":0.39077141880989075},{"id":"https://openalex.org/C111919701","wikidata":"https://www.wikidata.org/wiki/Q9135","display_name":"Operating system","level":1,"score":0.17630916833877563},{"id":"https://openalex.org/C199360897","wikidata":"https://www.wikidata.org/wiki/Q9143","display_name":"Programming language","level":1,"score":0.12570104002952576}],"mesh":[],"locations_count":2,"locations":[{"id":"doi:10.1109/bigdata47090.2019.9005669","is_oa":false,"landing_page_url":"https://doi.org/10.1109/bigdata47090.2019.9005669","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"2019 IEEE International Conference on Big Data (Big Data)","raw_type":"proceedings-article"},{"id":"mag:3040924666","is_oa":false,"landing_page_url":"https://jglobal.jst.go.jp/en/detail?JGLOBAL_ID=202002223564544806","pdf_url":null,"source":{"id":"https://openalex.org/S4306512817","display_name":"IEEE Conference Proceedings","issn_l":null,"issn":null,"is_oa":false,"is_in_doaj":false,"is_core":false,"host_organization":null,"host_organization_name":null,"host_organization_lineage":[],"host_organization_lineage_names":[],"type":"conference"},"license":null,"license_id":null,"version":null,"is_accepted":false,"is_published":null,"raw_source_name":"IEEE Conference Proceedings","raw_type":null}],"best_oa_location":null,"sustainable_development_goals":[{"score":0.4000000059604645,"display_name":"Peace, Justice and strong institutions","id":"https://metadata.un.org/sdg/16"}],"awards":[],"funders":[],"has_content":{"grobid_xml":false,"pdf":false},"content_urls":null,"referenced_works_count":23,"referenced_works":["https://openalex.org/W79549259","https://openalex.org/W84941226","https://openalex.org/W121173099","https://openalex.org/W1943233084","https://openalex.org/W2018102253","https://openalex.org/W2048715902","https://openalex.org/W2055097344","https://openalex.org/W2058180826","https://openalex.org/W2073465826","https://openalex.org/W2104839588","https://openalex.org/W2122672392","https://openalex.org/W2127723417","https://openalex.org/W2487124337","https://openalex.org/W2603160474","https://openalex.org/W2741764761","https://openalex.org/W2749928722","https://openalex.org/W2783327762","https://openalex.org/W2902313612","https://openalex.org/W2906347220","https://openalex.org/W6603223915","https://openalex.org/W6604960882","https://openalex.org/W6743063269","https://openalex.org/W6757071433"],"related_works":["https://openalex.org/W2300394474","https://openalex.org/W3135174262","https://openalex.org/W2249256574","https://openalex.org/W2067547021","https://openalex.org/W2727469818","https://openalex.org/W4316077018","https://openalex.org/W2186224748","https://openalex.org/W2465557945","https://openalex.org/W3008764821","https://openalex.org/W2949942164"],"abstract_inverted_index":{"Android":[0],"malware":[1,21,50,111,153,162,167,178],"(malicious":[2],"apps)":[3],"families":[4,154],"share":[5,104],"common":[6,105],"attributes":[7,88],"and":[8,66,86,123,189],"behavior":[9,47,60],"through":[10],"sharing":[11],"core":[12],"malicious":[13,59,91,96],"code.":[14],"However,":[15],"as":[16],"the":[17,23,27,45,49,63,76,84,115],"number":[18],"of":[19,25,48,79,89,140,192],"new":[20],"increases,":[22],"task":[24],"identifying":[26,152],"correct":[28],"family":[29,117,195],"becomes":[30],"more":[31],"challenging.":[32],"Two":[33],"prominent":[34],"approaches":[35],"tackle":[36],"this":[37,110,133],"problem,":[38],"either":[39],"using":[40,52,198],"dynamic":[41,122],"analysis":[42,54,126],"that":[43,56,109,144,170],"captures":[44],"runtime":[46],"or":[51],"static":[53,125],"methods":[55],"can":[57,98,112],"reveal":[58],"by":[61,128,197],"analyzing":[62],"underlying":[64],"logic":[65],"code":[67,142],"patterns.":[68],"A":[69],"third":[70],"emerging":[71],"way":[72],"is":[73],"to":[74,82,114,120,176],"use":[75],"various":[77],"sources":[78],"identification":[80,196],"features":[81],"analyze":[83],"architectural":[85],"external":[87],"a":[90,137,146],"app.":[92],"For":[93],"example,":[94],"two":[95],"apps":[97],"have":[99],"different":[100,166],"behavioral":[101],"patterns":[102],"but":[103,118],"attributes.":[106],"We":[107],"hypothesize":[108],"belong":[113],"same":[116],"attempt":[119],"mislead":[121],"code-level":[124],"tools":[127],"randomizing":[129],"their":[130],"behavior.":[131],"In":[132,180],"work,":[134],"we":[135,182],"utilize":[136],"promising":[138],"set":[139],"Android-oriented":[141],"metrics":[143,172],"guide":[145],"supervised":[147],"classification":[148],"learning":[149],"process":[150],"for":[151,194],"in":[155],"Android.":[156],"Our":[157],"empirical":[158],"results":[159],"on":[160],"2,869":[161],"apps,":[163],"across":[164],"35":[165],"families,":[168],"show":[169],"these":[171],"are":[173],"very":[174],"effective":[175],"identify":[177],"families.":[179],"particular,":[181],"achieve":[183],"low":[184],"false":[185],"positive":[186],"rate":[187],"(1.2%)":[188],"AUC":[190],"score":[191],"0.984":[193],"Random":[199],"Forest":[200],"(RF)":[201],"classifier.":[202]},"counts_by_year":[{"year":2025,"cited_by_count":3},{"year":2023,"cited_by_count":4},{"year":2022,"cited_by_count":1},{"year":2021,"cited_by_count":10},{"year":2020,"cited_by_count":2}],"updated_date":"2026-04-04T16:13:02.066488","created_date":"2025-10-10T00:00:00"}
