Development of anomaly detection technique on Android Dalvik

碩士 === 國立高雄應用科技大學 === 電子工程系 === 99 === Mobile devices are increasingly popular. However, the information security on mobile devices has not gradually been focused. Malicious applications easily downloading from Internet, attack the possible vulnerabilities on the mobile system. These attacks not onl...

Full description

Bibliographic Details
Main Authors: Chi-Han Lee, 李奇翰
Other Authors: Mong-Fong Horng
Format: Others
Language:zh-TW
Published: 2011
Online Access:http://ndltd.ncl.edu.tw/handle/82033264719663172460
id ndltd-TW-099KUAS8393037
record_format oai_dc
spelling ndltd-TW-099KUAS83930372015-10-16T04:02:40Z http://ndltd.ncl.edu.tw/handle/82033264719663172460 Development of anomaly detection technique on Android Dalvik Android Dalvik 異常行為檢測技術開發 Chi-Han Lee 李奇翰 碩士 國立高雄應用科技大學 電子工程系 99 Mobile devices are increasingly popular. However, the information security on mobile devices has not gradually been focused. Malicious applications easily downloading from Internet, attack the possible vulnerabilities on the mobile system. These attacks not only causes threats in system, also damages private user information. Android is a new-developed operating system for mobile devices and will become one of significant development trends of mobile devices. Android operates applications in an execution environment as called as Dalvik virtual machine(Dalvik VM). How to monitor and detect the malicious applications in Dalvik environment is the target problem investigated in this thesis. Based on the evidence of the self-duplication of malicious programs, the system memory is consumed in an abnormal manner. Thus when malicious codes hidden in the application, Dalvik memory usage will be unusual. This paper proposes a memory monitor tool, to analyze exception memory usage of Dalvik applications. based on the analysis, the security of applicatons is evaluated. With this tool, the security of unknown applications will be examined ensure the Android system security. Mong-Fong Horng Bin-Yih Liao 洪盟峰 廖斌毅 2011 學位論文 ; thesis 70 zh-TW
collection NDLTD
language zh-TW
format Others
sources NDLTD
description 碩士 === 國立高雄應用科技大學 === 電子工程系 === 99 === Mobile devices are increasingly popular. However, the information security on mobile devices has not gradually been focused. Malicious applications easily downloading from Internet, attack the possible vulnerabilities on the mobile system. These attacks not only causes threats in system, also damages private user information. Android is a new-developed operating system for mobile devices and will become one of significant development trends of mobile devices. Android operates applications in an execution environment as called as Dalvik virtual machine(Dalvik VM). How to monitor and detect the malicious applications in Dalvik environment is the target problem investigated in this thesis. Based on the evidence of the self-duplication of malicious programs, the system memory is consumed in an abnormal manner. Thus when malicious codes hidden in the application, Dalvik memory usage will be unusual. This paper proposes a memory monitor tool, to analyze exception memory usage of Dalvik applications. based on the analysis, the security of applicatons is evaluated. With this tool, the security of unknown applications will be examined ensure the Android system security.
author2 Mong-Fong Horng
author_facet Mong-Fong Horng
Chi-Han Lee
李奇翰
author Chi-Han Lee
李奇翰
spellingShingle Chi-Han Lee
李奇翰
Development of anomaly detection technique on Android Dalvik
author_sort Chi-Han Lee
title Development of anomaly detection technique on Android Dalvik
title_short Development of anomaly detection technique on Android Dalvik
title_full Development of anomaly detection technique on Android Dalvik
title_fullStr Development of anomaly detection technique on Android Dalvik
title_full_unstemmed Development of anomaly detection technique on Android Dalvik
title_sort development of anomaly detection technique on android dalvik
publishDate 2011
url http://ndltd.ncl.edu.tw/handle/82033264719663172460
work_keys_str_mv AT chihanlee developmentofanomalydetectiontechniqueonandroiddalvik
AT lǐqíhàn developmentofanomalydetectiontechniqueonandroiddalvik
AT chihanlee androiddalvikyìchángxíngwèijiǎncèjìshùkāifā
AT lǐqíhàn androiddalvikyìchángxíngwèijiǎncèjìshùkāifā
_version_ 1718090623474466816