Applying highly space efficient blacklisting to mobile malware
Marián Kühnel, Ulrike Meyer · Logic Journal of IGPL · 2016
Our contribution in this article is twofold. For once we present a novel modification to the Android emulator in order to trick the mobile malware to think that it is being executed on an actual device. Second we extend our seminal paper on Highly Space Efficient Blacklisting (HSEB) [9] by applying HSEB to mobile malware initiated traffic obtained by dynamically analysing 4.231 mobile malware samples. Our evaluation of IP traffic shows that HSEB can save up to 14.46% space when applied to IP-address blacklists. On the contrary, HSEB only marginally outperforms a simple blacklisting technique when applied to phone numbers used in mobile malware.