Applying highly space efficient blacklisting to mobile malware

Marián Kühnel, Ulrike Meyer · Logic Journal of IGPL · 2016

Our contribution in this article is twofold. For once we present a novel modification to the Android emulator in order to trick the mobile malware to think that it is being executed on an actual device. Second we extend our seminal paper on Highly Space Efficient Blacklisting (HSEB) [9] by applying HSEB to mobile malware initiated traffic obtained by dynamically analysing 4.231 mobile malware samples. Our evaluation of IP traffic shows that HSEB can save up to 14.46% space when applied to IP-address blacklists. On the contrary, HSEB only marginally outperforms a simple blacklisting technique when applied to phone numbers used in mobile malware.

Read the paper · More papers on PaperTik