Patent · US Active

Malicious code detection method based on community structure analysis

US10303874B2 · kind B2 · utility

1Cited by
4References
4Claims
0Family size

Assignee

Inventors

Key dates

Filing dateJun 22, 2017
Grant dateMay 28, 2019
Priority date
Expiry dateSep 8, 2037

Classification

  • Technology area (CPC G)Physics
  • CPC primaryG06N20/00
  • WIPO fieldComputer technology
  • WIPO sectorElectrical engineering

Abstract

This invention comes up with a kind of Android malicious code detection method on the base of community structure analysis. During the reverse analysis process of target program, firstly, it obtains critical static feature information automatically, such as permission, function, class, system API, etc.; secondly, it uses the call relation between functions to create function call graph, and undertakes pretreatment on function call graph; make cycle division and analysis for the weighted function call graph so as to get the correction division of community structure; finally, it extract features from community structures for machine learning and get the final maliciousness determination result. This invention method is able to undertake program internal structure analysis and malicious code detection rapidly when facing a large number of Android application program samples generated by “repackaging” technology.

Source: USPTO / EPO open patent data. Objective bibliographic and citation counts.