摘要
手机恶意程序有对智能手机用户造成经济损失、数据丢失及隐私泄露等危害。在现有的Android入侵检测系统框架基础上,提出异常入侵检测中的主动响应系统,及时减轻手机恶意软件对用户造成的危害。该主动响应系统采用C/S架构,其中客户端收集手机中应用的程序信息,负责最后的响应措施;服务器端及时静态分析由客户端发来的可执行文件,锁定导致手机出现异常状态的恶意程序。测试结果表明,该系统可以主动对手机上已发现的异常行为做出及时有效响应。
The mobile malicious programs would cause such face hazards economic loss, data loss and privacy leakages, et al. The paper, based on the existing Android intrusion detection systems, proposes the active response system in anomalous intrusion detection, thus to reduce the harm caused by malicious software. The system uses C/S structure, and the client collects the applications information in the smart-phone and is in charge of the response measures. The server analyzes promptly the executable file of applications from the client, finds the malicious programs which cause abnormal conditions to the phone. The experimental results show that this system could make timely and effective response to the abnormal behaviors found in the phone.
出处
《通信技术》
2012年第1期102-104,共3页
Communications Technology
基金
江苏省产学研前瞻性联合研究资助项目(No.BY128)