{"id":"https://openalex.org/W4390517513","doi":"https://doi.org/10.1016/j.jisa.2023.103691","title":"Enhancing android malware detection explainability through function call graph APIs","display_name":"Enhancing android malware detection explainability through function call graph APIs","publication_year":2024,"publication_date":"2024-01-02","ids":{"openalex":"https://openalex.org/W4390517513","doi":"https://doi.org/10.1016/j.jisa.2023.103691"},"language":"en","primary_location":{"is_oa":true,"landing_page_url":"https://doi.org/10.1016/j.jisa.2023.103691","pdf_url":null,"source":{"id":"https://openalex.org/S4210191536","display_name":"Journal of Information Security and Applications","issn_l":"2214-2126","issn":["2214-2126","2214-2134"],"is_oa":false,"is_in_doaj":false,"is_core":true,"host_organization":"https://openalex.org/P4310320990","host_organization_name":"Elsevier BV","host_organization_lineage":["https://openalex.org/P4310320990"],"host_organization_lineage_names":["Elsevier BV"],"type":"journal"},"license":"cc-by","license_id":"https://openalex.org/licenses/cc-by","version":"publishedVersion","is_accepted":true,"is_published":true},"type":"article","type_crossref":"journal-article","indexed_in":["crossref"],"open_access":{"is_oa":true,"oa_status":"hybrid","oa_url":"https://doi.org/10.1016/j.jisa.2023.103691","any_repository_has_fulltext":true},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5093633462","display_name":"Diego Soi","orcid":"https://orcid.org/0009-0009-0092-9067"},"institutions":[{"id":"https://openalex.org/I172446870","display_name":"University of Cagliari","ror":"https://ror.org/003109y17","country_code":"IT","type":"education","lineage":["https://openalex.org/I172446870"]}],"countries":["IT"],"is_corresponding":true,"raw_author_name":"Diego Soi","raw_affiliation_strings":["Department of Electrical and Electronic Engineering, University of Cagliari, Piazza d'Armi, Cagliari, 09123, Italy"],"affiliations":[{"raw_affiliation_string":"Department of Electrical and Electronic Engineering, University of Cagliari, Piazza d'Armi, Cagliari, 09123, Italy","institution_ids":["https://openalex.org/I172446870"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5103260907","display_name":"Alessandro Sanna","orcid":"https://orcid.org/0000-0002-0610-7736"},"institutions":[{"id":"https://openalex.org/I172446870","display_name":"University of Cagliari","ror":"https://ror.org/003109y17","country_code":"IT","type":"education","lineage":["https://openalex.org/I172446870"]}],"countries":["IT"],"is_corresponding":false,"raw_author_name":"Alessandro Sanna","raw_affiliation_strings":["Department of Electrical and Electronic Engineering, University of Cagliari, Piazza d'Armi, Cagliari, 09123, Italy"],"affiliations":[{"raw_affiliation_string":"Department of Electrical and Electronic Engineering, University of Cagliari, Piazza d'Armi, Cagliari, 09123, Italy","institution_ids":["https://openalex.org/I172446870"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5051452548","display_name":"Davide Maiorca","orcid":"https://orcid.org/0000-0003-2640-4663"},"institutions":[{"id":"https://openalex.org/I172446870","display_name":"University of Cagliari","ror":"https://ror.org/003109y17","country_code":"IT","type":"education","lineage":["https://openalex.org/I172446870"]}],"countries":["IT"],"is_corresponding":false,"raw_author_name":"Davide Maiorca","raw_affiliation_strings":["Department of Electrical and Electronic Engineering, University of Cagliari, Piazza d'Armi, Cagliari, 09123, Italy"],"affiliations":[{"raw_affiliation_string":"Department of Electrical and Electronic Engineering, University of Cagliari, Piazza d'Armi, Cagliari, 09123, Italy","institution_ids":["https://openalex.org/I172446870"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5075367917","display_name":"Giorgio Giacinto","orcid":"https://orcid.org/0000-0002-5759-3017"},"institutions":[{"id":"https://openalex.org/I172446870","display_name":"University of Cagliari","ror":"https://ror.org/003109y17","country_code":"IT","type":"education","lineage":["https://openalex.org/I172446870"]}],"countries":["IT"],"is_corresponding":false,"raw_author_name":"Giorgio Giacinto","raw_affiliation_strings":["Department of Electrical and Electronic Engineering, University of Cagliari, Piazza d'Armi, Cagliari, 09123, Italy"],"affiliations":[{"raw_affiliation_string":"Department of Electrical and Electronic Engineering, University of Cagliari, Piazza d'Armi, Cagliari, 09123, Italy","institution_ids":["https://openalex.org/I172446870"]}]}],"institution_assertions":[],"countries_distinct_count":1,"institutions_distinct_count":1,"corresponding_author_ids":["https://openalex.org/A5093633462"],"corresponding_institution_ids":["https://openalex.org/I172446870"],"apc_list":{"value":3140,"currency":"USD","value_usd":3140,"provenance":"doaj"},"apc_paid":{"value":3140,"currency":"USD","value_usd":3140,"provenance":"doaj"},"fwci":7.497,"has_fulltext":true,"fulltext_origin":"pdf","cited_by_count":3,"citation_normalized_percentile":{"value":0.999798,"is_in_top_1_percent":true,"is_in_top_10_percent":true},"cited_by_percentile_year":{"min":96,"max":97},"biblio":{"volume":"80","issue":null,"first_page":"103691","last_page":"103691"},"is_retracted":false,"is_paratext":false,"primary_topic":{"id":"https://openalex.org/T11241","display_name":"Advanced Malware Detection Techniques","score":1.0,"subfield":{"id":"https://openalex.org/subfields/1711","display_name":"Signal Processing"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T11241","display_name":"Advanced Malware Detection Techniques","score":1.0,"subfield":{"id":"https://openalex.org/subfields/1711","display_name":"Signal Processing"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T10260","display_name":"Software Engineering Research","score":0.9929,"subfield":{"id":"https://openalex.org/subfields/1710","display_name":"Information Systems"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T10400","display_name":"Network Security and Intrusion Detection","score":0.9895,"subfield":{"id":"https://openalex.org/subfields/1705","display_name":"Computer Networks and Communications"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/android-malware","display_name":"Android Malware","score":0.7010743},{"id":"https://openalex.org/keywords/call-graph","display_name":"Call graph","score":0.4691951},{"id":"https://openalex.org/keywords/malware-analysis","display_name":"Malware analysis","score":0.44432905},{"id":"https://openalex.org/keywords/mobile-malware","display_name":"Mobile malware","score":0.4237952}],"concepts":[{"id":"https://openalex.org/C541664917","wikidata":"https://www.wikidata.org/wiki/Q14001","display_name":"Malware","level":2,"score":0.8583107},{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.7892245},{"id":"https://openalex.org/C557433098","wikidata":"https://www.wikidata.org/wiki/Q94","display_name":"Android (operating system)","level":2,"score":0.77936065},{"id":"https://openalex.org/C2989133298","wikidata":"https://www.wikidata.org/wiki/Q94","display_name":"Android malware","level":3,"score":0.7010743},{"id":"https://openalex.org/C2778738651","wikidata":"https://www.wikidata.org/wiki/Q16546687","display_name":"Novelty","level":2,"score":0.6699779},{"id":"https://openalex.org/C102379954","wikidata":"https://www.wikidata.org/wiki/Q2589940","display_name":"Call graph","level":2,"score":0.4691951},{"id":"https://openalex.org/C2779395397","wikidata":"https://www.wikidata.org/wiki/Q15731404","display_name":"Malware analysis","level":3,"score":0.44432905},{"id":"https://openalex.org/C132525143","wikidata":"https://www.wikidata.org/wiki/Q141488","display_name":"Graph","level":2,"score":0.42734724},{"id":"https://openalex.org/C2780967490","wikidata":"https://www.wikidata.org/wiki/Q1291200","display_name":"Mobile malware","level":3,"score":0.4237952},{"id":"https://openalex.org/C38652104","wikidata":"https://www.wikidata.org/wiki/Q3510521","display_name":"Computer security","level":1,"score":0.38974953},{"id":"https://openalex.org/C119857082","wikidata":"https://www.wikidata.org/wiki/Q2539","display_name":"Machine learning","level":1,"score":0.3877157},{"id":"https://openalex.org/C80444323","wikidata":"https://www.wikidata.org/wiki/Q2878974","display_name":"Theoretical computer science","level":1,"score":0.21545568},{"id":"https://openalex.org/C111919701","wikidata":"https://www.wikidata.org/wiki/Q9135","display_name":"Operating system","level":1,"score":0.15831763},{"id":"https://openalex.org/C138885662","wikidata":"https://www.wikidata.org/wiki/Q5891","display_name":"Philosophy","level":0,"score":0.0},{"id":"https://openalex.org/C27206212","wikidata":"https://www.wikidata.org/wiki/Q34178","display_name":"Theology","level":1,"score":0.0}],"mesh":[],"locations_count":2,"locations":[{"is_oa":true,"landing_page_url":"https://doi.org/10.1016/j.jisa.2023.103691","pdf_url":null,"source":{"id":"https://openalex.org/S4210191536","display_name":"Journal of Information Security and Applications","issn_l":"2214-2126","issn":["2214-2126","2214-2134"],"is_oa":false,"is_in_doaj":false,"is_core":true,"host_organization":"https://openalex.org/P4310320990","host_organization_name":"Elsevier BV","host_organization_lineage":["https://openalex.org/P4310320990"],"host_organization_lineage_names":["Elsevier BV"],"type":"journal"},"license":"cc-by","license_id":"https://openalex.org/licenses/cc-by","version":"publishedVersion","is_accepted":true,"is_published":true},{"is_oa":true,"landing_page_url":"https://hdl.handle.net/11584/388625","pdf_url":"https://iris.unica.it/bitstream/11584/388625/3/Enhancing%20android%20malware%20detection%20explainability%20through%20function%20call%20graph%20APIs_2024.pdf","source":{"id":"https://openalex.org/S4377196293","display_name":"UNICA IRIS Institutional Research Information System (University of Cagliari)","issn_l":null,"issn":null,"is_oa":false,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/I172446870","host_organization_name":"University of Cagliari","host_organization_lineage":["https://openalex.org/I172446870"],"host_organization_lineage_names":["University of Cagliari"],"type":"repository"},"license":"other-oa","license_id":"https://openalex.org/licenses/other-oa","version":"publishedVersion","is_accepted":true,"is_published":true}],"best_oa_location":{"is_oa":true,"landing_page_url":"https://doi.org/10.1016/j.jisa.2023.103691","pdf_url":null,"source":{"id":"https://openalex.org/S4210191536","display_name":"Journal of Information Security and Applications","issn_l":"2214-2126","issn":["2214-2126","2214-2134"],"is_oa":false,"is_in_doaj":false,"is_core":true,"host_organization":"https://openalex.org/P4310320990","host_organization_name":"Elsevier BV","host_organization_lineage":["https://openalex.org/P4310320990"],"host_organization_lineage_names":["Elsevier BV"],"type":"journal"},"license":"cc-by","license_id":"https://openalex.org/licenses/cc-by","version":"publishedVersion","is_accepted":true,"is_published":true},"sustainable_development_goals":[{"id":"https://metadata.un.org/sdg/16","score":0.61,"display_name":"Peace, justice, and strong institutions"}],"grants":[],"datasets":[],"versions":[],"referenced_works_count":20,"referenced_works":["https://openalex.org/W2752929869","https://openalex.org/W2792736988","https://openalex.org/W2885070483","https://openalex.org/W3091856382","https://openalex.org/W3111533025","https://openalex.org/W3120873936","https://openalex.org/W3125596609","https://openalex.org/W3160238701","https://openalex.org/W3166593787","https://openalex.org/W4213440299","https://openalex.org/W4226379276","https://openalex.org/W4235254606","https://openalex.org/W4238068067","https://openalex.org/W4241511027","https://openalex.org/W4285059789","https://openalex.org/W4296105182","https://openalex.org/W4313468873","https://openalex.org/W4327771520","https://openalex.org/W4379518989","https://openalex.org/W4388923662"],"related_works":["https://openalex.org/W4312234627","https://openalex.org/W4308353525","https://openalex.org/W4249118297","https://openalex.org/W3200508744","https://openalex.org/W3195586271","https://openalex.org/W2782775281","https://openalex.org/W2717179875","https://openalex.org/W2395100307","https://openalex.org/W2311926078","https://openalex.org/W2026973889"],"abstract_inverted_index":{"Nowadays,":[0],"mobile":[1],"devices":[2],"are":[3],"massively":[4],"used":[5],"in":[6,79],"everyday":[7],"activities.":[8],"Thus,":[9],"they":[10],"contain":[11,122],"sensitive":[12],"data":[13],"targeted":[14],"by":[15],"threat":[16],"actors":[17],"like":[18],"bank":[19],"accounts":[20],"and":[21,86,125],"personal":[22],"information.":[23],"Through":[24],"the":[25,42,58,80,88,94,104,113,123,129,168,172],"years,":[26],"Machine":[27],"Learning":[28],"approaches":[29],"have":[30],"been":[31],"proposed":[32],"to":[33,57,72,84,146,154],"identify":[34],"malicious":[35,60,169],"Android":[36,74],"applications,":[37],"but":[38],"recent":[39],"research":[40],"highlights":[41],"need":[43],"for":[44,47],"better":[45],"explanations":[46,102],"model":[48,105],"decisions,":[49],"as":[50],"existing":[51,155],"ones":[52],"may":[53,163],"not":[54],"be":[55],"related":[56],"app's":[59],"functionalities.":[61],"This":[62],"paper":[63],"proposes":[64],"an":[65],"explainable":[66],"approach":[67],"based":[68],"on":[69],"static":[70],"analysis":[71,82],"detect":[73],"malware.":[75],"The":[76,138],"novelty":[77],"lies":[78],"specific":[81],"conducted":[83],"select":[85],"extract":[87],"features":[89],"(i.e.,":[90],"APIs":[91],"taken":[92],"from":[93],"DEX":[95],"Call":[96],"Graph)":[97],"that":[98,142],"immediately":[99],"provide":[100],"meaningful":[101],"of":[103,112,127,132,152,171],"functionality,":[106],"thus":[107],"allowing":[108],"a":[109],"significant":[110,165],"correlation":[111],"malware":[114],"behavior":[115],"with":[116],"its":[117],"family.":[118],"Moreover,":[119],"since":[120],"we":[121],"number":[124],"type":[126],"features,":[128],"distinct":[130],"impacts":[131],"each":[133],"one":[134],"appear":[135],"more":[136],"evident.":[137],"attained":[139],"results":[140,149],"show":[141],"it":[143],"is":[144],"possible":[145],"reach":[147],"comparable":[148],"(in":[150],"terms":[151],"accuracy)":[153],"state-of-the-art":[156],"models":[157],"while":[158],"providing":[159],"easy-to-understand":[160],"explanations,":[161],"which":[162],"yield":[164],"insights":[166],"into":[167],"functionalities":[170],"samples.":[173]},"cited_by_api_url":"https://api.openalex.org/works?filter=cites:W4390517513","counts_by_year":[{"year":2024,"cited_by_count":3}],"updated_date":"2024-12-14T04:50:43.319392","created_date":"2024-01-03"}