Androids vs. Android: Synthetic Mobile Malware Analysis

THOTCON 0x5

Presented by: David Shaw
Date: Friday April 25, 2014
Time: 13:00 - 13:50
Location: South Loft
Track: Labs

In today's world of smartphone ubiquity, mobile malware is an increasingly prevalent (and difficult to mitigate) threat. One problem area for contemporary malware analysts is determining which apps legitimately need the permissions they request, and which have nefarious motivations. This presentation introduces a novel approach to mobile malware analysis at scale: synthetic sentiment analysis. Leveraging associative models of permissions, analysts can quickly determine which apps "feel" most suspicious--a huge time saver in a field with millions of apps to assess.

David Shaw

David has extensive experience in many aspects of information security. After starting his career in perimeter analysis and external threat research, David joined Redspin in 2009 and has performed several roles within the organization. David is currently Redspin's Chief Technology Officer, specializing in application security and managing a team of highly skilled engineers.


KhanFu - Mobile schedules for INFOSEC conferences.
Mobile interface | Alternate Formats