A method and system for detecting ransomware based on permission mode
A technology of software detection and authorization, which is applied in the direction of instruments, calculations, electrical digital data processing, etc., can solve problems such as unrealized tools, and achieve good detection results, high detection rate, and low false alarm rate
- Summary
- Abstract
- Description
- Claims
- Application Information
AI Technical Summary
Problems solved by technology
Method used
Image
Examples
Embodiment
[0055] This embodiment discloses a method for detecting ransomware based on authority mode, such as figure 1 As shown, the steps are as follows:
[0056] S1. When receiving the application software to be detected, first decompress the APK file in the application software to be detected;
[0057] S2. Analyzing the AndroidManifest.xml file from the APK file in the application software to be detected; and extracting the permissions applied by the application software to be detected from the AndroidManifest.xml file;
[0058] S3. Judging whether the number of permissions applied by the application software to be detected is less than the fixed value X, if so, then enter step S4, if not, then judge that the application software to be detected is not ransomware; wherein the fixed value X is 17 to 20, in In this embodiment, the fixed value X is 17.
[0059] S4. Match the permission applied for by the application software to be detected with the given permission mode. If the matchin...
PUM
Abstract
Description
Claims
Application Information
- R&D Engineer
- R&D Manager
- IP Professional
- Industry Leading Data Capabilities
- Powerful AI technology
- Patent DNA Extraction
Browse by: Latest US Patents, China's latest patents, Technical Efficacy Thesaurus, Application Domain, Technology Topic, Popular Technical Reports.
© 2024 PatSnap. All rights reserved.Legal|Privacy policy|Modern Slavery Act Transparency Statement|Sitemap|About US| Contact US: help@patsnap.com