Rootector: Robust android rooting detection framework using machine learning algorithms

Recently, the newly launched Google protect service alerts Android users from installing rooting tools. However, Android users lean toward rooting their Android devices to gain unlimited privileges, which allows them to customize their devices and allows Android Apps to bypass all Android security l...

Full description

Saved in:
Bibliographic Details
Main Authors: Elsersy, Wael F., Anuar, Nor Badrul, Ab Razak, Mohd Faizal
Format: Article
Published: Springer Verlag (Germany) 2023
Subjects:
Online Access:http://eprints.um.edu.my/39521/
Tags: Add Tag
No Tags, Be the first to tag this record!
Description
Summary:Recently, the newly launched Google protect service alerts Android users from installing rooting tools. However, Android users lean toward rooting their Android devices to gain unlimited privileges, which allows them to customize their devices and allows Android Apps to bypass all Android security logging and security system. Rooting is one of the most malicious tactics that is used by Android malware that offers malware with the ability to open backdoor, server ports, access the Android kernel commands, and silently install malicious App and make them irremovable and undetectable. The existing Android malware detection frameworks propose embedded root-exploit code detection within the Android App. However, most frameworks overlook the rooted device detection part. In addition, many evasion techniques are developed to cloak the rooted devices. The above facts pose the challenging tasks of rooting detection and the current studies highlighted a deficiency in root detection research. Hence, this study proposes