The purpose of this repository is to collect all well-known Android evasive techniques.
The documentation contains a high-level per-purpose description along with the implementation details.
Moreover, this repo contains a proof-of-concept Android app that implements such evasive techniques.
We were inspired by Al-Khaser, an executable for the Windows OS developed for the same purpose.
This work was used for the scientific paper "Unmasking the Veiled: A Comprehensive Analysis of Android Evasive Malware", published at ACM ASIACCS 2024.
BibTeX entry:
@inproceedings{ruggia24unmasking,
title={Unmasking the Veiled: A Comprehensive Analysis of Android Evasive Malware},
author={Ruggia, Antonio and Nisi, Dario and Dambra, Savino and Merlo, Alessio and Balzarotti, Davide and Aonzo, Simone},
booktitle={Proceedings of the 2024 ACM Asia conference on Computer and Communications Security (ASIACCS)},
year={2024},
affiliations = {Eurecom, University of Genoa}
}