Forensic analysis and security assessment of Android m-banking apps

作者: Rajchada Chanajitt , Wantanee Viriyasitavat , Kim-Kwang Raymond Choo

DOI: 10.1080/00450618.2016.1182589

关键词: Mobile deviceEncryptionPopularityInternet privacySecurity assessmentWorld Wide WebMobile technologyAndroid (operating system)Engineering

摘要: The increasing popularity and constant evolution of mobile technologies have resulted in an increased focus device app security forensics research. Banking apps appear to be understudied topic, despite their with consumers. In this paper, seven Android m-banking Thailand are analysed. Based on the findings our study, we describe forensic artefacts that could forensically recovered from apps, assessment apps. For example, found several do not implement root detection, encrypt user data, or it is possible modify install repackaged

参考文章(22)
Christian D'Orazio, Kim-Kwang Raymond Choo, An adversary model to evaluate DRM protection of video contents on iOS devices Computers & Security. ,vol. 56, pp. 94- 110 ,(2016) , 10.1016/J.COSE.2015.06.009
Abdullah Azfar, Lin Liu, Kim-Kwang Raymond Choo, Forensic Taxonomy of Popular Android mHealth Apps arXiv: Computers and Society. ,(2015)
Jin-Hyuk Jung, Ju Young Kim, Hyeong-Chan Lee, Jeong Hyun Yi, Repackaging Attack on Android Banking Applications and Its Countermeasures Wireless Personal Communications. ,vol. 73, pp. 1421- 1437 ,(2013) , 10.1007/S11277-013-1258-X
Mohammad Shariati, Ali Dehghantanha, Kim-Kwang Raymond Choo, SugarSync forensic analysis Australian Journal of Forensic Sciences. ,vol. 48, pp. 95- 117 ,(2016) , 10.1080/00450618.2015.1021379
Konstantia Barmpatsalou, Dimitrios Damopoulos, Georgios Kambourakis, Vasilios Katos, A critical review of 7 years of Mobile Device Forensics Digital Investigation. ,vol. 10, pp. 323- 349 ,(2013) , 10.1016/J.DIIN.2013.10.003
Quang Do, Ben Martini, Kim-Kwang Raymond Choo, Enforcing File System Permissions on Android External Storage: Android File System Permissions (AFP) Prototype and ownCloud trust security and privacy in computing and communications. pp. 949- 954 ,(2014) , 10.1109/TRUSTCOM.2014.53
James Imgraben, Alewyn Engelbrecht, Kim-Kwang Raymond Choo, Always connected, but are smart mobile users getting more security savvy? A survey of smart mobile device users Behaviour & Information Technology. ,vol. 33, pp. 1347- 1360 ,(2014) , 10.1080/0144929X.2014.934286
Christian D’Orazio, Kim-Kwang Raymond Choo, A Generic Process to Identify Vulnerabilities and Design Weaknesses in iOS Healthcare Apps Social Science Research Network. ,(2015)
Mariantonietta La Polla, Fabio Martinelli, Daniele Sgandurra, A Survey on Security for Mobile Devices IEEE Communications Surveys and Tutorials. ,vol. 15, pp. 446- 471 ,(2013) , 10.1109/SURV.2012.013012.00028
Noora Al Mutawa, Ibrahim Baggili, Andrew Marrington, Forensic analysis of social networking applications on mobile devices Digital Investigation. ,vol. 9, ,(2012) , 10.1016/J.DIIN.2012.05.007