Android permissions demystified

作者: Adrienne Porter Felt , Erika Chin , Steve Hanna , Dawn Song , David Wagner

DOI: 10.1145/2046707.2046779

关键词: Permission systemWorld Wide WebAndroid (operating system)Android malwareMobile malwarePermissionPrinciple of least privilegeComputer scienceApplication programming interface

摘要: … We study Android applications to determine whether Android … overprivilege in compiled Android applications. Stowaway … We used automated testing tools on the Android API in order …

参考文章(15)
Damien Octeau, William Enck, Patrick McDaniel, Swarat Chaudhuri, A study of android application security usenix security symposium. pp. 21- 21 ,(2011)
Adrienne Porter Felt, Kate Greenwood, David Wagner, The effectiveness of application permissions usenix conference on web application development. pp. 7- 7 ,(2011)
Adam Kiezun, Shay Artzi, Jeff H. Perkins, Carlos Pacheco, Michael D. Ernst, Finding the needles in the haystack: Generating legal test inputs for object-oriented programs ,(2006)
David Barrera, H. G üne ş Kayacik, Paul C. van Oorschot, Anil Somayaji, A methodology for empirical analysis of permission-based security models and its application to android Proceedings of the 17th ACM conference on Computer and communications security - CCS '10. pp. 73- 84 ,(2010) , 10.1145/1866307.1866317
Erika Chin, Adrienne Porter Felt, Kate Greenwood, David Wagner, Analyzing inter-application communication in Android Proceedings of the 9th international conference on Mobile systems, applications, and services - MobiSys '11. pp. 239- 252 ,(2011) , 10.1145/1999995.2000018
William Enck, Machigar Ongtang, Patrick McDaniel, On lightweight mobile phone application certification computer and communications security. pp. 235- 245 ,(2009) , 10.1145/1653662.1653691
William Enck, Machigar Ongtang, Patrick McDaniel, Understanding Android Security ieee symposium on security and privacy. ,vol. 7, pp. 50- 57 ,(2009) , 10.1109/MSP.2009.26
Carlos Pacheco, Shuvendu K. Lahiri, Michael D. Ernst, Thomas Ball, Feedback-Directed Random Test Generation international conference on software engineering. pp. 75- 84 ,(2007) , 10.1109/ICSE.2007.37
Carlos Pacheco, Michael D. Ernst, Eclat: automatic generation and classification of test inputs european conference on object oriented programming. pp. 504- 527 ,(2005) , 10.1007/11531142_22
Jason Sawin, Atanas Rountev, Improving static resolution of dynamic class loading in Java using dynamically gathered environment information automated software engineering. ,vol. 16, pp. 357- 381 ,(2009) , 10.1007/S10515-009-0049-9