作者: Yuan Zhang , Min Yang , Zhemin Yang , Guofei Gu , Peng Ning
DOI: 10.1109/TIFS.2014.2347206
关键词:
摘要: The android platform adopts permissions to protect sensitive resources from untrusted apps. However, after are granted by users at install time, apps could use these (sensitive resources) with no further restrictions. Thus, recent years have witnessed the explosion of undesirable behaviors in Android An important part defense is accurate analysis traditional syscall-based techniques not well-suited for Android, because they capture critical interactions between application and system. This paper presents VetDroid, a dynamic generally analyzing novel permission perspective. VetDroid proposes systematic technique effectively construct behaviors, i.e., how applications access (sensitive) system resources, acquired permission-sensitive utilized application. With security analysts can easily examine internal an app. Using real-world malware, we show that clearly reconstruct fine-grained malicious ease malware analysis. We apply 1249 top free Google Play. assist finding more information leaks than TaintDroid, state-of-the-art technique. In addition, analyze causes TaintDroid cannot reveal. Finally, help identify subtle vulnerabilities some (top free) otherwise hard detect.