Show Me the Money! Finding Flawed Implementations of Third-party In-app Payment in Android Apps.

作者: Wenbo Yang , Yuanyuan Zhang , Juanru Li , Hui Liu , Qing Wang

DOI: 10.14722/NDSS.2017.23091

关键词:

摘要:

参考文章(17)
Adam Bates, Kevin R. B. Butler, Bradley Reaves, Patrick Traynor, Nolen Scaife, Mo(bile) money, mo(bile) problems: analysis of branchless banking applications in the developing world usenix security symposium. pp. 17- 32 ,(2015)
Manuel Egele, David Brumley, Yanick Fratantonio, Christopher Kruegel, An empirical study of cryptographic misuse in android applications computer and communications security. pp. 73- 84 ,(2013) , 10.1145/2508859.2516693
David Sounthiraraj, Justin Sahs, Garrett Greenwood, Zhiqiang Lin, Latifur Khan, SMV-HUNTER: Large Scale, Automated Detection of SSL/TLS Man-in-the-Middle Vulnerabilities in Android Apps network and distributed system security symposium. ,(2014) , 10.14722/NDSS.2014.23205
Fangqi Sun, Liang Xu, Zhendong Su, Detecting Logic Vulnerabilities in E-commerce Applications. network and distributed system security symposium. ,(2014) , 10.14722/NDSS.2014.23351
Yajin Zhou, Lei Wu, Zhi Wang, Xuxian Jiang, Harvesting developer credentials in Android apps wireless network security. pp. 23- ,(2015) , 10.1145/2766498.2766499
Sascha Fahl, Marian Harbach, Thomas Muders, Matthew Smith, Lars Baumgärtner, Bernd Freisleben, Why eve and mallory love android Proceedings of the 2012 ACM conference on Computer and communications security - CCS '12. pp. 50- 61 ,(2012) , 10.1145/2382196.2382205
Collin Mulliner, William Robertson, Engin Kirda, VirtualSwindle: an automated attack against in-app billing on android computer and communications security. pp. 459- 470 ,(2014) , 10.1145/2590296.2590335
Shaz Qadeer, Shuo Chen, Yuri Gurevich, Yuchen Zhou, Rui Wang, David Evans, Explicating SDKs: uncovering assumptions underlying secure authentication and authorization usenix security symposium. pp. 399- 414 ,(2013)
Tongxin Li, Xiaoyong Zhou, Luyi Xing, Yeonjoon Lee, Muhammad Naveed, XiaoFeng Wang, Xinhui Han, Mayhem in the Push Clouds: Understanding and Mitigating Security Hazards in Mobile Push-Messaging Services computer and communications security. pp. 978- 989 ,(2014) , 10.1145/2660267.2660302
Edward Garcia, Jason Nieh, Nicolas Viennot, A measurement study of google play measurement and modeling of computer systems. ,vol. 42, pp. 221- 233 ,(2014) , 10.1145/2591971.2592003