【24h】

Let me Join Two Worlds! Analyzing the Integration of Web and Native Technologies in Hybrid Mobile Apps

机译:让我加入两个世界!分析混合移动应用程序中Web和本机技术的集成

获取原文
获取原文并翻译 | 示例

摘要

We can notice that security problems of inappropriate integration of native and web technologies in hybrid mobile applications (apps) have been covered in the related state-of-the-art research. However, analyzing hybrid mobile apps' unique behaviors has been seldom addressed. In this paper, we explore the influence of native and web technologies integration in hybrid mobile apps on the generated profile of mobile applications. Specifically, we analyze the type of Security Sensitive APIs (SS-APIs) exposed to web content and identify the corresponding usage patterns by systematically tracking function-call-graphs of a large number of hybrid and native mobile apps. Our investigations indicate that the generated profiles for hybrid and native mobile apps are considerably different. Using our proposed tool, called Hybrid-scanner, for tracking and analyzing internal behaviors of hybrid mobile apps, we show that there is more trace of API calling for triggering a specific SS-API in a hybrid mobile app in comparison with Android native mobile apps. In addition, we have found that almost 40% of SS-APIs in hybrid mobile apps are invoked by third-party libraries, e.g. advertisement libraries. This knowledge, however, is crucial for designing appropriate malware detection or vulnerability mitigation strategies. Based on our results, we discuss two main approaches in Android malware analysis field and enumerate some suggestions which should be considered in order to successfully detect malicious behaviors in such new type of apps.
机译:我们可以注意到,相关的最新研究已经涵盖了本机和Web技术在混合移动应用程序(apps)中的不适当集成的安全性问题。但是,很少讨论分析混合移动应用程序的独特行为。在本文中,我们探讨了混合移动应用程序中本机和Web技术集成对生成的移动应用程序配置文件的影响。具体来说,我们分析了暴露于Web内容的安全敏感API(SS-API)的类型,并通过系统地跟踪大量混合和本机移动应用程序的功能调用图来确定相应的使用模式。我们的调查表明,针对混合和本地移动应用程序生成的配置文件有很大不同。使用我们提出的称为Hybrid-scanner的工具来跟踪和分析混合移动应用程序的内部行为,我们发现与Android本机移动应用程序相比,在混合移动应用程序中有更多的API调用来触发特定的SS-API 。此外,我们发现,混合移动应用中将近40%的SS-API是由第三方库(例如,广告库。但是,此知识对于设计适当的恶意软件检测或漏洞缓解策略至关重要。根据我们的结果,我们讨论了Android恶意软件分析领域中的两种主要方法,并列举了一些建议,以便成功检测这种新型应用程序中的恶意行为。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号