首页> 外文会议>International workshop on information security application >Punobot: Mobile Botnet Using Push Notification Service in Android
【24h】

Punobot: Mobile Botnet Using Push Notification Service in Android

机译:Punobot:移动僵尸网络在Android中使用推送通知服务

获取原文

摘要

A botnet is a collection of computers compromised by attackers, which is being increasingly used to advance political or financial interests. Recently, mobile botnets that rely on compromised mobile devices are emerging due to their improvements in computation power and communication capability. To cope with mobile botnets, we need to anticipate and prevent their command and control (C&C) channels. In this paper, we explore a new C&C channel for mobile botnets that is based on the push notification service (PNS) of Android: Google Cloud Messaging for Android (GCM). We find that (1) the registration process of the GCM only checks the validity of Gmail address and (2) applications can hide received push messages from users. By exploiting these two vulnerabilities, we evaluate the feasibility of the push notification service-based mobile botnet (Punobot) in several aspects. We show that Punobot is stealthy, energy-efficient, and dangerous. We also recommend remedies that any PNSs should consider to eliminate their security weaknesses.
机译:僵尸网络是攻击者破坏的计算机的集合,越来越多的僵尸网络被用来促进政治或经济利益。最近,由于僵尸网络在计算能力和通信能力方面的改进,出现了依赖受感染移动设备的僵尸网络。为了应对移动僵尸网络,我们需要预见并阻止它们的命令和控制(C&C)通道。在本文中,我们探索了一个新的针对移动僵尸网络的C&C渠道,该渠道基于Android的推送通知服务(PNS):Android的Google Cloud Messaging(GCM)。我们发现(1)GCM的注册过程仅检查Gmail地址的有效性,(2)应用程序可以隐藏用户收到的推送消息。通过利用这两个漏洞,我们从多个方面评估了基于推送通知服务的移动僵尸网络(Punobot)的可行性。我们证明Punobot是隐身的,节能且危险的。我们还建议所有PNS都应考虑消除其安全弱点的补救措施。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号