首页> 外文会议>IEEE International Conference on Big Data Science and Engineering >Let me Join Two Worlds! Analyzing the Integration of Web and Native Technologies in Hybrid Mobile Apps
【24h】

Let me Join Two Worlds! Analyzing the Integration of Web and Native Technologies in Hybrid Mobile Apps

机译:让我加入两个世界!分析Hybrid移动应用中Web和本机技术的集成

获取原文

摘要

We can notice that security problems of inappropriate integration of native and web technologies in hybrid mobile applications (apps) have been covered in the related state-of-the-art research. However, analyzing hybrid mobile apps' unique behaviors has been seldom addressed. In this paper, we explore the influence of native and web technologies integration in hybrid mobile apps on the generated profile of mobile applications. Specifically, we analyze the type of Security Sensitive APIs (SS-APIs) exposed to web content and identify the corresponding usage patterns by systematically tracking function-call-graphs of a large number of hybrid and native mobile apps. Our investigations indicate that the generated profiles for hybrid and native mobile apps are considerably different. Using our proposed tool, called Hybrid-scanner, for tracking and analyzing internal behaviors of hybrid mobile apps, we show that there is more trace of API calling for triggering a specific SS-API in a hybrid mobile app in comparison with Android native mobile apps. In addition, we have found that almost 40% of SS-APIs in hybrid mobile apps are invoked by third-party libraries, e.g. advertisement libraries. This knowledge, however, is crucial for designing appropriate malware detection or vulnerability mitigation strategies. Based on our results, we discuss two main approaches in Android malware analysis field and enumerate some suggestions which should be considered in order to successfully detect malicious behaviors in such new type of apps.
机译:我们可以注意到,在相关的最先进的研究中涵盖了混合移动应用程序(应用程序)中本机和Web技术集成的安全问题已被涵盖。但是,分析混合动力移动应用程序的独特行为很少。在本文中,我们探讨了本机和网络技术集成在混合移动应用中的移动应用程序的生成配置文件中的影响。具体地,我们通过系统地跟踪大量混合动力和本机移动应用的功能呼叫图,分析暴露于Web内容的安全敏感API(SS-API)的类型,并通过系统地跟踪函数呼叫图来识别相应的使用模式。我们的调查表明,混合动力车和本机移动应用的生成的简档相当不同。使用我们提出的工具,称为混合扫描仪,用于跟踪和分析混合移动应用的内部行为,我们表明,与Android本机移动应用相比,在混合移动应用程序中触发特定SS-API的API呼叫更多迹象。此外,我们发现混合移动应用中的近40 %的SS-API被第三方库调用,例如,第三方库。广告图书馆。然而,这种知识对于设计适当的恶意软件检测或脆弱性缓解策略至关重要。根据我们的结果,我们讨论了Android Malware分析领域的两种主要方法,并枚举了一些应考虑的建议,以便在这种新型应用程序中成功检测恶意行为。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号