首页> 外文会议>IFIP WG 6.1 International Conference on Testing Software and Systems >APPregator: A Large-Scale Platform for Mobile Security Analysis
【24h】

APPregator: A Large-Scale Platform for Mobile Security Analysis

机译:批准:移动安全分析的大型平台

获取原文

摘要

The Google Play Store currently includes up to 2.8M apps. Nonetheless, it is rather straightforward for a user to quickly retrieve the app that matches her tastes, as Google provides a reliable search engine. However, it is likewise almost impossible to select apps according to a security footprint (e.g., all apps that enforce SSL pinning). To overcome this limitation, this paper presents APPregator, a platform which allows security analysts to i) download apps from multiple app stores, ii) perform automated security analysis (both static and dynamic), and iii) aggregate the results according to user-defined security constraints (e.g., vulnerability patterns). The empirical assessment of APPregator on a set of 200.000 apps taken from the Google Play Store and Aptoide suggests that the current implementation grants a good level of performance and reliability. APPregator will be made freely available to the research community by the end of 2020.
机译:Google Play Store目前包含最多2.8M的应用程序。 尽管如此,对于用户快速检索与她的品味匹配的应用程序相当简单,因为Google提供了可靠的搜索引擎。 但是,同样几乎不可能根据安全足迹(例如,执行SSL Pinning的所有应用程序)选择应用。 为了克服这一限制,本文呈现批准,允许安全分析师到i)从多个App商店下载应用程序,ii)执行自动安全性分析(静态和动态)和III)根据用户定义的结果聚合结果 安全约束(例如,漏洞模式)。 从谷歌播放商店和Aptoide采取的一组200.000个应用程序的批准者的实证评估表明,目前的实现授予良好的性能和可靠性水平。 批准者将于2020年底通过研究界自由提供。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号