首页> 外文期刊>Computers & Security >EspyDroid+: Precise reflection analysis of android apps
【24h】

EspyDroid+: Precise reflection analysis of android apps

机译:EspyDroid +:Android应用程序的精确反射分析

获取原文
获取原文并翻译 | 示例
           

摘要

Malicious smartphone apps use reflection APIs to exfiltrate user data and steal personal information. These malware use reflection along with parameter obfuscation and encryption to evade detection by static analysis. Dynamic analysis is a possible approach to detect such run-time malicious behavior. However, dynamic analysis of a software, usually, results in the exploration of a large, potentially exponential, number of program branches. Many of these program paths are not useful to analyze the reflection APIs, and significantly affect the efficiency of the dynamic analysis. In this paper, we propose a hybrid analysis approach named EspyDroid+1 that overcomes the drawbacks of static analysis in analyzing the obfuscated and run-time dependent parameters of reflection APIs. EspyDroid+ incorporates Reflection Guided Static Slicing (RGSS), an efficient approach to deal with exploration of large number of program paths by pruning irrelevant program paths and ensures that the resultant paths get executed during the subsequent dynamic analysis. We observed that EspyDroid+ successfully removed 59.91% of the total paths on a test dataset consisting of 660 apps without any loss of semantics. We conclude that EspyDroid+is effective, fast, and scalable in uncovering reflection API induced privacy leaks.
机译:恶意的智能手机应用程序使用反射API窃取用户数据并窃取个人信息。这些恶意软件使用反射以及参数混淆和加密功能来逃避静态分析的检测。动态分析是检测此类运行时恶意行为的可能方法。但是,软件的动态分析通常会导致探索大量可能呈指数形式的程序分支。这些程序路径中的许多对分析反射API都没有用,并且会显着影响动态分析的效率。在本文中,我们提出了一种名为EspyDroid + 1的混合分析方法,该方法克服了静态分析在分析反射API的模糊和运行时相关参数方面的缺点。 EspyDroid +包含反射引导静态切片(RGSS),这是一种通过修剪不相关的程序路径来处理大量程序路径的有效方法,并确保在后续的动态分析期间执行生成的路径。我们观察到,EspyDroid +成功删除了包含660个应用程序的测试数据集上总路径的59.91%,而没有语义上的损失。我们得出的结论是,EspyDroid +在揭示反射API引起的隐私泄漏方面有效,快速且可扩展。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号