Publication | Closed Access
Android taint flow analysis for app sets
195
Citations
12
References
2014
Year
Unknown Venue
Mobile SecurityEngineeringInformation SecuritySoftware EngineeringSoftware AnalysisHardware SecurityAndroid ApplicationsSystem SoftwareAnalysis MethodMobile MalwareApplication AnalysisMobile ComputingComputer SciencePotential Information LeaksStatic Program AnalysisApp SetsData SecuritySoftware SecurityProgram AnalysisSoftware TestingMalware Analysis
One approach to defending against malicious Android applications has been to analyze them to detect potential information leaks. This paper describes a new static taint analysis for Android that combines and augments the FlowDroid and Epicc analyses to precisely track both inter-component and intra-component data flow in a set of Android applications. The analysis takes place in two phases: given a set of applications, we first determine the data flows enabled individually by each application, and the conditions under which these are possible; we then build on these results to enumerate the potentially dangerous data flows enabled by the set of applications as a whole. This paper describes our analysis method, implementation, and experimental results.
| Year | Citations | |
|---|---|---|
Page 1
Page 1