Towards an understanding of the impact of advertising on data leaks


Autoria(s): Moonsamy, Veelasha; Alazab, Moutaz; Batten, Lynn
Data(s)

01/01/2012

Resumo

Recent investigations have determined that many Android applications in both official and non-official online markets expose details of the user's mobile phone without user consent. In this paper, for the first time in the research literature, we provide a full investigation of why such applications leak, how they leak and where the data is leaked to. In order to achieve this, we employ a combination of static and dynamic analysis based on examination of Java classes and application behaviour for a data set of 123 samples, all pre-determined as being free from malicious software. Despite the fact that anti-virus vendor software did not flag any of these samples as malware, approximately 10% of them are shown to leak data about the mobile phone to a third-party; applications from the official market appear to be just as susceptible to such leaks as applications from the non-official markets.

Identificador

http://hdl.handle.net/10536/DRO/DU:30051800

Idioma(s)

eng

Publicador

Inderscience Publishers

Relação

http://dro.deakin.edu.au/eserv/DU:30051800/moonsamy-towardsanunderstand-2012.pdf

http://dx.doi.org/10.1504/IJSN.2012.052540

Direitos

2012, Inderscience Publishers

Palavras-Chave #androids #dynamic analysis #static #data leaks #DroidBox #advertising #mobile phones #cell phones #android applications #malicious software #malware #security #online markets
Tipo

Journal Article