2021
DOI: 10.14569/ijacsa.2021.0120150
|View full text |Cite
|
Sign up to set email alerts
|

B-droid: A Static Taint Analysis Framework for Android Applications

Abstract: Android is currently the most popular smartphone operating system in use, with its success attributed to the large number of applications available from the Google Play Store. However, these contain issues relating to the storage of the user's sensitive data, including contacts, location, and the phone's unique identifier (IMEI). Use of these applications therefore risks exfiltration of this data, including unauthorized tracking of users' behavior and violation of their privacy. Sensitive data leaks are curren… Show more

Help me understand this report

Search citation statements

Order By: Relevance

Paper Sections

Select...
1

Citation Types

0
1
0

Year Published

2022
2022
2023
2023

Publication Types

Select...
2
2

Relationship

0
4

Authors

Journals

citations
Cited by 4 publications
(1 citation statement)
references
References 22 publications
0
1
0
Order By: Relevance
“…Static taint analysis techniques rely on the possible presence of contaminated data streams in the target object, mainly for weblike applications [1] [2] and Android [3][4] applications, as both target objects are characterised by a large number of user interactions, a large number of risk points brought about by complex components and the availability of part or all of the source code. The detection of Web-based applications is mainly for their scripting languages, such as PHP [5] and JavaScript [6]; the detection of Android applications aims at protect whether sensitive information [7] such as user privacy is stolen, for example, B-Droid [8] uses static taint analysis combined with fuzzy testing to IOP Publishing doi:10.1088/1742-6596/2258/1/012069 2 detect privacy leaks by analysing the tested application's behaviour to detect privacy leaks, which can effectively detect the five most popular types of commercial spyware in the market.…”
Section: Introductionmentioning
confidence: 99%
“…Static taint analysis techniques rely on the possible presence of contaminated data streams in the target object, mainly for weblike applications [1] [2] and Android [3][4] applications, as both target objects are characterised by a large number of user interactions, a large number of risk points brought about by complex components and the availability of part or all of the source code. The detection of Web-based applications is mainly for their scripting languages, such as PHP [5] and JavaScript [6]; the detection of Android applications aims at protect whether sensitive information [7] such as user privacy is stolen, for example, B-Droid [8] uses static taint analysis combined with fuzzy testing to IOP Publishing doi:10.1088/1742-6596/2258/1/012069 2 detect privacy leaks by analysing the tested application's behaviour to detect privacy leaks, which can effectively detect the five most popular types of commercial spyware in the market.…”
Section: Introductionmentioning
confidence: 99%