Internal report (Reports)
I know what leaked in your pocket: uncovering privacy leaks on Android Apps with Static Taint Analysis
Li, Li; Bartel, Alexandre; Klein, Jacques et al.
2014
 

Files


Full Text
tr-iccta.pdf
Publisher postprint (362.22 kB)
Download

All documents in ORBilu are protected by a user license.

Send to



Details



Keywords :
Static Taint Analysis; Uncovering Privacy Leaks; Inter-Component; IccTA; ApkCombiner; Android
Abstract :
[en] Android applications may leak privacy data carelessly or maliciously. In this work we perform inter-component data-flow analysis to detect privacy leaks between components of Android applications. Unlike all current approaches, our tool, called IccTA, propagates the context between the components, which improves the precision of the analysis. IccTA outperforms all other available tools by reaching a precision of 95.0% and a recall of 82.6% on DroidBench. Our approach detects 147 inter-component based privacy leaks in 14 applications in a set of 3000 real-world applications with a precision of 88.4%. With the help of ApkCombiner, our approach is able to detect inter-app based privacy leaks.
Research center :
SnT centre - University of Luxembourg
Disciplines :
Computer science
Author, co-author :
Li, Li ;  University of Luxembourg > Interdisciplinary Centre for Security, Reliability and Trust (SNT)
Bartel, Alexandre ;  University of Luxembourg > Interdisciplinary Centre for Security, Reliability and Trust (SNT)
Klein, Jacques ;  University of Luxembourg > Faculty of Science, Technology and Communication (FSTC) > Computer Science and Communications Research Unit (CSC)
Le Traon, Yves ;  University of Luxembourg > Faculty of Science, Technology and Communication (FSTC) > Computer Science and Communications Research Unit (CSC)
Arzt, Steven;  Technische Universität Darmstadt > EC SPRIDE
Rasthofer, Siegfried;  Technische Universität Darmstadt > EC SPRIDE
Bodden, Eric;  Technische Universität Darmstadt > EC SPRIDE
Octeau, Damien;  Pennsylvania State University > Department of Computer Science and Engineering
McDaniel, Patrick;  Pennsylvania State University > Department of Computer Science and Engineering
Language :
English
Title :
I know what leaked in your pocket: uncovering privacy leaks on Android Apps with Static Taint Analysis
Publication date :
29 April 2014
Publisher :
SnT Centre - University of Luxembourg, Luxembourg, Luxembourg
ISBN/EAN :
9782879711294
Report number :
TR-SNT-2014-9
Edition :
Technical Report
Number of pages :
12
Collection name :
Technical Report
Commentary :
Technical Report
Available on ORBilu :
since 30 May 2014

Statistics


Number of views
236 (24 by Unilu)
Number of downloads
130 (15 by Unilu)

Bibliography


Similar publications



Contact ORBilu