Communication publiée dans un ouvrage (Colloques, congrès, conférences scientifiques et actes)
FSquaDRA: Fast Detection of Repackaged Applications
Zhauniarovich, Yury; GADYATSKAYA, Olga; Crispo, Bruno et al.
2014In Data and Applications Security and Privacy XXVIII
Peer reviewed
 

Documents


Texte intégral
Fsquadra_Zhauniarovich2014.pdf
Postprint Auteur (753.29 kB)
Télécharger

Tous les documents dans ORBilu sont protégés par une licence d'utilisation.

Envoyer vers



Détails



Mots-clés :
Android; security; repackaging
Résumé :
[en] The ease of Android applications repackaging and proliferation of application clones in Google Play and other markets call for new effective techniques to detect repackaged code and combat distribution of cloned applications. Today all existing techniques for repackaging detection are based on code similarity or feature (e.g., permission set) similarity evaluation. We propose a new approach to detect repackaging based on the resource files available in application packages. Our tool called FSquaDRA performs a quick pairwise application comparison (full pairwise comparison for 55,000 applications in just 80 hours on a laptop), as it measures how many identical resources are present inside both packages under analysis. The intuition behind our approach is that malicious repackaged applications still need to maintain the “look and feel” of the originals by including the same images and other resource files, even though they might have additional code included or some of the original code removed. To evaluate the reliability of our approach we perform a comparison of the FSquaDRA similarity scores with the code-based similarity scores of AndroGuard for a dataset of randomly selected application pairs, and our results demonstrate strong positive correlation of the FSquaDRA resource-based score with the code-based similarity score.
Centre de recherche :
Interdisciplinary Centre for Security, Reliability and Trust (SnT)
Disciplines :
Sciences informatiques
Auteur, co-auteur :
Zhauniarovich, Yury;  University of Trento
GADYATSKAYA, Olga ;  University of Luxembourg > Interdisciplinary Centre for Security, Reliability and Trust (SNT) ; CSC/FSTC
Crispo, Bruno;  University of Trento
La Spina, Francesco;  University of Trento
Moser, Ermanno;  University of Trento
Co-auteurs externes :
yes
Langue du document :
Anglais
Titre :
FSquaDRA: Fast Detection of Repackaged Applications
Date de publication/diffusion :
juillet 2014
Nom de la manifestation :
28th Annual IFIP WG 11.3 Working Conference on Data and Applications Security and Privacy (DBSec 2014)
Date de la manifestation :
14-16 July 2014
Manifestation à portée :
International
Titre de l'ouvrage principal :
Data and Applications Security and Privacy XXVIII
Maison d'édition :
Springer
Collection et n° de collection :
Lecture Notes in Computer Science Volume 8566
Pagination :
130-145
Peer reviewed :
Peer reviewed
Disponible sur ORBilu :
depuis le 02 février 2015

Statistiques


Nombre de vues
143 (dont 3 Unilu)
Nombre de téléchargements
669 (dont 9 Unilu)

citations Scopus®
 
45
citations Scopus®
sans auto-citations
40
citations WoS
 
34

Bibliographie


Publications similaires



Contacter ORBilu