Android privacy

Android privacy
复制标题

DOI:
10.1109/icmlc.2012.6359654
复制
发表时间:
2012-07
期刊:
2012 International Conference on Machine Learning and Cybernetics
影响因子:
--
通讯作者:
Te-En Wei;Albert B. Jeng;Hahn-Ming Lee;Chih-How Chen;Chin-Wei Tien
Te-En Wei;Albert B. Jeng;Hahn-Ming Lee;Chih-How Chen;Chin-Wei Tien
中科院分区:
其他
文献类型:
--
作者:
Te-En Wei;Albert B. Jeng;Hahn-Ming Lee;Chih-How Chen;Chin-Wei Tien

文献摘要

被引文献

相似文献

由于技术进步,当今的手机已经发展成为技术和功能上精致的智能手机,这些智能手机与计算机的共同点比传统手机更为共同。由于它们的受欢迎程度和功能性,智能手机是Android隐私中恶意活动的新兴目标。我们承担两个方面,例如用户和开发人员。对于用户,在Android Mobile中是一个已知的事实,可以从Android市场下载任何应用程序,而无需访问App Store中不同的大量个人数据。对于应用程序开发人员,App Store的方法获取开发的应用程序需要使用私有加密密钥签名。此外,几个与隐私相关的数据,例如个人信息,IMEI和位置,它们已经存在于Android智能手机中一段时间​​。在本文中,我们解释了未经用户许可,如何以编程方式获取它们的风险以及如何以编程方式获取它们。我们将重点关注如何非法获取Android隐私问题的数据以及这些Android隐私问题的分类。例如,手机号码,电子邮件帐户,键盘缓存条目,浏览器搜索和最新位置对攻击者有吸引力的敏感数据。本文还展示了我们如何使用Android API执行间谍软件以获取敏感信息。还提出了一些攻击方案和建议。
Due to technological progress, today's mobile phones have evolved into technically and functionally sophisticated smartphones which have more in common with computers than with the conventional phones. As a result of their popularity and functionality, smartphones are a burgeoning target for malicious activities In Android privacy; we undertake two aspects such as user and developer. For users, a known fact in Android mobile, any app can be downloaded from Android Market without accessing a significant quantity of personal data which is different in App Store. For app developers, the App Store's method acquires developed app need to be signed using a private encryption key. Furthermore, several privacy related data such as personal information, IMEI, and location which are leaks already existing in Android Smartphone for a while. In this paper, we explain what kind of data is at risk and how to acquire them programmatically without the user's permission. We will focus on how to obtain the data illicitly which are of Android privacy concerns and the categorization of these Android privacy issues. For example, mobile number, email accounts, keyboard cache entries, browser searches and the most recent location are sensitive data attractive to the attackers. This paper also shows how we use the Android API to perform our Spyware to obtain the sensitive information. Some attack scenarios and recommendations are also presented.