TWC: Medium: Collaborative: Extending Smart-Phone Application Analysis
TWC: Medium: Collaborative: Extending Smart-Phone Application Analysis
批准号:
1228700
负责人:
Patrick McDaniel
金额:
$53.47万
依托单位国家:
美国
项目类别:
Standard Grant
财政年份:
2012
资助国家:
美国
项目状态:
已结题
起止时间:
2012-09-01 至 2018-08-31
中文摘要
点击翻译按钮获取中文摘要
英文摘要
This research is focused on the creation of new techniques and algorithms to support comprehensive analysis of Android applications. We have developed formally grounded techniques for extracting accurate models of smartphone applications from installation images. The recovery formalization is based on TyDe, a typed meta-representation of Dalvik bytecode (the code structure used by the Android smartphone operating system). In developing TyDe, we are formalizing the TyDe type inferencing, ill-formed bytecode structure management, and creating a generalized Dalvik-to-Java retargeting logic based on bytecode "instruction templates". TyDe and the models they represent are being used to perform deep analysis of application structure to infer potential application behaviors that may harm users, their data, or the cellular or Internet infrastructure. In particular, these analyses support whole program analysis, reflection, and smartphone specific data flow analysis. Such analyses provide a means for evaluating an applications adherence to best security practices or organizational requirements by inspecting permission structures, component interfaces, and source code and library origins for signals of malicious behavior. The analysis techniques are being evaluated on a large corpus of real-world applications extracted from real application markets. In the broadest view, this work is providing new avenues for researchers, industry, and consumers to assess potential dangers presented by applications retrieved from smartphone application markets, an advancing the state of the art in application program analysis.
期刊论文(0)
专著(0)
科研奖励(0)
会议论文
Travel: NSF Student Travel Grant for 2023 IEEE Conference on Secure and Trustworthy Machine Learning (IEEE SaTML)
-
批准号:2317300
-
项目类别:Standard Grant
-
资助金额:$1.5万
-
财政年份:2023
-
负责人:Patrick McDaniel
-
依托单位:
Collaborative Research: Conference: SaTC: CORE: 2.0 Vision Proposal
-
批准号:2316832
-
项目类别:Standard Grant
-
资助金额:$5.0万
-
财政年份:2023
-
负责人:Patrick McDaniel
-
依托单位:
Travel: NSF Student Travel Grant for 2023 IEEE Conference on Secure and Trustworthy Machine Learning (IEEE SaTML)
-
批准号:2233869
-
项目类别:Standard Grant
-
资助金额:$1.5万
-
财政年份:2023
-
负责人:Patrick McDaniel
-
依托单位:
CNS Core: Medium: Automated IoT Safety and Security Analysis and Synthesis
-
批准号:2320882
-
项目类别:Continuing Grant
-
资助金额:$119.99万
-
财政年份:2022
-
负责人:Patrick McDaniel
-
依托单位:
SaTC: CORE: Frontier: Collaborative: End-to-End Trustworthiness of Machine-Learning Systems
-
批准号:2343611
-
项目类别:Continuing Grant
-
资助金额:$497.15万
-
财政年份:2022
-
负责人:Patrick McDaniel
-
依托单位:
CNS Core: Medium: Automated IoT Safety and Security Analysis and Synthesis
-
批准号:1900873
-
项目类别:Continuing Grant
-
资助金额:$119.99万
-
财政年份:2019
-
负责人:Patrick McDaniel
-
依托单位:
SaTC: CORE: Frontier: Collaborative: End-to-End Trustworthiness of Machine-Learning Systems
-
批准号:1805310
-
项目类别:Continuing Grant
-
资助金额:$497.15万
-
财政年份:2018
-
负责人:Patrick McDaniel
-
依托单位:
TWC: Medium: Collaborative: Scaling and Prioritizing Market-Sized Application Analysis
-
批准号:1564105
-
项目类别:Continuing Grant
-
资助金额:$54.72万
-
财政年份:2016
-
负责人:Patrick McDaniel
-
依托单位:
2017 SaTC PI Meeting
-
批准号:1646743
-
项目类别:Standard Grant
-
资助金额:$10.0万
-
财政年份:2016
-
负责人:Patrick McDaniel
-
依托单位:
TC: Medium: Collaborative Research: Building Trustworthy Applications for Mobile Devices
-
批准号:1064900
-
项目类别:Standard Grant
-
资助金额:$35.0万
-
财政年份:2011
-
负责人:Patrick McDaniel
-
依托单位:
TC: Medium: Collaborative Research: Security Services in Open Telecommunications Networks
-
批准号:0905447
-
项目类别:Standard Grant
-
资助金额:$42.55万
-
财政年份:2009
-
负责人:Patrick McDaniel
-
依托单位:
Collaborative Research: Secure Provenance in High-End Computing Systems
-
批准号:0937944
-
项目类别:Standard Grant
-
资助金额:$30.71万
-
财政年份:2009
-
负责人:Patrick McDaniel
-
依托单位:
CAREER: Realizing Practical High Assurance through Security-Typed Information Flow Systems
-
批准号:0643907
-
项目类别:Standard Grant
-
资助金额:$40.0万
-
财政年份:2007
-
负责人:Patrick McDaniel
-
依托单位:
Collaborative Research: CT-T: Flexible, Decentralized Information-flow Control for Dynamic Environments
-
批准号:0524132
-
项目类别:Standard Grant
-
资助金额:$23.46万
-
财政年份:2005
-
负责人:Patrick McDaniel
-
依托单位:
Student Travel Support for ACM SIGCOMM 2005 Conference
-
批准号:0526702
-
项目类别:Standard Grant
-
资助金额:$1.87万
-
财政年份:2005
-
负责人:Patrick McDaniel
-
依托单位:
海外基金