buchspektrum Internet-Buchhandlung

Neuerscheinungen 2016

Stand: 2020-02-01
Schnellsuche
ISBN/Stichwort/Autor
Herderstraße 10
10625 Berlin
Tel.: 030 315 714 16
Fax 030 315 714 14
info@buchspektrum.de

Heng Yin, Mu Zhang (Beteiligte)

Android Application Security


A Semantics and Context-Aware Approach
1st ed. 2016. 2016. xi, 105 S. 8 SW-Abb., 29 Farbabb. 235 mm
Verlag/Jahr: SPRINGER, BERLIN; SPRINGER INTERNATIONAL PUBLISHING 2016
ISBN: 3-319-47811-7 (3319478117)
Neue ISBN: 978-3-319-47811-1 (9783319478111)

Preis und Lieferzeit: Bitte klicken


This SpringerBrief explains the emerging cyber threats that undermine Android application security. It further explores the opportunity to leverage the cutting-edge semantics and context-aware techniques to defend against such threats, including zero-day Android malware, deep software vulnerabilities, privacy breach and insufficient security warnings in app descriptions. The authors begin by introducing the background of the field, explaining the general operating system, programming features, and security mechanisms. The authors capture the semantic-level behavior of mobile applications and use it to reliably detect malware variants and zero-day malware. Next, they propose an automatic patch generation technique to detect and block dangerous information flow. A bytecode rewriting technique is used to confine privacy leakage. User-awareness, a key factor of security risks, is addressed by automatically translating security-related program semantics into natural language descriptions. Frequent behavior mining is used to discover and compress common semantics. As a result, the produced descriptions are security-sensitive, human-understandable and concise. By covering the background, current threats, and future work in this field, the brief is suitable for both professionals in industry and advanced-level students working in mobile security and applications. It is valuable for researchers, as well.
Introduction.- Background.- Semantics-Aware Android Malware Classification.- Automatic Generation of Vulnerability-Specific Patches for Preventing Component Hijacking Attacks.- Efficient and Context-Aware Privacy Leakage Confinement.- Automatic Generation of Security-Centric Descriptions for Android Apps.- Limitation and Future Work.- Conclusion.