4.3 Article

Towards a threat assessment framework for apps collusion

Journal

TELECOMMUNICATION SYSTEMS
Volume 66, Issue 3, Pages 417-430

Publisher

SPRINGER
DOI: 10.1007/s11235-017-0296-1

Keywords

Android security; Apps collusion; Threat assessment; Bayesian; Statistical modelling

Funding

  1. Engineering and Physical Sciences Research Council (EPSRC) of the UK [EP/L022656/1]
  2. Engineering and Physical Sciences Research Council [EP/R007187/1, EP/L022656/1, EP/N508664/1, EP/K004379/1] Funding Source: researchfish
  3. EPSRC [EP/R007187/1, EP/L022656/1, EP/K004379/1, EP/N508664/1] Funding Source: UKRI

Ask authors/readers for more resources

App collusion refers to two or more apps working together to achieve a malicious goal that they otherwise would not be able to achieve individually. The permissions based security model of Android does not address this threat as it is rather limited to mitigating risks of individual apps. This paper presents a technique for quantifying the collusion threat, essentially the first step towards assessing the collusion risk. The proposed method is useful in finding the collusion candidate of interest which is critical given the high volume of Android apps available. We present our empirical analysis using a classified corpus of over 29,000 Android apps provided by Intel Security(TM).

Authors

I am an author on this paper
Click your name to claim this paper and add it to your profile.

Reviews

Primary Rating

4.3
Not enough ratings

Secondary Ratings

Novelty
-
Significance
-
Scientific rigor
-
Rate this paper

Recommended

No Data Available
No Data Available