Method for offline detecting private data leakage of Android application program

A technology of privacy data and application programs, applied in the field of information security, can solve problems such as poor practicability, real privacy data leakage, high risk, etc., and achieve the effect of good practicability, high testing efficiency, and low risk

Inactive Publication Date: 2014-04-16
SOUTHEAST UNIV
View PDF3 Cites 29 Cited by
  • Summary
  • Abstract
  • Description
  • Claims
  • Application Information

AI Technical Summary

Problems solved by technology

[0008] Purpose of the invention: In order to overcome the deficiencies in the prior art, the present invention provides an offline detection method for privacy data leakage of Android applications, which solves the problem that existing detection schemes can only provide real-time reminders of privacy

Method used

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
View more

Image

Smart Image Click on the blue labels to locate them in the text.
Viewing Examples
Smart Image
  • Method for offline detecting private data leakage of Android application program

Examples

Experimental program
Comparison scheme
Effect test

Embodiment Construction

[0023] The present invention will be further described below in conjunction with the accompanying drawings.

[0024] Such as figure 1 As shown, an Android application privacy data leakage offline detection method comprises the following steps,

[0025] (1) Define private data; wherein the private data includes positioning data, contact data, SMS and MMS data, call records, Email data, system settings, IMEI, IMSI, ICCID, device number, SIM card data, SD card data, Browser history and bookmarks, recording data, photographed pictures, mobile phone numbers and sensor data, etc.

[0026] (2) Customize the Android system based on dynamic taint detection, and add corresponding taint labels for different types of private data.

[0027] The method for customizing the Android system based on dynamic stain detection is to modify the privacy data storage mechanism in the source code of the Android system, and increase one or more spaces for storing stain tags; the stain tags are one or ...

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

PUM

No PUM Login to view more

Abstract

The invention discloses a method for offline detecting private data leakage of an Android application program. The method comprises the following steps that private data are defined; an Android system based on dynamic dirty point detection is customized, and corresponding dirty point labels are added to the private data of different types; an APK to be detected in user side equipment is guided into a computer; the system is operated on a simulator, and the application program in the APK to be detected is installed and operated; controls in the application program are automatically traversed and clicked by automatically testing scripts, corresponding behaviors are triggered, and the dangerous behavior of the detected application program are recorded; after traversal is finished, the private data leakage detection report of the detected APK is generated. The problems that the private data leakage can only be reminded in real time, a record detection result is not generated, and virtual detection and leak detection occur easily are solved, and meanwhile the problems that an existing detection scheme is low in test efficiency and poor in practicality, the real private data leakage can be caused, and the risk is large are solved.

Description

technical field [0001] The invention relates to an offline detection method for privacy data leakage of an Android application program, belonging to the field of information security. Background technique [0002] Android is a mainstream mobile operating system. With the popularity of Android mobile smart terminals, more and more researchers are studying the Android system. Due to the openness of the source code of the Android platform, its security issues have become an important topic in the field of information security research. The terminal poses a serious security threat. Common malicious behaviors include: consumption behavior, privacy theft behavior, sabotage behavior, advertising behavior, backdoor behavior, etc. The privacy theft behavior refers to the leakage of user sensitive data without the user's permission, which affects the user's personal privacy. posed a great threat. [0003] There are two detection methods for the above-mentioned malicious behaviors: s...

Claims

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

Application Information

Patent Timeline
no application Login to view more
IPC IPC(8): G06F21/56G06F21/60
CPCG06F21/566
Inventor 胡爱群宋宇波高岳孟姗姗陈飞朱克龙
Owner SOUTHEAST UNIV
Who we serve
  • R&D Engineer
  • R&D Manager
  • IP Professional
Why Eureka
  • Industry Leading Data Capabilities
  • Powerful AI technology
  • Patent DNA Extraction
Social media
Try Eureka
PatSnap group products