Safety risk detecting method and device for Android application program

An Android application, security risk technology, applied in computer security devices, instruments, electronic digital data processing, etc., can solve the problems of not fully reflecting application permission requests, inaccurate application risk detection methods, etc.

Active Publication Date: 2015-02-25
CHINA ACADEMY OF INFORMATION & COMM
View PDF4 Cites 17 Cited by
  • Summary
  • Abstract
  • Description
  • Claims
  • Application Information

AI Technical Summary

Problems solved by technology

[0005] Embodiments of the present invention provide a security risk detection method and device for an Android application to solve the problem that the current security risk detection method for an Android application only considers the malicious behavior API in the application and does not fully reflect the needs of the application. permission request, so the current application risk detection method is inaccurate

Method used

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
View more

Image

Smart Image Click on the blue labels to locate them in the text.
Viewing Examples
Smart Image
  • Safety risk detecting method and device for Android application program
  • Safety risk detecting method and device for Android application program
  • Safety risk detecting method and device for Android application program

Examples

Experimental program
Comparison scheme
Effect test

Embodiment Construction

[0061] The following will clearly and completely describe the technical solutions in the embodiments of the present invention with reference to the accompanying drawings in the embodiments of the present invention. Obviously, the described embodiments are only some, not all, embodiments of the present invention. Based on the embodiments of the present invention, all other embodiments obtained by persons of ordinary skill in the art without making creative efforts belong to the protection scope of the present invention.

[0062] Embodiments of the present invention provide a security risk detection method for Android applications, such as figure 1 shown, including:

[0063] Step 101, decompile the Android application to be tested to obtain a program source file, and analyze and process the program source file to obtain API call information of the Android application to be tested.

[0064] Step 102, according to the application programming interface call information, obtain the...

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

PUM

No PUM Login to view more

Abstract

The invention provides a safety risk detecting method and device for an Android application program and relates to the technical field of Android application detecting. The method comprises the steps that decompiling is carried out on the Android application program to be detected to obtain a program source file, and the program source file is analyzed and processed to obtain application programming interface call information of the Android application program to be detected; according to the application programming interface call information of the Android application program to be detected, operating authorization information of operation needing to be carried out on a terminal by the Android application program to be detected is obtained; according to the operating authorization information, a hierarchical structure is set up; first weight sets of all criterion items in a criterion layer relative to a target layer are determined, and second weight sets of all subsidiary criterion items in a subsidiary criterion layer relative to the criterion items which the subsidiary criterion items belong to are determined; fuzzy relation matrixes corresponding to all the criterion items are determined; according to the first weight sets, the second weight sets and the fuzzy relation matrixes, safety risk grades are determined. The method can solve the problem that a risk detecting mode of a current application program is not accurate.

Description

technical field [0001] The invention relates to the technical field of Android application detection, in particular to a security risk detection method and device for Android application programs. Background technique [0002] Mobile devices such as smartphones and tablets have grown rapidly in recent years. And the current Android (abbreviated Android) platform has occupied most of the share of the smart mobile terminal market. Therefore, along with the development of the Android platform, a large number of Android applications are also increasing. Due to the openness of the Android system, users can not only download and install applications from Google's official market, but also download and install applications from any third-party market or even websites and forums. But when users install and use these application programs, they do not know the security level of these application programs. Android applications usually have multiple permission requests, and it is dif...

Claims

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

Application Information

Patent Timeline
no application Login to view more
Patent Type & Authority Applications(China)
IPC IPC(8): G06F21/55
CPCG06F21/563
Inventor 落红卫陈泓汲姚一楠詹维骁郑海强谢春霞
Owner CHINA ACADEMY OF INFORMATION & COMM
Who we serve
  • R&D Engineer
  • R&D Manager
  • IP Professional
Why Eureka
  • Industry Leading Data Capabilities
  • Powerful AI technology
  • Patent DNA Extraction
Social media
Try Eureka
PatSnap group products