Research on Personal Privacy Security Detection Technology for Android Application

Wang Chao, Dong Jiahan, Wang Xiaohu, Ren Tianyu
{"title":"Research on Personal Privacy Security Detection Technology for Android Application","authors":"Wang Chao, Dong Jiahan, Wang Xiaohu, Ren Tianyu","doi":"10.1109/IAEAC54830.2022.9930036","DOIUrl":null,"url":null,"abstract":"With the intensive release and implementation of relevant laws, regulations and standards on personal information protection, mobile APP, as the key application carrier and entrance and exit of personal information, has attracted more and more attention from government regulators and the public. In order to improve the accuracy of security detection of personal privacy violation in Android Apps, an APP sensitive privacy behavior detection method based on Frida hook monitoring was proposed. The method calls the system function interface through Frida hook APP to intercept and monitor the access to sensitive privacy data such as external storage, address book, SMS and geographical location, and construct the APP sensitive behavior access list. Combined with the application type, comprehensively analyze the permission list and sensitive behavior list to judge whether the APP has the problem of collecting personal privacy information beyond the scope. By selecting common mobile APPs such as audio-visual, online games and social chat, the verification test is carried out. The personal privacy security detection method can find the violation problems of the notified APP, which has certain practicality.","PeriodicalId":349113,"journal":{"name":"2022 IEEE 6th Advanced Information Technology, Electronic and Automation Control Conference (IAEAC )","volume":"93 1","pages":"0"},"PeriodicalIF":0.0000,"publicationDate":"2022-10-03","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":"0","resultStr":null,"platform":"Semanticscholar","paperid":null,"PeriodicalName":"2022 IEEE 6th Advanced Information Technology, Electronic and Automation Control Conference (IAEAC )","FirstCategoryId":"1085","ListUrlMain":"https://doi.org/10.1109/IAEAC54830.2022.9930036","RegionNum":0,"RegionCategory":null,"ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":null,"EPubDate":"","PubModel":"","JCR":"","JCRName":"","Score":null,"Total":0}
引用次数: 0

Abstract

With the intensive release and implementation of relevant laws, regulations and standards on personal information protection, mobile APP, as the key application carrier and entrance and exit of personal information, has attracted more and more attention from government regulators and the public. In order to improve the accuracy of security detection of personal privacy violation in Android Apps, an APP sensitive privacy behavior detection method based on Frida hook monitoring was proposed. The method calls the system function interface through Frida hook APP to intercept and monitor the access to sensitive privacy data such as external storage, address book, SMS and geographical location, and construct the APP sensitive behavior access list. Combined with the application type, comprehensively analyze the permission list and sensitive behavior list to judge whether the APP has the problem of collecting personal privacy information beyond the scope. By selecting common mobile APPs such as audio-visual, online games and social chat, the verification test is carried out. The personal privacy security detection method can find the violation problems of the notified APP, which has certain practicality.
Android应用的个人隐私安全检测技术研究
随着个人信息保护相关法律、法规和标准的密集发布和实施,手机APP作为个人信息的关键应用载体和进出口,越来越受到政府监管部门和公众的关注。为了提高Android应用中侵犯个人隐私安全检测的准确性,提出了一种基于Frida hook监控的APP敏感隐私行为检测方法。该方法通过Frida hook APP调用系统功能接口,拦截和监控对外部存储、地址簿、短信、地理位置等敏感隐私数据的访问,并构建APP敏感行为访问列表。结合应用类型,综合分析权限列表和敏感行为列表,判断APP是否存在超范围收集个人隐私信息的问题。选取视听、网络游戏、社交聊天等常用手机app进行验证测试。该个人隐私安全检测方法可以发现被通知APP的违规问题,具有一定的实用性。
本文章由计算机程序翻译,如有差异,请以英文原文为准。
求助全文
约1分钟内获得全文 求助全文
来源期刊
自引率
0.00%
发文量
0
×
引用
GB/T 7714-2015
复制
MLA
复制
APA
复制
导出至
BibTeX EndNote RefMan NoteFirst NoteExpress
×
提示
您的信息不完整,为了账户安全,请先补充。
现在去补充
×
提示
您因"违规操作"
具体请查看互助需知
我知道了
×
提示
确定
请完成安全验证×
copy
已复制链接
快去分享给好友吧!
我知道了
右上角分享
点击右上角分享
0
联系我们:info@booksci.cn Book学术提供免费学术资源搜索服务,方便国内外学者检索中英文文献。致力于提供最便捷和优质的服务体验。 Copyright © 2023 布克学术 All rights reserved.
京ICP备2023020795号-1
ghs 京公网安备 11010802042870号
Book学术文献互助
Book学术文献互助群
群 号:481959085
Book学术官方微信