Syracuse University
UNCOVERING AND MITIGATING UNSAFE PROGRAM INTEGRATIONS IN ANDROID
Abstract
dc:description.abstract<p>Android’s design philosophy encourages the integration of resources and functionalities from multiple parties, even with different levels of trust. Such program integrations, on one hand, connect every party in the Android ecosystem tightly on one single device. On the other hand, they can also pose severe security problems, if the security design of the underlying integration schemes is not well thought-out. This dissertation systematically evaluates the security design of three integration schemes on Android, including framework module, framework proxy and 3rd-party code embedding. With the security risks identified in each scheme, it concludes that program integrations on Android are unsafe. Furthermore, new frameworks have been designed and implemented to detect and mitigate the threats. The evaluation results on the prototypes have demonstrated their effectiveness.</p>
Degree
thesis:*- Name thesis:degree_name
- Doctor of Philosophy (PhD)
- Level thesis:degree_level
- Dissertation
- Discipline thesis:degree_discipline
- Electrical Engineering and Computer Science
- Year
- 2016
Author and committee
dc:creator, dc:contributor.*- Author dc:creator
-
- Zhang, Xiao
- Contributors dc:contributor
-
- wenliang Du
Subjects
dc:subject × 6Identifiers
dc:identifier.*- Repository record dc:identifier
- https://surface.syr.edu/etd/465
- OAI identifier oai:identifier
- oai:surface.syr.edu:etd-1465