摘要
为了充分说明安卓(Android)恶意软件的工作原理,分析并降低其威胁性,本文利用Android的安全机制缺陷和Service、Broadcast两个组件实现了一个隐私窃取软件。阐述了使用Android逆向工程技术完成恶意代码植入的方法。基于云安全技术和信息比对算法,设计出一个恶意软件静态检测方案,能够有效地在源码级完成恶意软件的检测工作。
In order to describe the working principle of Android malware,analyze and reduce its threat,a privacy stolen malware was realized first by use of the security flaws of Android,Service and Broadcast. The method of implanting malicious code was introduced by using the Android reverse engineering technology. Then a malware static detection scheme was designed with the cloud security technology and information contrast algorithm. The malware based on the source code is dectected.
出处
《河南科技大学学报(自然科学版)》
CAS
北大核心
2015年第5期52-56,7,共5页
Journal of Henan University of Science And Technology:Natural Science
基金
国家自然科学基金项目(61303263)
关键词
安卓
安全机制缺陷
恶意软件
逆向工程
静态检测
Android
security mechanism flaws
malware
reverse engineering
static detection