期刊文献+

SeSoa: Security Enhancement System with Online Authentication for Android APK 被引量:1

Se Soa: Security Enhancement System with Online Authentication for Android APK
下载PDF
导出
摘要 Android OS provides such security mechanisms as application signature, privilege limit and sandbox to protect the security of operational system. However, these methods are unable to protect the applications of Android against anti-reverse engineering and the codes of such applications face the risk of being obtained or modified, which are always the first step for further attacks. In this paper, a security enhancement system with online authentication (SeSoa) for Android APK is proposed, in which the code of Android application package (APK) can be automatically encrypted. The encrypted code is loaded and run in the Android system after being successfully decrypted. Compared with the exiting software protecting systems, SeSoa uses online authentication mechanism to ensure the improvementof the APK security and good balance between security and usability. Android OS provides such security mechanisms as application signature, privilege limit and sandbox to protect the security of operational system. However, these methods are unable to protect the applications of Android against anti-reverse engineering and the codes of such applications face the risk of being obtained or modified, which are always the first step for further attacks. In this paper, a security enhancement system with online authentication (SeSoa) for Android APK is proposed, in which the code of Android application package (APK) can be automatically encrypted. The encrypted code is loaded and run in the Android system after being successfully decrypted. Compared with the exiting software protecting systems, SeSoa uses online authentication mechanism to ensure the improvementof the APK security and good balance between security and usability.
出处 《ZTE Communications》 2016年第B06期44-50,共7页 中兴通讯技术(英文版)
基金 supported by National Natural Science Foundation of China(61370195) ZTE Industry-Academia-Research Cooperation Funds
关键词 software protection anti-reverse ANDROID AUTHENTICATION software protection anti-reverse Android authentication
  • 相关文献

参考文献11

  • 1Android Open Source Project. (2015, Oct.). Android security overT~iew [online]. Available: https://source, android.enm/seeurily/index.html.
  • 2AppBrain. (2015, Nov.). Number ofandroizl applieatiol~ [online]. Available: http: //www.appbrain.eom/stats/number- of-android-apps.
  • 3V. Oorschot, and C. Paul, ~Revisiting software proleclinn," in lnfor,uLtion Securi- ty. Germany: Springer Berlin Heidelberg, 2003, pp. 1-13.
  • 4Soureeforge. (2015, Oct.). ProGuurd [online]. Available: hltp://f)roguard.soulx~e- forge.net.
  • 5C. Coakley, J. Freeman, and R. Diek. (2005, I"el). 4). Next-generation protection against reverse engineering [Online]. Available: http://www.anacai~asciem:es.com/publications/proteeting_snftware2005.02.09.pdf.
  • 6C. Kruegel, W. Robertson, F. Valeur, and G. Vigna, "Static disassembly of obfus- caled binaries," in USENIX security ,Symposium, San Diego, USA, 2004, pp. 18- 18.
  • 7dexGuard. (2015, Oct.). DexGuard, premium secttrity software fi~r android appli- cations [online]. Available: http://www.saikoa.com/dexguard.
  • 8Allntori. (2015, Oct.). Allatorijava ot~'uscator [online]. Available: http://www.alla- Y.
  • 9Pian, J. tt. Jung, and J. H. Yi, "Server-based code obfuscation scheme fnr APK tamper detection,~ Security and Communication Networks, vol. 9, no. 6, pp. 457-467, 2014. doi: 10.1002/sec.936.
  • 10APKTool. (2015, Oet.). A tool for reverse engineering android apk files [online]. Available: http://ibotpeaehes.github.io/Apktool P.

同被引文献2

引证文献1

二级引证文献1

相关作者

内容加载中请稍等...

相关机构

内容加载中请稍等...

相关主题

内容加载中请稍等...

浏览历史

内容加载中请稍等...
;
使用帮助 返回顶部