《计算机应用研究》|Application Research of Computers

基于Pi演算的Android App权限提升攻击检测

Privilege escalation attacks detection for Android App based on Pi calculus

免费全文下载 (已被下载 次)  
获取PDF全文
作者 王涛,马川
机构 1.河北科技师范学院 工商管理学院,河北 秦皇岛 066004;2.燕山大学 信息科学与工程学院,河北 秦皇岛 066004
统计 摘要被查看 次,已被下载
文章编号 1001-3695(2020)12-035-3699-05
DOI 10.19734/j.issn.1001-3695.2019.08.0562
摘要 针对Android App权限提升攻击的问题,基于Pi演算构建了一个形式化的权限提升攻击检测模型。利用扩展后的Pi演算对Android App及其运行时环境进行建模,得到形式化的行为模型;通过将权限安全策略形式化的表示为包含进程表达式的IF-THEN规则,并利用Pi演算的性质进行进程演算和迁移,构建了检测模型,并给出了权限提升攻击检测的方法。理论分析和实验表明,该方法具有线性的时间和空间复杂度,并可以非常容易地将现有的权限安全策略应用在该模型中,保证了模型的精确性。相比其他方法,该方法在提高检测精确性的同时并没有牺牲检测的效率。
关键词 Android App; 权限提升; 静态分析; 进程代数; 安全策略
基金项目 河北省社会科学基金资助项目(HB18SH012)
本文URL http://www.arocmag.com/article/01-2020-12-035.html
英文标题 Privilege escalation attacks detection for Android App based on Pi calculus
作者英文名 Wang Tao, Ma Chuan
机构英文名 1.College of Business Administration,Hebei Normal University of Science & Technology,Qinhuangdao Hebei 066004,China;2.College of Information Science & Engineering,Yanshan University,Qinhuangdao Hebei 066004,China
英文摘要 To solve the privilege escalation attacks on Android App, this paper proposed a formal privilege escalation attacks detection model based on Pi calculus. It used the extended Pi calculus to model the Android App and its runtime environment, and obtained a formal behavior model. By formalizing the privilege security policy as process expressions containing the IF-THEN rule and using the properties of Pi calculus to perform process calculus and migration, it constructed the detection model, and gave out the privilege escalation attacks detection method. The analysis and experiment results show that this method has linear time and space complexity, moreover, the existing privilege security policy can be easily applied on this model to ensure the accuracy of the model. Compared with other methods, the detection accuracy is improved without sacrificing the detection efficiency.
英文关键词 Android App; privilege escalation; static analysis; process algebra; security policy
参考文献 查看稿件参考文献
 
收稿日期 2019/8/10
修回日期 2019/10/5
页码 3699-3703
中图分类号 TP309
文献标志码 A