loading
Papers Papers/2022 Papers Papers/2022

Research.Publish.Connect.

Paper

Authors: Kris Heid 1 ; Tobias Tefke 1 ; 2 ; Jens Heider 1 and Ralf C. Staudemeyer 2

Affiliations: 1 Fraunhofer SIT, Rheinstr. 75, D-64295 Darmstadt, Germany ; 2 Schmalkalden University of Applied Sciences, Blechhammer, D-98574 Schmalkalden, Germany

Keyword(s): Security and Privacy, Android, Software and Application Security, Data Security, Personal Data Leakage, File System Security, Dynamic Analysis.

Abstract: Many Android apps handle and store sensible data on the smartphone, such as for example passwords, API keys or messages. This information must of course be protected and thus more and more protected storage options and storage isolation techniques were implemented in recent Android version. This results in good security and privacy mechanisms provided to Android developers. However, the question is how well these measures are implemented in todays apps. In this publication, we are presenting an automated dynamic analysis environment which we use to analyze the top 1000 Android apps. Filesystem API accesses of these apps are evaluated and judged how well Android’s protected storage locations are leveraged or abused.

CC BY-NC-ND 4.0

Sign In Guest: Register as new SciTePress user now for free.

Sign In SciTePress user: please login.

PDF ImageMy Papers

You are not signed in, therefore limits apply to your IP address 18.225.209.95

In the current month:
Recent papers: 100 available of 100 total
2+ years older papers: 200 available of 200 total

Paper citation in several formats:
Heid, K.; Tefke, T.; Heider, J. and Staudemeyer, R. (2022). Android Data Storage Locations and What App Developers Do with It from a Security and Privacy Perspective. In Proceedings of the 8th International Conference on Information Systems Security and Privacy - ICISSP; ISBN 978-989-758-553-1; ISSN 2184-4356, SciTePress, pages 378-387. DOI: 10.5220/0010838200003120

@conference{icissp22,
author={Kris Heid. and Tobias Tefke. and Jens Heider. and Ralf C. Staudemeyer.},
title={Android Data Storage Locations and What App Developers Do with It from a Security and Privacy Perspective},
booktitle={Proceedings of the 8th International Conference on Information Systems Security and Privacy - ICISSP},
year={2022},
pages={378-387},
publisher={SciTePress},
organization={INSTICC},
doi={10.5220/0010838200003120},
isbn={978-989-758-553-1},
issn={2184-4356},
}

TY - CONF

JO - Proceedings of the 8th International Conference on Information Systems Security and Privacy - ICISSP
TI - Android Data Storage Locations and What App Developers Do with It from a Security and Privacy Perspective
SN - 978-989-758-553-1
IS - 2184-4356
AU - Heid, K.
AU - Tefke, T.
AU - Heider, J.
AU - Staudemeyer, R.
PY - 2022
SP - 378
EP - 387
DO - 10.5220/0010838200003120
PB - SciTePress