Android Rooting: An Arms Race between Evasion and Detection

المؤلفون المشاركون

Nguyen-Vu, Long
Chau, Ngoc-Tu
Kang, Seongeun
Jung, Souhwan

المصدر

Security and Communication Networks

العدد

المجلد 2017، العدد 2017 (31 ديسمبر/كانون الأول 2017)، ص ص. 1-13، 13ص.

الناشر

Hindawi Publishing Corporation

تاريخ النشر

2017-10-29

دولة النشر

مصر

عدد الصفحات

13

التخصصات الرئيسية

تكنولوجيا المعلومات وعلم الحاسوب

الملخص EN

We present an arms race between rooting detection and rooting evasion.

We investigate different methods to detect rooted device at both Java and native level and evaluate the counterattack from major hooking tools.

To this end, an extensive study of Android rooting has been conducted, which includes the techniques to root the device and make it invisible to the detection of mobile antimalware product.

We then analyze the evasion loopholes and in turn enhance our rooting detection tool.

We also apply evasion techniques on rooted device and compare our work with 92 popular root checking applications and 18 banking and finance applications.

Results show that most of them do not suffice and can be evaded through API hooking or static file renaming.

Furthermore, over 28000 Android applications have been analyzed and evaluated in order to diagnose the characteristics of rooting in recent years.

Our study shows that rooting has become more and more prevalent as an inevitable trend, and it raises big security concerns regarding detection and evasion.

As a proof of concept, we have published our rooting detection application to Google Play Store to demonstrate the work presented in this paper.

نمط استشهاد جمعية علماء النفس الأمريكية (APA)

Nguyen-Vu, Long& Chau, Ngoc-Tu& Kang, Seongeun& Jung, Souhwan. 2017. Android Rooting: An Arms Race between Evasion and Detection. Security and Communication Networks،Vol. 2017, no. 2017, pp.1-13.
https://search.emarefa.net/detail/BIM-1202895

نمط استشهاد الجمعية الأمريكية للغات الحديثة (MLA)

Nguyen-Vu, Long…[et al.]. Android Rooting: An Arms Race between Evasion and Detection. Security and Communication Networks No. 2017 (2017), pp.1-13.
https://search.emarefa.net/detail/BIM-1202895

نمط استشهاد الجمعية الطبية الأمريكية (AMA)

Nguyen-Vu, Long& Chau, Ngoc-Tu& Kang, Seongeun& Jung, Souhwan. Android Rooting: An Arms Race between Evasion and Detection. Security and Communication Networks. 2017. Vol. 2017, no. 2017, pp.1-13.
https://search.emarefa.net/detail/BIM-1202895

نوع البيانات

مقالات

لغة النص

الإنجليزية

الملاحظات

Includes bibliographical references

رقم السجل

BIM-1202895