Visible to the public A Study of Grayware on Google PlayConflict Detection Enabled

TitleA Study of Grayware on Google Play
Publication TypeConference Paper
Year of Publication2016
AuthorsBenjamin Andow, North Carolina State University, Adwait Nadkarni, North Carolina State University, Blake Bassett, University of Illinois at Urbana-Champaign, William Enck, North Carolina State University, Tao Xie, University of Illinois at Urbana-Champaign
Conference NameWorkshop on Mobile Security Technologies
Date Published05/2016
Conference LocationSan Jose, CA
KeywordsNSA SoS Lablets Materials, Science of Human Circumvention of Security, science of security, UIUC
Abstract

While there have been various studies identifying and classifying Android malware, there is limited discussion of the broader class of apps that fall in a gray area. Mobile grayware is distinct from PC grayware due to differences in operating system properties. Due to mobile grayware's subjective nature, it is difficult to identify mobile grayware via program analysis alone. Instead, we hypothesize enhancing analysis with text analytics can effectively reduce human effort when triaging grayware. In this paper, we design and implement heuristics for seven main categories of grayware.We then use these heuristics to simulate grayware triage on a large set of apps from Google Play. We then present the results of our empirical study, demonstrating a clear problem of grayware. In doing so, we show how even relatively simple heuristics can quickly triage apps that take advantage of users in an undesirable way.

Citation Keynode-27171

Other available formats:

A Study of Grayware on Google Play
AttachmentSize
bytes