Visible to the public A Suggested Model for Mobile Application Penetration Test Framework

TitleA Suggested Model for Mobile Application Penetration Test Framework
Publication TypeConference Paper
Year of Publication2021
AuthorsÖZGÜR, Berkecan, Dogru, Ibrahim Alper, Uçtu, Göksel, ALKAN, Mustafa
Conference Name2021 International Conference on Information Security and Cryptology (ISCTURKEY)
KeywordsAnalytical models, composability, dynamic analysis, Heuristic algorithms, Human Behavior, Hybrid Analysis, Information security, iOS Security, mobile security, Operating systems, pubcrawl, resilience, Resiliency, security, social networking (online), static analysis
Abstract

Along with technological developments in the mobile environment, mobile devices are used in many areas like banking, social media and communication. The common characteristic of applications in these fields is that they contain personal or financial information of users. These types of applications are developed for Android or IOS operating systems and have become the target of attackers. To detect weakness, security analysts, perform mobile penetration tests using security analysis tools. These analysis tools have advantages and disadvantages to each other. Some tools can prioritize static or dynamic analysis, others not including these types of tests. Within the scope of the current model, we are aim to gather security analysis tools under the penetration testing framework, also contributing analysis results by data fusion algorithm. With the suggested model, security analysts will be able to use these types of analysis tools in addition to using the advantage of fusion algorithms fed by analysis tools outputs.

DOI10.1109/ISCTURKEY53027.2021.9654417
Citation Keyozgur_suggested_2021