SACH: A Tool for Assisting Secure Android Application Development

被引:0
|
作者
Abernathy, Aakiel [1 ]
Yuan, Xiaohong [1 ]
Hill, Edward [1 ]
Xu, Jinsheng [1 ]
Bryant, Kelvin [1 ]
Williams, Kenneth [1 ]
机构
[1] North Carolina Agr & Tech State Univ, Dept Comp Sci, Greensboro, NC 27401 USA
来源
基金
美国国家科学基金会;
关键词
Android application development; secure coding; CERT [!text type='Java']Java[!/text] secure coding rules; INFORMATION LEAKAGE;
D O I
暂无
中图分类号
TP301 [理论、方法];
学科分类号
081202 ;
摘要
To mitigate the risk of attacks to mobile applications, it is important for mobile application developers to develop secure mobile applications. There have been tools that statically analyze the mobile applications to determine whether there are data leakage or access control vulnerabilities The Software Engineering Institute at Carnegie Melon University published CERT Java secure coding rules applicable to developing android applications. This paper describes SACH (Secure Android Coding Helper) - a tool we implemented to help developers identify security vulnerabilities in Android application. The tool analyzes Android application source code to detect violations of CERT Java secure coding rules. This tool will help Android developers to write Android code that comply with CERT Java secure coding rules. It can also be used in the classroom to teach students about Android secure coding.
引用
收藏
页数:4
相关论文
共 50 条
  • [11] Android application development tools
    Yagi R.
    Kyokai Joho Imeji Zasshi/Journal of the Institute of Image Information and Television Engineers, 2010, 64 (04): : 524 - 529
  • [12] Android Application Development and Testability
    Knych, Thomas W.
    Baliga, Ashwin
    PROCEEDINGS OF THE 1ST INTERNATIONAL CONFERENCE ON MOBILE SOFTWARE ENGINEERING AND SYSTEMS (MOBILESOFT 2014), 2014, : 37 - 40
  • [13] Obfuscated Android Application Development
    Graux, Pierre
    Lalande, Jean-Francois
    Tong, Valerie Viet Triem
    THIRD CENTRAL EUROPEAN CYBERSECURITY CONFERENCE (CECC 2019), 2019,
  • [14] ASSISTING REFACTORING TOOL DEVELOPMENT THROUGH REFACTORING CHARACTERIZATION
    Marticorena, Raul
    Lopez, Carlos
    Perez, Javier
    Crespo, Yania
    ICSOFT 2011: PROCEEDINGS OF THE 6TH INTERNATIONAL CONFERENCE ON SOFTWARE AND DATABASE TECHNOLOGIES, VOL 2, 2011, : 232 - 237
  • [15] Chiromancer: A Tool for Boosting Android Application Performance
    Anwer, Samit
    Aggarwal, Aniya
    Purandare, Rahul
    Naik, Vinayak
    PROCEEDINGS OF THE 1ST INTERNATIONAL CONFERENCE ON MOBILE SOFTWARE ENGINEERING AND SYSTEMS (MOBILESOFT 2014), 2014, : 62 - 65
  • [16] AMon: A Monitoring Multidimensional Feature Application to Secure Android Environments
    Gomez-Hernandez, J. A.
    Garcia-Teodoro, P.
    Holgado-Terriza, J. A.
    Macia-Fernandez, G.
    Camacho-Paez, J.
    Robles-Carrillo, M.
    2021 IEEE SYMPOSIUM ON SECURITY AND PRIVACY WORKSHOPS (SPW 2021), 2021, : 31 - 36
  • [17] Designing Intelligent Secure Android Application for Effective Chemical Inventory
    Shukran, Mohd Afizi Mohd
    Abdullah, Muhammad Naim
    Ismail, Mohd Nazri
    Maskat, Kamaruzaman
    Isa, Mohd Rizal Mohd
    Ishak, Muhammad Shahfee
    Khairuddin, Muhamad Adib
    INTERNATIONAL RESEARCH AND INNOVATION SUMMIT (IRIS2017), 2017, 226
  • [18] Automated security testing of Android applications for secure mobile development
    Palma, Francisco
    Realista, Nuno
    Serrao, Carlos
    Nunes, Luis
    Oliveira, Joao
    Almeida, Ana
    2020 IEEE 13TH INTERNATIONAL CONFERENCE ON SOFTWARE TESTING, VERIFICATION AND VALIDATION WORKSHOPS (ICSTW), 2020, : 222 - 231
  • [19] Development of Android Application for Language Studies
    Dong, Christopher
    Liu, Xing
    2013 INTERNATIONAL CONFERENCE ON ELECTRONIC ENGINEERING AND COMPUTER SCIENCE (EECS 2013), 2013, 4 : 8 - 16
  • [20] GoogleMap Application Development in Android Platform
    Lin, Shaofeng
    Zhou, Yao
    Wang, Ruoyin
    Zhang, Jingjing
    APPLIED SCIENCE, MATERIALS SCIENCE AND INFORMATION TECHNOLOGIES IN INDUSTRY, 2014, 513-517 : 466 - 469