Evaluating the privacy of Android mobile applications under forensic analysis

被引:20
|
作者
Ntantogian, Christoforos [1 ]
Apostolopoulos, Dimitris [1 ]
Marinakis, Giannis [1 ]
Xenakis, Christos [1 ]
机构
[1] Univ Piraeus, Dept Digital Syst, Piraeus, Greece
关键词
Privacy of mobile applications; Mobile forensics; Android; Memory dump; Mobile applications; Volatile memory; Authentication credentials;
D O I
10.1016/j.cose.2014.01.004
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
In this paper, we investigate and evaluate through experimental analysis the possibility of recovering authentication credentials of mobile applications from the volatile memory of Android mobile devices. Throughout the carried experiments and analysis, we have, exclusively, used open-source and free forensic tools. Overall, the contribution of this paper is threefold. First, it thoroughly, examines thirteen (13) mobile applications, which represent four common application categories that elaborate sensitive users' data, whether it is possible to recover authentication credentials from the physical memory of mobile devices, following thirty (30) different scenarios. Second, it explores in the considered applications, if we can discover patterns and expressions that indicate the exact position of authentication credentials in a memory dump. Third, it reveals a set of critical observations regarding the privacy of Android mobile applications and devices. (C) 2014 Elsevier Ltd. All rights reserved.
引用
收藏
页码:66 / 76
页数:11
相关论文
共 50 条
  • [21] Mobile forensic reference set (MFReS) and mobile forensic investigation for android devices
    Dohyun Kim
    Yunho Lee
    Sangjin Lee
    The Journal of Supercomputing, 2018, 74 : 6618 - 6632
  • [22] Automated Analysis Method for Forensic Investigation of Cloud Applications on Android
    Daryabar, Farid
    Tadayon, Mohammad Hesam
    Parsi, Ashkan
    2016 8TH INTERNATIONAL SYMPOSIUM ON TELECOMMUNICATIONS (IST), 2016, : 145 - 150
  • [23] Digital Forensic Analysis of Instant Messaging Applications on Android Smartphones
    Zhang, Hao
    Chen, Lei
    Liu, Qingzhong
    2018 INTERNATIONAL CONFERENCE ON COMPUTING, NETWORKING AND COMMUNICATIONS (ICNC), 2018, : 647 - 651
  • [24] Digital Forensic Analysis of Discord Mobile Application on Android Based Smartphones
    Kara, Ilker
    ACTA INFOLOGICA, 2022, 6 (02): : 189 - 198
  • [25] Forensic Analysis of Secure Ephemeral Messaging Applications on Android Platforms
    Bin Azhar, M. A. Hannan
    Barton, Thomas Edward Allen
    GLOBAL SECURITY, SAFETY AND SUSTAINABILITY: THE SECURITY CHALLENGES OF THE CONNECTED WORLD, ICGS3 2017, 2016, 630 : 27 - 41
  • [26] PlusApps: Towards a Privacy Risk Analysis for Android Plus Applications
    Alzahrani, Abdullah J.
    INTERNATIONAL JOURNAL OF ADVANCED COMPUTER SCIENCE AND APPLICATIONS, 2020, 11 (11) : 684 - 693
  • [27] An Analysis Framework for Information Loss and Privacy Leakage on Android Applications
    Yeh, Kuo-Hui
    Lo, Nai-Wei
    Fan, Chuan-Yen
    2014 IEEE 3RD GLOBAL CONFERENCE ON CONSUMER ELECTRONICS (GCCE), 2014, : 216 - 218
  • [28] Android Mobile Forensic Analyzer for Stegno data
    Mambodza, Walter T.
    Meeran, Nagoor A. R.
    2015 INTERNATIONAL CONFERENCED ON CIRCUITS, POWER AND COMPUTING TECHNOLOGIES (ICCPCT-2015), 2015,
  • [29] Privacy and Security analysis of cryptocurrency mobile applications
    Sai, Ashish Rajendra
    Buckley, Jim
    Le Gear, Andrew
    PROCEEDINGS OF THE 2019 FIFTH INTERNATIONAL CONFERENCE ON MOBILE AND SECURE SERVICES (MOBISECSERV), 2019,
  • [30] A privacy enforcing framework for Android applications
    Neisse, Ricardo
    Steri, Gary
    Geneiatakis, Dimitris
    Fovino, Igor Nai
    COMPUTERS & SECURITY, 2016, 62 : 257 - 277