Font Size: a A A

Research Of Malicious Behaviors Based On Privilege Escalation Technology On Android Platform

Posted on:2016-04-30Degree:MasterType:Thesis
Country:ChinaCandidate:C YangFull Text:PDF
GTID:2308330473965511Subject:Information security
Abstract/Summary:PDF Full Text Request
This paper researches malicious behaviors on Android platform, introduces Android system’s security mechanism and its shortages, focuses on analyzing the the basis of malicious behaviors and demonstrating some malicious behaviors to reveal the major threats faced by the Android platform and then lays the foundation for the further research of the Android platform security measures.The basis of the malicious behaviors on Android platform is privilege escalation vulnerabilities and malicious attacks’ approaches. This paper is around the study of these two points, based on two research results which were achieved in my graduate phase, formed systematical research and analysis realization. First of all is the research about privilege escalation vulnerabilities, in the work of first year in graduate school, about ten privilege escalation vulnerabilities on Android platform were analyzed, four of them were exploited successfully. These four vulnerabilities were used in the “one click root apk” software on Android system. According to the differences between these vulnerabilities, they are classified into different categories one the basis of their perniciousness. This research is published in the paper mentioned in appendix 1. After the research of vulnerabilities and the research of attack approaches, mainly focus on the ADB tool whose unsafe character was ignored by many people. A malicious tool made by Raspberry Pi is introduced in the paper mentioned in appendix 2. This tool makes use of ADB tool’s insecurity to attack Android system.This paper design and illustrate the two attack demo on Android system: malicious charger based on Raspberry Pi and the man-in-the-middle attack use WebView vulnerability. At last of the paper, the ADB’s safety improvement Suggestions were put forward, and the Android newer kernel security mechanism was introduced. These introductions can keep within limits of Android platform’s malicious behaviors.
Keywords/Search Tags:Android security, Malicious behavior, Privilege escalation, Attack avenues, ADB tool
PDF Full Text Request
Related items