Chinese Journal of Network and Information Security ›› 2021, Vol. 7 ›› Issue (5): 156-168.doi: 10.11959/j.issn.2096-109x.2021086

• Papers • Previous Articles     Next Articles

Android complex information flow analysis method based on communicating sequential process

Zhanhui YUAN1, Zhi YANG1, Hongqi ZHANG1, Shuyuan JIN2, Xuehui DU1   

  1. 1 Information Engineering University, Zhengzhou 450001, China
    2 Sun Yat-sen University, Guangzhou 510006, China
  • Revised:2021-09-23 Online:2021-10-15 Published:2021-10-01
  • Supported by:
    The National Natural Science Foundation of China(62176265);The National Natural Science Foundation of China(61972040)

Abstract:

Android privacy leak problem is becoming more and more serious.Information flow analysis is a main method to find privacy leak.Traditional information flow analysis methods mainly focus on single accessibility analysis, which is difficult to analyze complex information flow.An information flow analysis method based on communication sequence process was proposed.The formal model of application behavior was established, which can fully describe the information flow of program.The process trace equivalence analysis method could automatically verify complex information flow problems such as information flow association and information flow constraints.This method could detect whether the application program leaks sensitive information.Experimental results show that the accuracy of the proposed method can reach 90.99%.

Key words: Android, information flow analysis, privacy protection, formal analysis, communicating sequential process

CLC Number: 

No Suggested Reading articles found!