• KSII Transactions on Internet and Information Systems
    Monthly Online Journal (eISSN: 1976-7277)

A Strengthened Android Signature Management Method

Vol. 9, No. 3, March 30, 2015
10.3837/tiis.2015.03.021, Download Paper (Free):

Abstract

Android is the world’s most utilized smartphone OS which consequently, also makes it an attractive target for attackers. The most representative method of hacking used against Android apps is known as repackaging. This attack method requires extensive knowledge about reverse engineering in order to modify and insert malicious codes into the original app. However, there exists an easier way which circumvents the limiting obstacle of the reverse engineering. We have discovered a method of exploiting the Android code-signing process in order to mount a malware as an example. We also propose a countermeasure to prevent this attack. In addition, as a proof-of-concept, we tested a malicious code based on our attack technique on a sample app and improved the java libraries related to code-signing/verification reflecting our countermeasure.


Statistics

Show / Hide Statistics

Statistics (Cumulative Counts from December 1st, 2015)
Multiple requests among the same browser session are counted as one view.
If you mouse over a chart, the values of data points will be shown.


Cite this article

[IEEE Style]
T. Cho and S. Seo, "A Strengthened Android Signature Management Method," KSII Transactions on Internet and Information Systems, vol. 9, no. 3, pp. 1210-1230, 2015. DOI: 10.3837/tiis.2015.03.021.

[ACM Style]
Taenam Cho and Seung-Hyun Seo. 2015. A Strengthened Android Signature Management Method. KSII Transactions on Internet and Information Systems, 9, 3, (2015), 1210-1230. DOI: 10.3837/tiis.2015.03.021.

[BibTeX Style]
@article{tiis:20761, title="A Strengthened Android Signature Management Method", author="Taenam Cho and Seung-Hyun Seo and ", journal="KSII Transactions on Internet and Information Systems", DOI={10.3837/tiis.2015.03.021}, volume={9}, number={3}, year="2015", month={March}, pages={1210-1230}}