Data leakage between C/S communication: A case study on Android music app

Huanhuan Li, Qian Luo, Shubin Zhang, Haibin Zhang, Jiajia Liu

科研成果: 书/报告/会议事项章节会议稿件同行评审

1 引用 (Scopus)

摘要

As the rapid development of mobile communication technology, smartphones have become indispensable elements in our daily life. Particularly, the increasingly rich smartphone applications (apps) bring great convenience to people while the defects generated in app designing and coding may pose unexpected threats to users. In this paper, we focus on the issue of data leakage between the app client and server. By analyzing the vulnerabilities of client-to-server communication and eavesdropping on the session data, we implement spoofing attack on a popular music app client. Two experiments are introduced in details: downloading songs freely by means of bypassing the payment mechanism and deceiving user into installing malware. In addition, the countermeasures are also provided.

源语言英语
主期刊名2017 9th International Conference on Wireless Communications and Signal Processing, WCSP 2017 - Proceedings
出版商Institute of Electrical and Electronics Engineers Inc.
1-6
页数6
ISBN(电子版)9781538620625
DOI
出版状态已出版 - 7 12月 2017
已对外发布
活动9th International Conference on Wireless Communications and Signal Processing, WCSP 2017 - Nanjing, 中国
期限: 11 10月 201713 10月 2017

出版系列

姓名2017 9th International Conference on Wireless Communications and Signal Processing, WCSP 2017 - Proceedings
2017-January

会议

会议9th International Conference on Wireless Communications and Signal Processing, WCSP 2017
国家/地区中国
Nanjing
时期11/10/1713/10/17

指纹

探究 'Data leakage between C/S communication: A case study on Android music app' 的科研主题。它们共同构成独一无二的指纹。

引用此