Towards Automated Android App Collusion Detection
This addresses security risks for Android users by enabling automated detection of app collusion, but appears incremental as it builds on existing definitions and collaborations.
The paper tackles the problem of detecting collusion among Android apps that communicate to carry out threats, and reports on several automated detection approaches developed with Intel Security.
Android OS supports multiple communication methods between apps. This opens the possibility to carry out threats in a collaborative fashion, c.f. the Soundcomber example from 2011. In this paper we provide a concise definition of collusion and report on a number of automated detection approaches, developed in co-operation with Intel Security.