MiniTracker: Large-Scale Sensitive Information Tracking in Mini Apps

W Li, B Yang, H Ye, L **ang, Q Tao… - … on Dependable and …, 2023 - ieeexplore.ieee.org
Running on host mobile applications, mini apps have gained increasing popularity these
days for its convenience in installation and usage. However, being easy to use allows mini …

ωTest: Webview-oriented testing for android applications

J Hu, L Wei, Y Liu, SC Cheung - Proceedings of the 32nd ACM SIGSOFT …, 2023 - dl.acm.org
WebView is a UI widget that helps integrate web applications into the native context of
Android apps. It provides powerful mechanisms for bi-directional interactions between the …

State reconciliation defects in infrastructure as code

MM Hassan, J Salvador, SKK Santu… - Proceedings of the ACM …, 2024 - dl.acm.org
In infrastructure as code (IaC), state reconciliation is the process of querying and comparing
the infrastructure state prior to changing the infrastructure. As state reconciliation is pivotal to …

MiniCAT: Understanding and Detecting Cross-Page Request Forgery Vulnerabilities in Mini-Programs

Z Zhang, Q Hou, L Ying, W Diao, Y Gu, R Li… - Proceedings of the …, 2024 - dl.acm.org
Mini-programs are lightweight apps running in super apps (such as WeChat, Baidu, Alipay,
and TikTok), an emerging paradigm in the era of mobile computing. With the growing …

Sok: Decoding the super app enigma: The security mechanisms, threats, and trade-offs in os-alike apps

Y Yang, C Wang, Y Zhang, Z Lin - arxiv preprint arxiv:2306.07495, 2023 - arxiv.org
The super app paradigm, exemplified by platforms such as WeChat and AliPay, has
revolutionized the mobile app landscape by enabling third-party developers to deploy add …

WeMinT: Tainting sensitive data leaks in WeChat mini-programs

S Meng, L Wang, S Wang, K Wang… - 2023 38th IEEE/ACM …, 2023 - ieeexplore.ieee.org
Mini-programs (MiniApps), lightweight versions of full-featured mobile apps that run inside a
host app such as WeChat, have become increasingly popular due to their simplified and …

Do as you say: Consistency detection of data practice in program code and privacy policy in mini-app

Y Wang, M Fan, J Liu, J Tao, W **… - IEEE Transactions …, 2024 - ieeexplore.ieee.org
Mini-app is an emerging form of mobile application that combines web technology with
native capabilities. Its features, eg, no need to download and no installation, have made it …

Towards efficient record and replay: A case study in wechat

S Feng, H Lu, T **ong, Y Deng, C Chen - Proceedings of the 31st ACM …, 2023 - dl.acm.org
WeChat, a widely-used messenger app boasting over 1 billion monthly active users,
requires effective app quality assurance for its complex features. Record-and-replay tools …

MiniChecker: Detecting Data Privacy Risk of Abusive Permission Request Behavior in Mini-Programs

Y Wang, M Fan, H Zhou, H Wang, W **, J Li… - Proceedings of the 39th …, 2024 - dl.acm.org
The rising popularity of mini-programs deployed on super-app platforms has drawn
significant attention due to their convenience. However, developers' improper handling of …

RootFree Attacks: Exploiting Mobile Platform's Super Apps From Desktop

C Wang, Y Zhang, Z Lin - Proceedings of the 19th ACM Asia Conference …, 2024 - dl.acm.org
In recent years, there has been a surge in the popularity of mobile super apps, which
consolidate a variety of services, including messaging, ride-hailing, and e-commerce, into a …