{PolyFuzz}: Holistic Greybox Fuzzing of {Multi-Language} Systems

W Li, J Ruan, G Yi, L Cheng, X Luo, H Cai - 32nd USENIX Security …, 2023 - usenix.org
While offering many advantages during software process, the practice of using multiple
programming languages in constructing one software system also introduces additional …

Happer: Unpacking android apps via a hardware-assisted approach

L Xue, H Zhou, X Luo, Y Zhou, Y Shi… - … IEEE Symposium on …, 2021 - ieeexplore.ieee.org
Malware authors are abusing packers (or runtime-based obfuscators) to protect malicious
apps from being analyzed. Although many unpacking tools have been proposed, they can …

Comparative analysis of Android mobile forensics tools

HH Lwin, WP Aung, KK Lin - 2020 IEEE Conference on …, 2020 - ieeexplore.ieee.org
This paper performs a comparative analysis of Android mobile forensics tools which are
used for acquisition and analyzing of Android mobile devices. The major challenges of …

Learning to detect and localize multilingual bugs

H Yang, Y Nong, T Zhang, X Luo, H Cai - Proceedings of the ACM on …, 2024 - dl.acm.org
Increasing studies have shown bugs in multi-language software as a critical loophole in
modern software quality assurance, especially those induced by language interactions (ie …

DroidHook: a novel API-hook based Android malware dynamic analysis sandbox

Y Cui, Y Sun, Z Lin - Automated Software Engineering, 2023 - Springer
With the popularity of Android devices, mobile apps are prevalent in our daily life, making
them a target for attackers to steal private data and push advertisements. Dynamic analysis …

NCScope: hardware-assisted analyzer for native code in Android apps

H Zhou, S Wu, X Luo, T Wang, Y Zhou… - Proceedings of the 31st …, 2022 - dl.acm.org
More and more Android apps implement their functionalities in native code, so does
malware. Although various approaches have been designed to analyze the native code …

All your app links are belong to us: understanding the threats of instant apps based attacks

Y Tang, Y Sui, H Wang, X Luo, H Zhou… - Proceedings of the 28th …, 2020 - dl.acm.org
Android deep link is a URL that takes users to a specific page of a mobile app, enabling
seamless user experience from a webpage to an app. Android app link, a new type of deep …

Towards {Privacy-Preserving}{Social-Media}{SDKs} on Android

H Lu, Y Liu, X Liao, L **ng - 33rd USENIX Security Symposium (USENIX …, 2024 - usenix.org
Integration of third-party SDKs are essential in the development of mobile apps. However,
the rise of in-app privacy threat against mobile SDKs—called cross-library data harvesting …

Packergrind: An adaptive unpacking system for android apps

L Xue, H Zhou, X Luo, L Yu, D Wu… - IEEE Transactions on …, 2020 - ieeexplore.ieee.org
App developers are increasingly using packing services (or packers) to protect their code
against being reverse engineered or modified. However, such packing techniques are also …

Do as you say: Consistency detection of data practice in program code and privacy policy in mini-app

Y Wang, M Fan, J Liu, J Tao, W **… - IEEE Transactions …, 2024 - ieeexplore.ieee.org
Mini-app is an emerging form of mobile application that combines web technology with
native capabilities. Its features, eg, no need to download and no installation, have made it …