<?xml version="1.0" encoding="utf-8" standalone="yes"?><rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom"><channel><title>安卓 on Lutong's Homepage</title><link>https://www.elliot98.top/tags/%E5%AE%89%E5%8D%93/</link><description>Recent content in 安卓 on Lutong's Homepage</description><generator>Hugo</generator><language>zh-cn</language><lastBuildDate>Sun, 07 Apr 2019 09:16:29 +0800</lastBuildDate><atom:link href="https://www.elliot98.top/tags/%E5%AE%89%E5%8D%93/index.xml" rel="self" type="application/rss+xml"/><item><title>论文笔记| Understanding Open Ports in Android Applications: Discovery, Diagnosis, and Security Assessment</title><link>https://www.elliot98.top/post/lab/big4-reading-5/</link><pubDate>Sun, 07 Apr 2019 09:16:29 +0800</pubDate><guid>https://www.elliot98.top/post/lab/big4-reading-5/</guid><description>&lt;h1 id="understanding-open-ports-in-android-applications-discovery-diagnosis-and-security-assessment"&gt;Understanding Open Ports in Android Applications: Discovery, Diagnosis, and Security Assessment&lt;/h1&gt;
&lt;ul&gt;
&lt;li&gt;
&lt;p&gt;作者：Daoyuan Wu, Debin Gao, Rocky K. C. Chang, En He, Eric K. T. Cheng, and Robert H. Deng&lt;/p&gt;
&lt;/li&gt;
&lt;li&gt;
&lt;p&gt;收录会议： Network and Distributed Systems Security (NDSS) Symposium 2019&lt;/p&gt;
&lt;/li&gt;
&lt;/ul&gt;
&lt;h2 id="一摘要"&gt;一、摘要&lt;/h2&gt;
&lt;p&gt;文章主要完成了如下几件事：&lt;/p&gt;
&lt;ul&gt;
&lt;li&gt;对 136 个国家的三千多 Android 设备进行测量。对流行应用和 Built-in 应用进行测量。&lt;/li&gt;
&lt;li&gt;对这些数据进行聚合和诊断。&lt;/li&gt;
&lt;li&gt;完成了三项安全评估：
&lt;ul&gt;
&lt;li&gt;vulnerability analysis revealing five vulnerability patterns in open ports of popular apps&lt;/li&gt;
&lt;li&gt;inter-device connectivity measurement in 224 cellular networks and 2,181 WiFi networks through crowdsourced network scans&lt;/li&gt;
&lt;li&gt;experimental demonstration of effective denial-of-service attacks against mobile open ports&lt;/li&gt;
&lt;/ul&gt;
&lt;/li&gt;
&lt;/ul&gt;
&lt;p&gt;之前已有的工作是发现了移动设备也有开放的端口，以及对特定应用程序使用开放端口的测试（截屏软件、文件分享软件等），但是这些工作只在局部给出了结论，而缺少对于 Open Ports in Android Application 这一个问题的宏观结果。&lt;/p&gt;</description></item></channel></rss>