Edinburgh Research Explorer

EviCheck: Digital Evidence for Android

Research output: Chapter in Book/Report/Conference proceedingConference contribution

Original languageEnglish
Title of host publicationAutomated Technology for Verification and Analysis
Subtitle of host publication13th International Symposium, ATVA 2015, Shanghai, China, October 12-15, 2015, Proceedings
PublisherSpringer International Publishing
Pages221-227
Number of pages6
ISBN (Electronic)978-3-319-24953-7
ISBN (Print)978-3-319-24952-0
DOIs
Publication statusPublished - 2015

Publication series

NameLecture Notes in Computer Science
PublisherSpringer International Publishing
Volume9364
ISSN (Print)0302-9743

Abstract

We present EviCheck, a tool for the verification, certification and generation of lightweight fine-grained security policies for Android. It applies static analysis to check the conformance between an application and a given policy. A distinguishing feature of EviCheck is its ability to generate digital evidence: a certificate for the analysis algorithm asserting the conformance between the application and the policy. This certificate can be independently checked by another component (tool) to validate or refute the result of the analysis. The checking process is generally very efficient compared to certificate generation as experiments on 20,000 real-world applications show.

Download statistics

No data available

ID: 20164875