YoVDO

Call Me Back! Attacks on System Server and System Apps in Android through Synchronous Callback

Offered By: Association for Computing Machinery (ACM) via YouTube

Tags

ACM CCS (Computer and Communications Security) Courses Cybersecurity Courses System Architecture Courses Android Security Courses

Course Description

Overview

Explore a critical security analysis of Android's system architecture in this conference talk presented at CCS 2016. Delve into the vulnerabilities of Android's System Server and System Apps, focusing on synchronous callback attacks. Understand the mechanics of how system services are provided and the role of callbacks during Inter-Process Communication (IPC). Examine various malicious callback techniques, including blocking, exception-throwing, and self-poisoning. Investigate the impact on other system apps and consider meaningful attack scenarios. Discuss potential defense approaches and address key research questions regarding detection methods and identified vulnerabilities. Gain valuable insights into Android security from experts Kai Wang, Yuqing Zhang, and Peng Liu as they present their findings at the 23rd ACM Conference on Computer and Communications Security.

Syllabus

Intro
Android System Server
How a System Service is provided
Callback during IPC
What is a Callback Handle
Malicious Callback: Block
Malicious Callback: Exception
Malicious Callback: Self-Poisoning
Other Victims System Apps
Research Questions
Meaningful Attacks
Defense Approaches
Question 1: How to Detect?
Question 2: Detected Vulnerabilities


Taught by

ACM CCS

Related Courses

Peeling the Onion's User Experience Layer - Examining Naturalistic Use of the Tor Browser
Association for Computing Machinery (ACM) via YouTube
DeepCorr - Strong Flow Correlation Attacks on Tor Using Deep Learning
Association for Computing Machinery (ACM) via YouTube
SandScout - Automatic Detection of Flaws in iOS Sandbox Profiles
Association for Computing Machinery (ACM) via YouTube
Game of Decoys - Optimal Decoy Routing Through Game Theory
Association for Computing Machinery (ACM) via YouTube
PREDATOR - Proactive Recognition and Elimination of Domain Abuse at Time-Of-Registration
Association for Computing Machinery (ACM) via YouTube