Chulalongkorn University Theses and Dissertations (Chula ETD)
Other Title (Parallel Title in Other Language of ETD)
การเรียนรู้การส่งผ่านข้อมูลส่วนตัวจากแอปพลิเคชันบนระบบปฏิบัติการแอนดรอยด์จากข้อมูลการเคราะห์ซอร์สโค้ดอย่างรวดเร็ว
Year (A.D.)
2020
Document Type
Thesis
First Advisor
Kunwadee Sripanidkulchai
Faculty/College
Faculty of Engineering (คณะวิศวกรรมศาสตร์)
Department (if any)
Department of Computer Engineering (ภาควิชาวิศวกรรมคอมพิวเตอร์)
Degree Name
Master of Engineering
Degree Level
Master's Degree
Degree Discipline
Computer Engineering
DOI
10.58837/CHULA.THE.2020.133
Abstract
The ease of use of mobile devices has resulted in a significant increase in the everyday use of mobile applications as well as the amount of personal information stored on devices. Users are becoming more aware of applications' access to their personal information, as well as the risk that these applications may unwittingly transmit Personally Identifiable Information (PII) to third-party servers. There is no simple way to determine whether or not an application transmits PII. If this information could be made available to users before installing new applications, they could weigh the pros and cons of having the risk of their PII exposed. To detect PII transmission, heavy-weight methods like static code analysis and dynamic behavior analysis are used. They take anywhere from a few minutes to several hours of testing and analysis per application. On the other hand, in this thesis, we use fast static code analysis to extract features that we then use to build a classification model to detect PII transmission in under a minute with performance comparable to heavy-weight methods. We evaluate our model against a large number of top-ranked Android applications, totaling over 19,000. Our method is both fast and effective, making it ideal for detecting and analyzing PII transmission in mobile applications in real-time.
Creative Commons License
This work is licensed under a Creative Commons Attribution-NonCommercial-No Derivative Works 4.0 International License.
Recommended Citation
Wongwiwatchai, Nattanon, "Learning personally identifiable information transmission in android applications by using data from fast static code analysis" (2020). Chulalongkorn University Theses and Dissertations (Chula ETD). 154.
https://digital.car.chula.ac.th/chulaetd/154
Included in
Computer Engineering Commons, Databases and Information Systems Commons, Programming Languages and Compilers Commons