{"id":"https://openalex.org/W2906347220","doi":"https://doi.org/10.1109/tmc.2018.2889495","title":"Identifying Mobile Inter-App Communication Risks","display_name":"Identifying Mobile Inter-App Communication Risks","publication_year":2018,"publication_date":"2018-12-24","ids":{"openalex":"https://openalex.org/W2906347220","doi":"https://doi.org/10.1109/tmc.2018.2889495","mag":"2906347220"},"language":"en","primary_location":{"id":"doi:10.1109/tmc.2018.2889495","is_oa":false,"landing_page_url":"https://doi.org/10.1109/tmc.2018.2889495","pdf_url":null,"source":{"id":"https://openalex.org/S69141925","display_name":"IEEE Transactions on Mobile Computing","issn_l":"1536-1233","issn":["1536-1233","1558-0660","2161-9875"],"is_oa":false,"is_in_doaj":false,"is_core":true,"host_organization":"https://openalex.org/P4310320439","host_organization_name":"IEEE Computer Society","host_organization_lineage":["https://openalex.org/P4310320439","https://openalex.org/P4310319808"],"host_organization_lineage_names":["IEEE Computer Society","Institute of Electrical and Electronics Engineers"],"type":"journal"},"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"IEEE Transactions on Mobile Computing","raw_type":"journal-article"},"type":"article","indexed_in":["crossref"],"open_access":{"is_oa":false,"oa_status":"closed","oa_url":null,"any_repository_has_fulltext":false},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5050045135","display_name":"Karim O. Elish","orcid":"https://orcid.org/0000-0001-6060-4090"},"institutions":[{"id":"https://openalex.org/I32480017","display_name":"Florida Polytechnic University","ror":"https://ror.org/01e5mdj42","country_code":"US","type":"education","lineage":["https://openalex.org/I32480017"]}],"countries":["US"],"is_corresponding":true,"raw_author_name":"Karim O. Elish","raw_affiliation_strings":["Department of Computer Science, Florida Polytechnic University, Lakeland, USA"],"affiliations":[{"raw_affiliation_string":"Department of Computer Science, Florida Polytechnic University, Lakeland, USA","institution_ids":["https://openalex.org/I32480017"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5076081056","display_name":"Haipeng Cai","orcid":"https://orcid.org/0000-0002-5224-9970"},"institutions":[{"id":"https://openalex.org/I72951846","display_name":"Washington State University","ror":"https://ror.org/05dk0ce17","country_code":"US","type":"education","lineage":["https://openalex.org/I72951846"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Haipeng Cai","raw_affiliation_strings":["School of Electrical Engineering and Computer Science, Washington State University College of Engineering and Architecture, Pullman, USA"],"affiliations":[{"raw_affiliation_string":"School of Electrical Engineering and Computer Science, Washington State University College of Engineering and Architecture, Pullman, USA","institution_ids":["https://openalex.org/I72951846"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5102317765","display_name":"Daniel J. Barton","orcid":null},"institutions":[{"id":"https://openalex.org/I859038795","display_name":"Virginia Tech","ror":"https://ror.org/02smfhw86","country_code":"US","type":"education","lineage":["https://openalex.org/I859038795"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Daniel Barton","raw_affiliation_strings":["Department of Computer Science, Virginia Polytechnic Institute and State University, Blacksburg, USA"],"affiliations":[{"raw_affiliation_string":"Department of Computer Science, Virginia Polytechnic Institute and State University, Blacksburg, USA","institution_ids":["https://openalex.org/I859038795"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5034366344","display_name":"Danfeng Yao","orcid":"https://orcid.org/0000-0001-8969-2792"},"institutions":[{"id":"https://openalex.org/I859038795","display_name":"Virginia Tech","ror":"https://ror.org/02smfhw86","country_code":"US","type":"education","lineage":["https://openalex.org/I859038795"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Danfeng Yao","raw_affiliation_strings":["Department of Computer Science, Virginia Polytechnic Institute and State University, Blacksburg, USA"],"affiliations":[{"raw_affiliation_string":"Department of Computer Science, Virginia Polytechnic Institute and State University, Blacksburg, USA","institution_ids":["https://openalex.org/I859038795"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5030733431","display_name":"Barbara G. Ryder","orcid":"https://orcid.org/0000-0002-4755-6941"},"institutions":[{"id":"https://openalex.org/I859038795","display_name":"Virginia Tech","ror":"https://ror.org/02smfhw86","country_code":"US","type":"education","lineage":["https://openalex.org/I859038795"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Barbara G. Ryder","raw_affiliation_strings":["Department of Computer Science, Virginia Polytechnic Institute and State University, Blacksburg, USA"],"affiliations":[{"raw_affiliation_string":"Department of Computer Science, Virginia Polytechnic Institute and State University, Blacksburg, USA","institution_ids":["https://openalex.org/I859038795"]}]}],"institutions":[],"countries_distinct_count":1,"institutions_distinct_count":5,"corresponding_author_ids":["https://openalex.org/A5050045135"],"corresponding_institution_ids":["https://openalex.org/I32480017"],"apc_list":null,"apc_paid":null,"fwci":2.1469,"has_fulltext":false,"cited_by_count":43,"citation_normalized_percentile":{"value":0.88788703,"is_in_top_1_percent":false,"is_in_top_10_percent":false},"cited_by_percentile_year":{"min":95,"max":99},"biblio":{"volume":"19","issue":"1","first_page":"90","last_page":"102"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T11241","display_name":"Advanced Malware Detection Techniques","score":1.0,"subfield":{"id":"https://openalex.org/subfields/1711","display_name":"Signal Processing"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T11241","display_name":"Advanced Malware Detection Techniques","score":1.0,"subfield":{"id":"https://openalex.org/subfields/1711","display_name":"Signal Processing"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T10400","display_name":"Network Security and Intrusion Detection","score":0.9979000091552734,"subfield":{"id":"https://openalex.org/subfields/1705","display_name":"Computer Networks and Communications"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11644","display_name":"Spam and Phishing Detection","score":0.9901999831199646,"subfield":{"id":"https://openalex.org/subfields/1710","display_name":"Information Systems"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.8682633638381958},{"id":"https://openalex.org/keywords/collusion","display_name":"Collusion","score":0.7024447321891785},{"id":"https://openalex.org/keywords/malware","display_name":"Malware","score":0.6734462976455688},{"id":"https://openalex.org/keywords/android","display_name":"Android (operating system)","score":0.6353797912597656},{"id":"https://openalex.org/keywords/permission","display_name":"Permission","score":0.5956073999404907},{"id":"https://openalex.org/keywords/computer-security","display_name":"Computer security","score":0.5505073070526123},{"id":"https://openalex.org/keywords/mobile-malware","display_name":"Mobile malware","score":0.5110384225845337},{"id":"https://openalex.org/keywords/task","display_name":"Task (project management)","score":0.4422283172607422},{"id":"https://openalex.org/keywords/context","display_name":"Context (archaeology)","score":0.432364821434021},{"id":"https://openalex.org/keywords/operating-system","display_name":"Operating system","score":0.09573310613632202}],"concepts":[{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.8682633638381958},{"id":"https://openalex.org/C2781198186","wikidata":"https://www.wikidata.org/wiki/Q701521","display_name":"Collusion","level":2,"score":0.7024447321891785},{"id":"https://openalex.org/C541664917","wikidata":"https://www.wikidata.org/wiki/Q14001","display_name":"Malware","level":2,"score":0.6734462976455688},{"id":"https://openalex.org/C557433098","wikidata":"https://www.wikidata.org/wiki/Q94","display_name":"Android (operating system)","level":2,"score":0.6353797912597656},{"id":"https://openalex.org/C2779089604","wikidata":"https://www.wikidata.org/wiki/Q7169333","display_name":"Permission","level":2,"score":0.5956073999404907},{"id":"https://openalex.org/C38652104","wikidata":"https://www.wikidata.org/wiki/Q3510521","display_name":"Computer security","level":1,"score":0.5505073070526123},{"id":"https://openalex.org/C2780967490","wikidata":"https://www.wikidata.org/wiki/Q1291200","display_name":"Mobile malware","level":3,"score":0.5110384225845337},{"id":"https://openalex.org/C2780451532","wikidata":"https://www.wikidata.org/wiki/Q759676","display_name":"Task (project management)","level":2,"score":0.4422283172607422},{"id":"https://openalex.org/C2779343474","wikidata":"https://www.wikidata.org/wiki/Q3109175","display_name":"Context (archaeology)","level":2,"score":0.432364821434021},{"id":"https://openalex.org/C111919701","wikidata":"https://www.wikidata.org/wiki/Q9135","display_name":"Operating system","level":1,"score":0.09573310613632202},{"id":"https://openalex.org/C175444787","wikidata":"https://www.wikidata.org/wiki/Q39072","display_name":"Microeconomics","level":1,"score":0.0},{"id":"https://openalex.org/C162324750","wikidata":"https://www.wikidata.org/wiki/Q8134","display_name":"Economics","level":0,"score":0.0},{"id":"https://openalex.org/C199539241","wikidata":"https://www.wikidata.org/wiki/Q7748","display_name":"Law","level":1,"score":0.0},{"id":"https://openalex.org/C17744445","wikidata":"https://www.wikidata.org/wiki/Q36442","display_name":"Political science","level":0,"score":0.0},{"id":"https://openalex.org/C86803240","wikidata":"https://www.wikidata.org/wiki/Q420","display_name":"Biology","level":0,"score":0.0},{"id":"https://openalex.org/C187736073","wikidata":"https://www.wikidata.org/wiki/Q2920921","display_name":"Management","level":1,"score":0.0},{"id":"https://openalex.org/C151730666","wikidata":"https://www.wikidata.org/wiki/Q7205","display_name":"Paleontology","level":1,"score":0.0}],"mesh":[],"locations_count":1,"locations":[{"id":"doi:10.1109/tmc.2018.2889495","is_oa":false,"landing_page_url":"https://doi.org/10.1109/tmc.2018.2889495","pdf_url":null,"source":{"id":"https://openalex.org/S69141925","display_name":"IEEE Transactions on Mobile Computing","issn_l":"1536-1233","issn":["1536-1233","1558-0660","2161-9875"],"is_oa":false,"is_in_doaj":false,"is_core":true,"host_organization":"https://openalex.org/P4310320439","host_organization_name":"IEEE Computer Society","host_organization_lineage":["https://openalex.org/P4310320439","https://openalex.org/P4310319808"],"host_organization_lineage_names":["IEEE Computer Society","Institute of Electrical and Electronics Engineers"],"type":"journal"},"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"IEEE Transactions on Mobile Computing","raw_type":"journal-article"}],"best_oa_location":null,"sustainable_development_goals":[{"display_name":"Peace, Justice and strong institutions","score":0.75,"id":"https://metadata.un.org/sdg/16"}],"awards":[],"funders":[],"has_content":{"pdf":false,"grobid_xml":false},"content_urls":null,"referenced_works_count":56,"referenced_works":["https://openalex.org/W81879861","https://openalex.org/W84941226","https://openalex.org/W190551272","https://openalex.org/W769484497","https://openalex.org/W1584505081","https://openalex.org/W1630356589","https://openalex.org/W1680232729","https://openalex.org/W1912565424","https://openalex.org/W1943233084","https://openalex.org/W1988036170","https://openalex.org/W1994588724","https://openalex.org/W2005974103","https://openalex.org/W2017025011","https://openalex.org/W2027538101","https://openalex.org/W2031563289","https://openalex.org/W2041276426","https://openalex.org/W2048715902","https://openalex.org/W2058180826","https://openalex.org/W2060646286","https://openalex.org/W2070192880","https://openalex.org/W2073754016","https://openalex.org/W2080696000","https://openalex.org/W2083755826","https://openalex.org/W2092483417","https://openalex.org/W2113115074","https://openalex.org/W2121221235","https://openalex.org/W2122672392","https://openalex.org/W2125011234","https://openalex.org/W2127723417","https://openalex.org/W2140877821","https://openalex.org/W2148397566","https://openalex.org/W2153497135","https://openalex.org/W2166743230","https://openalex.org/W2277576447","https://openalex.org/W2399034518","https://openalex.org/W2403364760","https://openalex.org/W2600871181","https://openalex.org/W2752019414","https://openalex.org/W2767857768","https://openalex.org/W2768050722","https://openalex.org/W2780289003","https://openalex.org/W2883742592","https://openalex.org/W2933096895","https://openalex.org/W4243777769","https://openalex.org/W4244726870","https://openalex.org/W4245027182","https://openalex.org/W4251541794","https://openalex.org/W6603356336","https://openalex.org/W6607702499","https://openalex.org/W6636564115","https://openalex.org/W6637412253","https://openalex.org/W6640059210","https://openalex.org/W6682684344","https://openalex.org/W6712520696","https://openalex.org/W6743866149","https://openalex.org/W6760668708"],"related_works":["https://openalex.org/W4294976063","https://openalex.org/W2538622067","https://openalex.org/W2056388267","https://openalex.org/W2249350383","https://openalex.org/W3003485427","https://openalex.org/W2755037920","https://openalex.org/W4210309948","https://openalex.org/W2717179875","https://openalex.org/W4249118297","https://openalex.org/W1974604873"],"abstract_inverted_index":{"Malware":[0],"collusion":[1,160],"is":[2,13],"a":[3,14,27,52,65],"technique":[4],"utilized":[5],"by":[6],"attackers":[7],"to":[8,25,55,124],"evade":[9],"standard":[10],"detection.":[11,161],"It":[12],"new":[15],"threat":[16],"where":[17],"two":[18],"or":[19],"more":[20],"applications,":[21],"appearing":[22],"benign,":[23],"communicate":[24,129],"perform":[26,112],"malicious":[28,37],"task.":[29],"Most":[30],"proposed":[31],"approaches":[32],"aim":[33],"at":[34],"detecting":[35],"stand-alone":[36],"applications.":[38],"We":[39,111],"point":[40],"out":[41],"the":[42,73,85,120,126,157],"need":[43],"for":[44,68,106],"analyzing":[45],"data":[46],"flows":[47],"across":[48],"multiple":[49],"Android":[50],"apps,":[51,100],"problem":[53],"referred":[54],"as":[56],"end-to-end":[57],"flow":[58,66,92],"analysis.":[59],"In":[60],"this":[61],"work,":[62],"we":[63],"present":[64],"analysis":[67],"app":[69,149],"pairs":[70,150],"that":[71,128],"computes":[72],"risk":[74,109],"level":[75],"associated":[76],"with":[77,130],"their":[78],"potential":[79],"communications.":[80],"Our":[81,136],"approach":[82],"statically":[83],"analyzes":[84],"sensitivity":[86],"and":[87,101],"context":[88],"of":[89,146],"each":[90,131],"inter-app":[91,107],"based":[93],"on":[94,116,143],"inter-component":[95],"communication":[96],"(ICC)":[97],"between":[98],"communicating":[99,151],"defines":[102],"fine-grained":[103],"security":[104],"policies":[105],"ICC":[108,134],"classification.":[110],"an":[113],"empirical":[114],"study":[115],"7,251":[117],"apps":[118,127],"from":[119],"Google":[121],"Play":[122],"store":[123],"identify":[125],"other":[132],"via":[133,152],"channels.":[135],"results":[137],"report":[138],"four":[139],"times":[140],"fewer":[141],"warnings":[142],"our":[144],"dataset":[145],"197":[147],"real":[148],"explicit":[153],"external":[154],"ICCs":[155],"than":[156],"state-of-the-art":[158],"permission-based":[159]},"counts_by_year":[{"year":2025,"cited_by_count":6},{"year":2024,"cited_by_count":5},{"year":2023,"cited_by_count":7},{"year":2022,"cited_by_count":12},{"year":2021,"cited_by_count":3},{"year":2020,"cited_by_count":7},{"year":2019,"cited_by_count":3}],"updated_date":"2025-11-06T03:46:38.306776","created_date":"2025-10-10T00:00:00"}
