{"id":"https://openalex.org/W2041494023","doi":"https://doi.org/10.1145/2810103.2813652","title":"Perplexed Messengers from the Cloud","display_name":"Perplexed Messengers from the Cloud","publication_year":2015,"publication_date":"2015-10-06","ids":{"openalex":"https://openalex.org/W2041494023","doi":"https://doi.org/10.1145/2810103.2813652","mag":"2041494023"},"language":"en","primary_location":{"id":"doi:10.1145/2810103.2813652","is_oa":false,"landing_page_url":"https://doi.org/10.1145/2810103.2813652","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Proceedings of the 22nd ACM SIGSAC Conference on Computer and Communications Security","raw_type":"proceedings-article"},"type":"article","indexed_in":["crossref"],"open_access":{"is_oa":false,"oa_status":"closed","oa_url":null,"any_repository_has_fulltext":false},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5107840899","display_name":"Yangyi Chen","orcid":null},"institutions":[{"id":"https://openalex.org/I4210119109","display_name":"Indiana University Bloomington","ror":"https://ror.org/02k40bc56","country_code":"US","type":"education","lineage":["https://openalex.org/I4210119109","https://openalex.org/I592451"]}],"countries":["US"],"is_corresponding":true,"raw_author_name":"Yangyi Chen","raw_affiliation_strings":["Indiana University Bloomington, Bloomington, IN, USA"],"affiliations":[{"raw_affiliation_string":"Indiana University Bloomington, Bloomington, IN, USA","institution_ids":["https://openalex.org/I4210119109"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5005758616","display_name":"Tongxin Li","orcid":"https://orcid.org/0000-0002-9806-8964"},"institutions":[{"id":"https://openalex.org/I20231570","display_name":"Peking University","ror":"https://ror.org/02v51f717","country_code":"CN","type":"education","lineage":["https://openalex.org/I20231570"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Tongxin Li","raw_affiliation_strings":["Peking University, Beijing, China","Peking University, Beijing, China#TAB#"],"affiliations":[{"raw_affiliation_string":"Peking University, Beijing, China","institution_ids":["https://openalex.org/I20231570"]},{"raw_affiliation_string":"Peking University, Beijing, China#TAB#","institution_ids":["https://openalex.org/I20231570"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5100751838","display_name":"Xiaofeng Wang","orcid":"https://orcid.org/0000-0001-8424-419X"},"institutions":[{"id":"https://openalex.org/I4210119109","display_name":"Indiana University Bloomington","ror":"https://ror.org/02k40bc56","country_code":"US","type":"education","lineage":["https://openalex.org/I4210119109","https://openalex.org/I592451"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"XiaoFeng Wang","raw_affiliation_strings":["Indiana University Bloomington, Bloomington, IN, USA"],"affiliations":[{"raw_affiliation_string":"Indiana University Bloomington, Bloomington, IN, USA","institution_ids":["https://openalex.org/I4210119109"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5100437976","display_name":"Kai Chen","orcid":"https://orcid.org/0000-0002-5624-2987"},"institutions":[{"id":"https://openalex.org/I4210119109","display_name":"Indiana University Bloomington","ror":"https://ror.org/02k40bc56","country_code":"US","type":"education","lineage":["https://openalex.org/I4210119109","https://openalex.org/I592451"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Kai Chen","raw_affiliation_strings":["Indiana University Bloomington and Institute of Information Engineering, CAS, Bloomington, IN, USA","Indiana University Bloomington and Institute of Information Engineering, CAS, Bloomington, IN, USA#TAB#"],"affiliations":[{"raw_affiliation_string":"Indiana University Bloomington and Institute of Information Engineering, CAS, Bloomington, IN, USA","institution_ids":["https://openalex.org/I4210119109"]},{"raw_affiliation_string":"Indiana University Bloomington and Institute of Information Engineering, CAS, Bloomington, IN, USA#TAB#","institution_ids":["https://openalex.org/I4210119109"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5102438645","display_name":"Xinhui Han","orcid":null},"institutions":[{"id":"https://openalex.org/I20231570","display_name":"Peking University","ror":"https://ror.org/02v51f717","country_code":"CN","type":"education","lineage":["https://openalex.org/I20231570"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Xinhui Han","raw_affiliation_strings":["Peking University, Beijing, China","Peking University, Beijing, China#TAB#"],"affiliations":[{"raw_affiliation_string":"Peking University, Beijing, China","institution_ids":["https://openalex.org/I20231570"]},{"raw_affiliation_string":"Peking University, Beijing, China#TAB#","institution_ids":["https://openalex.org/I20231570"]}]}],"institutions":[],"countries_distinct_count":2,"institutions_distinct_count":5,"corresponding_author_ids":["https://openalex.org/A5107840899"],"corresponding_institution_ids":["https://openalex.org/I4210119109"],"apc_list":null,"apc_paid":null,"fwci":1.1487,"has_fulltext":false,"cited_by_count":8,"citation_normalized_percentile":{"value":0.78596,"is_in_top_1_percent":false,"is_in_top_10_percent":false},"cited_by_percentile_year":{"min":89,"max":96},"biblio":{"volume":null,"issue":null,"first_page":"1260","last_page":"1272"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T11241","display_name":"Advanced Malware Detection Techniques","score":1.0,"subfield":{"id":"https://openalex.org/subfields/1711","display_name":"Signal Processing"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T11241","display_name":"Advanced Malware Detection Techniques","score":1.0,"subfield":{"id":"https://openalex.org/subfields/1711","display_name":"Signal Processing"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T10400","display_name":"Network Security and Intrusion Detection","score":0.9958000183105469,"subfield":{"id":"https://openalex.org/subfields/1705","display_name":"Computer Networks and Communications"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11644","display_name":"Spam and Phishing Detection","score":0.9894000291824341,"subfield":{"id":"https://openalex.org/subfields/1710","display_name":"Information Systems"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.6804368495941162},{"id":"https://openalex.org/keywords/cloud-computing","display_name":"Cloud computing","score":0.6725767850875854},{"id":"https://openalex.org/keywords/leverage","display_name":"Leverage (statistics)","score":0.6398355960845947},{"id":"https://openalex.org/keywords/world-wide-web","display_name":"World Wide Web","score":0.615146279335022},{"id":"https://openalex.org/keywords/computer-security","display_name":"Computer security","score":0.6047614216804504},{"id":"https://openalex.org/keywords/internet-privacy","display_name":"Internet privacy","score":0.6009055376052856},{"id":"https://openalex.org/keywords/mainstream","display_name":"Mainstream","score":0.5959507822990417},{"id":"https://openalex.org/keywords/adversary","display_name":"Adversary","score":0.5555524826049805},{"id":"https://openalex.org/keywords/cloud-computing-security","display_name":"Cloud computing security","score":0.46118786931037903},{"id":"https://openalex.org/keywords/service","display_name":"Service (business)","score":0.4197176396846771},{"id":"https://openalex.org/keywords/business","display_name":"Business","score":0.11647120118141174}],"concepts":[{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.6804368495941162},{"id":"https://openalex.org/C79974875","wikidata":"https://www.wikidata.org/wiki/Q483639","display_name":"Cloud computing","level":2,"score":0.6725767850875854},{"id":"https://openalex.org/C153083717","wikidata":"https://www.wikidata.org/wiki/Q6535263","display_name":"Leverage (statistics)","level":2,"score":0.6398355960845947},{"id":"https://openalex.org/C136764020","wikidata":"https://www.wikidata.org/wiki/Q466","display_name":"World Wide Web","level":1,"score":0.615146279335022},{"id":"https://openalex.org/C38652104","wikidata":"https://www.wikidata.org/wiki/Q3510521","display_name":"Computer security","level":1,"score":0.6047614216804504},{"id":"https://openalex.org/C108827166","wikidata":"https://www.wikidata.org/wiki/Q175975","display_name":"Internet privacy","level":1,"score":0.6009055376052856},{"id":"https://openalex.org/C2777617010","wikidata":"https://www.wikidata.org/wiki/Q18957","display_name":"Mainstream","level":2,"score":0.5959507822990417},{"id":"https://openalex.org/C41065033","wikidata":"https://www.wikidata.org/wiki/Q2825412","display_name":"Adversary","level":2,"score":0.5555524826049805},{"id":"https://openalex.org/C184842701","wikidata":"https://www.wikidata.org/wiki/Q370563","display_name":"Cloud computing security","level":3,"score":0.46118786931037903},{"id":"https://openalex.org/C2780378061","wikidata":"https://www.wikidata.org/wiki/Q25351891","display_name":"Service (business)","level":2,"score":0.4197176396846771},{"id":"https://openalex.org/C144133560","wikidata":"https://www.wikidata.org/wiki/Q4830453","display_name":"Business","level":0,"score":0.11647120118141174},{"id":"https://openalex.org/C119857082","wikidata":"https://www.wikidata.org/wiki/Q2539","display_name":"Machine learning","level":1,"score":0.0},{"id":"https://openalex.org/C27206212","wikidata":"https://www.wikidata.org/wiki/Q34178","display_name":"Theology","level":1,"score":0.0},{"id":"https://openalex.org/C138885662","wikidata":"https://www.wikidata.org/wiki/Q5891","display_name":"Philosophy","level":0,"score":0.0},{"id":"https://openalex.org/C111919701","wikidata":"https://www.wikidata.org/wiki/Q9135","display_name":"Operating system","level":1,"score":0.0},{"id":"https://openalex.org/C162853370","wikidata":"https://www.wikidata.org/wiki/Q39809","display_name":"Marketing","level":1,"score":0.0}],"mesh":[],"locations_count":1,"locations":[{"id":"doi:10.1145/2810103.2813652","is_oa":false,"landing_page_url":"https://doi.org/10.1145/2810103.2813652","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Proceedings of the 22nd ACM SIGSAC Conference on Computer and Communications Security","raw_type":"proceedings-article"}],"best_oa_location":null,"sustainable_development_goals":[{"id":"https://metadata.un.org/sdg/16","display_name":"Peace, Justice and strong institutions","score":0.7099999785423279}],"awards":[{"id":"https://openalex.org/G7641299044","display_name":null,"funder_award_id":"61100226","funder_id":"https://openalex.org/F4320321001","funder_display_name":"National Natural Science Foundation of China"}],"funders":[{"id":"https://openalex.org/F4320321001","display_name":"National Natural Science Foundation of China","ror":"https://ror.org/01h0zpd94"}],"has_content":{"grobid_xml":false,"pdf":false},"content_urls":null,"referenced_works_count":30,"referenced_works":["https://openalex.org/W81879861","https://openalex.org/W124941384","https://openalex.org/W1491356120","https://openalex.org/W1630356589","https://openalex.org/W1912565424","https://openalex.org/W1988036170","https://openalex.org/W1994588724","https://openalex.org/W2008810193","https://openalex.org/W2014390890","https://openalex.org/W2017025011","https://openalex.org/W2027538101","https://openalex.org/W2041276426","https://openalex.org/W2045057497","https://openalex.org/W2077202047","https://openalex.org/W2085577046","https://openalex.org/W2101834106","https://openalex.org/W2103370348","https://openalex.org/W2113115074","https://openalex.org/W2119249378","https://openalex.org/W2122672392","https://openalex.org/W2136954161","https://openalex.org/W2148009765","https://openalex.org/W2166743230","https://openalex.org/W2350778671","https://openalex.org/W2398354233","https://openalex.org/W2398484989","https://openalex.org/W2399891510","https://openalex.org/W2544992706","https://openalex.org/W6603356336","https://openalex.org/W6640059210"],"related_works":["https://openalex.org/W2931996793","https://openalex.org/W4205234238","https://openalex.org/W2788934790","https://openalex.org/W3167767780","https://openalex.org/W3148880067","https://openalex.org/W4205923274","https://openalex.org/W3043682580","https://openalex.org/W2941559775","https://openalex.org/W3142266060","https://openalex.org/W2811164835"],"abstract_inverted_index":{"In":[0],"this":[1,86],"paper,":[2],"we":[3,88],"report":[4],"the":[5,11,68,72,76,94,171,178,182,195],"first":[6],"large-scale,":[7],"systematic":[8],"study":[9,193],"on":[10,19],"security":[12,29,73,142,209],"qualities":[13,74],"of":[14,28,75,127,141,168,184],"emerging":[15],"push-messaging":[16,32,200],"services,":[17],"focusing":[18],"their":[20,208],"app-side":[21],"service":[22],"integrations.":[23],"We":[24],"identified":[25],"a":[26,49,62,124],"set":[27],"properties":[30],"different":[31,46,83],"services":[33,92,159,201],"(e.g.,":[34,160],"Google":[35,108],"Cloud":[36],"Messaging)":[37],"need":[38,205],"to":[39,57,70,137,151,177],"have,":[40],"and":[41,66,79,96,110,158,187,202],"automatically":[42],"verified":[43],"them":[44],"in":[45,107,113,181,198],"integrations":[47,81],"using":[48],"new":[50,139],"technique,":[51],"called":[52],"Seminal.":[53],"Seminal":[54],"is":[55],"designed":[56],"extract":[58],"semantic":[59],"information":[60,69],"from":[61],"service's":[63,77],"sample":[64],"code,":[65],"leverage":[67],"evaluate":[71],"SDKs":[78],"its":[80],"within":[82],"apps.":[84,99],"Using":[85],"tool,":[87],"studied":[89],"30":[90],"leading":[91],"around":[93],"world,":[95],"scanned":[97],"35,173":[98],"Our":[100],"findings":[101],"are":[102,118],"astonishing:":[103],"over":[104],"20%":[105],"apps":[106,112,157,180],"Play":[109],"50%":[111],"mainstream":[114],"Chinese":[115],"app":[116],"markets":[117],"riddled":[119],"with":[120],"security-critical":[121],"loopholes,":[122],"putting":[123],"huge":[125],"amount":[126],"sensitive":[128],"user":[129],"data":[130],"at":[131],"risk.":[132],"Also,":[133],"our":[134],"research":[135],"brought":[136],"light":[138],"types":[140],"flaws":[143],"never":[144],"known":[145],"before,":[146],"which":[147],"can":[148,173],"be":[149],"exploited":[150],"cause":[152],"serious":[153,196],"confusions":[154],"among":[155],"popular":[156],"Facebook,":[161],"Skype,":[162],"Yelp,":[163],"Baidu":[164],"Push).":[165],"Taking":[166],"advantage":[167],"such":[169],"confusions,":[170],"adversary":[172],"post":[174],"his":[175],"content":[176],"victim's":[179],"name":[183],"trusted":[185],"parties":[186],"intercept":[188],"her":[189],"private":[190],"messages.":[191],"The":[192],"highlights":[194],"challenges":[197],"securing":[199],"an":[203],"urgent":[204],"for":[206],"improving":[207],"qualities.":[210]},"counts_by_year":[{"year":2025,"cited_by_count":1},{"year":2024,"cited_by_count":1},{"year":2023,"cited_by_count":1},{"year":2019,"cited_by_count":1},{"year":2018,"cited_by_count":1},{"year":2017,"cited_by_count":1},{"year":2016,"cited_by_count":2}],"updated_date":"2025-11-06T03:46:38.306776","created_date":"2025-10-10T00:00:00"}
