{"id":"https://openalex.org/W2739755408","doi":"https://doi.org/10.1145/3106237.3117764","title":"When program analysis meets mobile security: an industrial study of misusing Android internet sockets","display_name":"When program analysis meets mobile security: an industrial study of misusing Android internet sockets","publication_year":2017,"publication_date":"2017-08-02","ids":{"openalex":"https://openalex.org/W2739755408","doi":"https://doi.org/10.1145/3106237.3117764","mag":"2739755408"},"language":"en","primary_location":{"id":"doi:10.1145/3106237.3117764","is_oa":false,"landing_page_url":"https://doi.org/10.1145/3106237.3117764","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Proceedings of the 2017 11th Joint Meeting on Foundations of Software Engineering","raw_type":"proceedings-article"},"type":"article","indexed_in":["crossref"],"open_access":{"is_oa":false,"oa_status":"closed","oa_url":null,"any_repository_has_fulltext":false},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5041865326","display_name":"Wenqi Bu","orcid":null},"institutions":[{"id":"https://openalex.org/I66867065","display_name":"East China Normal University","ror":"https://ror.org/02n96ep67","country_code":"CN","type":"education","lineage":["https://openalex.org/I66867065"]}],"countries":["CN"],"is_corresponding":true,"raw_author_name":"Wenqi Bu","raw_affiliation_strings":["East China Normal University, China"],"affiliations":[{"raw_affiliation_string":"East China Normal University, China","institution_ids":["https://openalex.org/I66867065"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5009850797","display_name":"Minhui Xue","orcid":"https://orcid.org/0000-0002-9172-4252"},"institutions":[{"id":"https://openalex.org/I258800397","display_name":"New York University Shanghai","ror":"https://ror.org/02vpsdb40","country_code":"CN","type":"education","lineage":["https://openalex.org/I258800397","https://openalex.org/I57206974"]},{"id":"https://openalex.org/I66867065","display_name":"East China Normal University","ror":"https://ror.org/02n96ep67","country_code":"CN","type":"education","lineage":["https://openalex.org/I66867065"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Minhui Xue","raw_affiliation_strings":["New York University Shanghai, China / East China Normal University, China"],"affiliations":[{"raw_affiliation_string":"New York University Shanghai, China / East China Normal University, China","institution_ids":["https://openalex.org/I258800397","https://openalex.org/I66867065"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5072024833","display_name":"Lihua Xu","orcid":"https://orcid.org/0000-0002-2237-9336"},"institutions":[{"id":"https://openalex.org/I66867065","display_name":"East China Normal University","ror":"https://ror.org/02n96ep67","country_code":"CN","type":"education","lineage":["https://openalex.org/I66867065"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Lihua Xu","raw_affiliation_strings":["East China Normal University, China"],"affiliations":[{"raw_affiliation_string":"East China Normal University, China","institution_ids":["https://openalex.org/I66867065"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5088790914","display_name":"Yajin Zhou","orcid":"https://orcid.org/0000-0001-7610-4736"},"institutions":[],"countries":[],"is_corresponding":false,"raw_author_name":"Yajin Zhou","raw_affiliation_strings":["n.n., n.n"],"affiliations":[{"raw_affiliation_string":"n.n., n.n","institution_ids":[]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5075267073","display_name":"Zhushou Tang","orcid":"https://orcid.org/0009-0004-4121-7799"},"institutions":[],"countries":[],"is_corresponding":false,"raw_author_name":"Zhushou Tang","raw_affiliation_strings":["Pwnzen Infotech, China"],"affiliations":[{"raw_affiliation_string":"Pwnzen Infotech, China","institution_ids":[]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5048118068","display_name":"Tao Xie","orcid":"https://orcid.org/0000-0002-6731-216X"},"institutions":[{"id":"https://openalex.org/I157725225","display_name":"University of Illinois Urbana-Champaign","ror":"https://ror.org/047426m28","country_code":"US","type":"education","lineage":["https://openalex.org/I157725225"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Tao Xie","raw_affiliation_strings":["University of Illinois at Urbana-Champaign, USA"],"affiliations":[{"raw_affiliation_string":"University of Illinois at Urbana-Champaign, USA","institution_ids":["https://openalex.org/I157725225"]}]}],"institutions":[],"countries_distinct_count":2,"institutions_distinct_count":6,"corresponding_author_ids":["https://openalex.org/A5041865326"],"corresponding_institution_ids":["https://openalex.org/I66867065"],"apc_list":null,"apc_paid":null,"fwci":0.9246,"has_fulltext":false,"cited_by_count":7,"citation_normalized_percentile":{"value":0.75415718,"is_in_top_1_percent":false,"is_in_top_10_percent":false},"cited_by_percentile_year":{"min":89,"max":97},"biblio":{"volume":null,"issue":null,"first_page":"842","last_page":"847"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T11241","display_name":"Advanced Malware Detection Techniques","score":1.0,"subfield":{"id":"https://openalex.org/subfields/1711","display_name":"Signal Processing"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T11241","display_name":"Advanced Malware Detection Techniques","score":1.0,"subfield":{"id":"https://openalex.org/subfields/1711","display_name":"Signal Processing"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T10743","display_name":"Software Testing and Debugging Techniques","score":0.9959999918937683,"subfield":{"id":"https://openalex.org/subfields/1712","display_name":"Software"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11424","display_name":"Security and Verification in Computing","score":0.9822999835014343,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/android","display_name":"Android (operating system)","score":0.7534228563308716},{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.687980592250824},{"id":"https://openalex.org/keywords/computer-security","display_name":"Computer security","score":0.584057092666626},{"id":"https://openalex.org/keywords/vulnerability","display_name":"Vulnerability (computing)","score":0.5347707867622375},{"id":"https://openalex.org/keywords/the-internet","display_name":"The Internet","score":0.5219794511795044},{"id":"https://openalex.org/keywords/vulnerability-assessment","display_name":"Vulnerability assessment","score":0.4496878683567047},{"id":"https://openalex.org/keywords/application-security","display_name":"Application security","score":0.43016675114631653},{"id":"https://openalex.org/keywords/process","display_name":"Process (computing)","score":0.42558401823043823},{"id":"https://openalex.org/keywords/mobile-device","display_name":"Mobile device","score":0.4179367125034332},{"id":"https://openalex.org/keywords/software","display_name":"Software","score":0.41156280040740967},{"id":"https://openalex.org/keywords/world-wide-web","display_name":"World Wide Web","score":0.2779943346977234},{"id":"https://openalex.org/keywords/software-security-assurance","display_name":"Software security assurance","score":0.2281462848186493},{"id":"https://openalex.org/keywords/information-security","display_name":"Information security","score":0.21192097663879395},{"id":"https://openalex.org/keywords/operating-system","display_name":"Operating system","score":0.10477015376091003}],"concepts":[{"id":"https://openalex.org/C557433098","wikidata":"https://www.wikidata.org/wiki/Q94","display_name":"Android (operating system)","level":2,"score":0.7534228563308716},{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.687980592250824},{"id":"https://openalex.org/C38652104","wikidata":"https://www.wikidata.org/wiki/Q3510521","display_name":"Computer security","level":1,"score":0.584057092666626},{"id":"https://openalex.org/C95713431","wikidata":"https://www.wikidata.org/wiki/Q631425","display_name":"Vulnerability (computing)","level":2,"score":0.5347707867622375},{"id":"https://openalex.org/C110875604","wikidata":"https://www.wikidata.org/wiki/Q75","display_name":"The Internet","level":2,"score":0.5219794511795044},{"id":"https://openalex.org/C167063184","wikidata":"https://www.wikidata.org/wiki/Q1400839","display_name":"Vulnerability assessment","level":3,"score":0.4496878683567047},{"id":"https://openalex.org/C77109596","wikidata":"https://www.wikidata.org/wiki/Q4781497","display_name":"Application security","level":5,"score":0.43016675114631653},{"id":"https://openalex.org/C98045186","wikidata":"https://www.wikidata.org/wiki/Q205663","display_name":"Process (computing)","level":2,"score":0.42558401823043823},{"id":"https://openalex.org/C186967261","wikidata":"https://www.wikidata.org/wiki/Q5082128","display_name":"Mobile device","level":2,"score":0.4179367125034332},{"id":"https://openalex.org/C2777904410","wikidata":"https://www.wikidata.org/wiki/Q7397","display_name":"Software","level":2,"score":0.41156280040740967},{"id":"https://openalex.org/C136764020","wikidata":"https://www.wikidata.org/wiki/Q466","display_name":"World Wide Web","level":1,"score":0.2779943346977234},{"id":"https://openalex.org/C62913178","wikidata":"https://www.wikidata.org/wiki/Q7554361","display_name":"Software security assurance","level":4,"score":0.2281462848186493},{"id":"https://openalex.org/C527648132","wikidata":"https://www.wikidata.org/wiki/Q189900","display_name":"Information security","level":2,"score":0.21192097663879395},{"id":"https://openalex.org/C111919701","wikidata":"https://www.wikidata.org/wiki/Q9135","display_name":"Operating system","level":1,"score":0.10477015376091003},{"id":"https://openalex.org/C542102704","wikidata":"https://www.wikidata.org/wiki/Q183257","display_name":"Psychotherapist","level":1,"score":0.0},{"id":"https://openalex.org/C29983905","wikidata":"https://www.wikidata.org/wiki/Q7445066","display_name":"Security service","level":3,"score":0.0},{"id":"https://openalex.org/C137176749","wikidata":"https://www.wikidata.org/wiki/Q4105337","display_name":"Psychological resilience","level":2,"score":0.0},{"id":"https://openalex.org/C15744967","wikidata":"https://www.wikidata.org/wiki/Q9418","display_name":"Psychology","level":0,"score":0.0}],"mesh":[],"locations_count":1,"locations":[{"id":"doi:10.1145/3106237.3117764","is_oa":false,"landing_page_url":"https://doi.org/10.1145/3106237.3117764","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Proceedings of the 2017 11th Joint Meeting on Foundations of Software Engineering","raw_type":"proceedings-article"}],"best_oa_location":null,"sustainable_development_goals":[],"awards":[{"id":"https://openalex.org/G6899802838","display_name":null,"funder_award_id":"61502170","funder_id":"https://openalex.org/F4320321001","funder_display_name":"National Natural Science Foundation of China"}],"funders":[{"id":"https://openalex.org/F4320321001","display_name":"National Natural Science Foundation of China","ror":"https://ror.org/01h0zpd94"}],"has_content":{"grobid_xml":false,"pdf":false},"content_urls":null,"referenced_works_count":7,"referenced_works":["https://openalex.org/W1963971515","https://openalex.org/W2027538101","https://openalex.org/W2077202047","https://openalex.org/W2140095007","https://openalex.org/W2166743230","https://openalex.org/W2532201797","https://openalex.org/W2733764866"],"related_works":["https://openalex.org/W1883246888","https://openalex.org/W2370114625","https://openalex.org/W1756374135","https://openalex.org/W2062873522","https://openalex.org/W2947584067","https://openalex.org/W2280562859","https://openalex.org/W230721595","https://openalex.org/W3157230915","https://openalex.org/W1496728123","https://openalex.org/W2789975780"],"abstract_inverted_index":{"Despite":[0],"recent":[1],"progress":[2],"in":[3,10,37,68,88,140,159,208],"program":[4],"analysis":[5,104],"techniques":[6,20],"to":[7,21,42,106,124,144,190],"identify":[8,176],"vulnerabilities":[9,180,198],"Android":[11],"apps,":[12],"significant":[13],"challenges":[14],"still":[15],"remain":[16],"for":[17,138,223],"applying":[18],"these":[19,196],"large-scale":[22],"industrial":[23,70,90],"environments.":[24],"Modern":[25],"software-security":[26],"providers,":[27],"such":[28],"as":[29],"Qihoo":[30],"360":[31],"and":[32,60,135,149,163,177,193,219],"Pwnzen":[33,169],"(two":[34],"leading":[35],"companies":[36],"China),":[38],"are":[39,199],"often":[40],"required":[41],"process":[43,97],"more":[44],"than":[45],"10":[46],"million":[47,213],"mobile":[48],"apps":[49,102,117,139,184,203],"at":[50],"each":[51,141,205],"run.":[52],"In":[53,92],"this":[54,74],"work,":[55],"we":[56,76,94,175],"focus":[57],"on":[58,119,128,152,167],"effectively":[59],"efficiently":[61],"identifying":[62],"vulnerable":[63,101,116,183],"usage":[64],"of":[65,98,121,181,195,204],"Internet":[66],"sockets":[67],"an":[69],"setting.":[71,91],"To":[72],"achieve":[73],"goal,":[75],"propose":[77,217],"a":[78,160],"practical":[79,161],"hybrid":[80],"approach":[81,158],"that":[82],"enables":[83],"lightweight":[84],"yet":[85],"precise":[86,153],"detection":[87],"the":[89,96,108,126,146,165,168,173],"particular,":[93],"integrate":[95,133],"categorizing":[99],"potential":[100,115,179],"with":[103],"techniques,":[105],"reduce":[107,125],"inevitable":[109],"human":[110],"inspection":[111],"effort.":[112],"We":[113,131,155,215],"categorize":[114],"based":[118],"characteristics":[120],"vulnerability":[122,188,206],"signatures,":[123],"burden":[127],"static":[129,134],"analysis.":[130],"flexibly":[132],"dynamic":[136],"analyses":[137],"identified":[142],"family,":[143],"refine":[145],"family":[147,207],"signatures":[148],"hence":[150],"target":[151],"detection.":[154],"implement":[156],"our":[157],"system":[162,166],"deploy":[164],"platform.":[170],"By":[171],"using":[172],"system,":[174],"report":[178],"24":[182],"(falling":[185],"into":[186],"3":[187],"families)":[189],"their":[191],"developers,":[192],"some":[194],"reported":[197],"previously":[200],"unknown.":[201],"The":[202],"total":[209],"have":[210],"over":[211],"50":[212],"downloads.":[214],"also":[216],"countermeasures":[218],"highlight":[220],"promising":[221],"directions":[222],"technology":[224],"transfer.":[225]},"counts_by_year":[{"year":2022,"cited_by_count":1},{"year":2021,"cited_by_count":1},{"year":2020,"cited_by_count":3},{"year":2018,"cited_by_count":1},{"year":2017,"cited_by_count":1}],"updated_date":"2025-11-06T03:46:38.306776","created_date":"2025-10-10T00:00:00"}
