Though API methods offer a huge number of advantages, their use by malicious applications could be potentially dangerous. Especially since the use of such methods by malicious applications is not necessarily detected as a malware action. This study focuses on a class of applications that are malicious only in some contexts. The latter could be created by a single application or through collaboration between several applications. This thesis suggests an approach based on rewriting applications (an application rewriting Framework). This enables the injection of certain portions of code which are responsible for communication with a controller of applications. Said controller is a third party Android application which is mainly based on security policies to control all applications in real time. The results obtained show that the solution put forward in this study is able to control all API calls made by malicious applications and prevent the collaboration between these applications for any attempt to create malicious contexts.
| Date | 17 Mar 2016 |
|---|
| Original language | French |
|---|
| Awarding Institution | - École de technologie supérieure
|
|---|
| Supervisor | Chamseddine Talhi (Supervisor) & Ghizlane El Boussaidi (Co-supervisor) |
|---|
Boudar, O. (Author),
Talhi (Supervisor) & Boussaidi (Co-supervisor),
17 Mar 2016Student thesis: Master's thesis › Master in Engineering: Information Technology Engineering