Javascript must be enabled to continue!
Dynamic Analysis of Android Apps written with PhoneGap Cross-Platform Framework
View through CrossRef
In this paper, we propose an effective technique that can perform dynamic analysis
for Android appwritten with PhoneGap cross-platform framework. For a systematic study,
we have written a maliciousAndroid app using PhoneGap framework. We compare the
structural differences between abasic Android app (a native app) and the other malicious
Android app built in release mode on Phone-Gap framework, and also analyze the malicious
app dynamically. The proposed technique first copiesthe web root directory of the target
malicious app into a writable directory inside the smartphone.When the app is executed,
its web pages and Javascript files are loaded from the copied directoryusing a dynamic
instrumentation. Finally, we dynamically change the flag for WebView debuggingso that a
remote debugger can successfully be attached to the app built in release mode. Using
ourproposed technique, a malware analyst can debug a malicious PhoneGap app built in
release modewithout repackaging, which cannot be debugged as it is by Chrome remote
debugger. She/he canalso utilize the debugging features supported by the remote
debugger. The technique allows the analystto bypass the repackaging detection method
that malicious apps use to avoid antivirus detection.
Centre for Continental Network in Eco-Innovation and Research
Title: Dynamic Analysis of Android Apps written with PhoneGap Cross-Platform
Framework
Description:
In this paper, we propose an effective technique that can perform dynamic analysis
for Android appwritten with PhoneGap cross-platform framework.
For a systematic study,
we have written a maliciousAndroid app using PhoneGap framework.
We compare the
structural differences between abasic Android app (a native app) and the other malicious
Android app built in release mode on Phone-Gap framework, and also analyze the malicious
app dynamically.
The proposed technique first copiesthe web root directory of the target
malicious app into a writable directory inside the smartphone.
When the app is executed,
its web pages and Javascript files are loaded from the copied directoryusing a dynamic
instrumentation.
Finally, we dynamically change the flag for WebView debuggingso that a
remote debugger can successfully be attached to the app built in release mode.
Using
ourproposed technique, a malware analyst can debug a malicious PhoneGap app built in
release modewithout repackaging, which cannot be debugged as it is by Chrome remote
debugger.
She/he canalso utilize the debugging features supported by the remote
debugger.
The technique allows the analystto bypass the repackaging detection method
that malicious apps use to avoid antivirus detection.
Related Results
Playing Pregnancy: The Ludification and Gamification of Expectant Motherhood in Smartphone Apps
Playing Pregnancy: The Ludification and Gamification of Expectant Motherhood in Smartphone Apps
IntroductionLike other forms of embodiment, pregnancy has increasingly become subject to representation and interpretation via digital technologies. Pregnancy and the unborn entity...
Abstract B9: Smartphone applications as a source of cancer information
Abstract B9: Smartphone applications as a source of cancer information
Abstract
The increasing popularity and advent of newer, better and relevant application programs (apps) has made smart phones an important source of healthcare infor...
Usage of Mobile Apps to support Active Transportation: Scoping Review (Preprint)
Usage of Mobile Apps to support Active Transportation: Scoping Review (Preprint)
BACKGROUND
The World Health Organization recommends 150-300 minutes of physical activity per week to lower health risks caused by sedentary behavior. Incorp...
Assessing the Quality, Privacy, and Security of Breast Cancer Apps for Arabic Speakers: Systematic Search and Review of Smartphone Apps
Assessing the Quality, Privacy, and Security of Breast Cancer Apps for Arabic Speakers: Systematic Search and Review of Smartphone Apps
Background
Breast cancer is a widespread disease, and its incidence is rapidly increasing in the Middle East and North Africa region. With the increasing availa...
Assessing the Quality, Privacy, and Security of Breast Cancer Apps for Arabic Speakers: Systematic Search and Review of Smartphone Apps (Preprint)
Assessing the Quality, Privacy, and Security of Breast Cancer Apps for Arabic Speakers: Systematic Search and Review of Smartphone Apps (Preprint)
BACKGROUND
Breast cancer is a widespread disease, and its incidence is rapidly increasing in the Middle East and North Africa region. With the increasing av...
CONCEPT TO COMPLETION - ANDROID APPS AND KOTLIN MULTI PLATFORM
CONCEPT TO COMPLETION - ANDROID APPS AND KOTLIN MULTI PLATFORM
“Concept to Completion: Android Apps and Kotlin Multiplatform” is a comprehensive guide designed to take you from the fundamentals of Android development to advanced multiplatform ...
CREATING LEARNING MEDIA IN TEACHING ENGLISH AT SMP MUHAMMADIYAH 2 PAGELARAN ACADEMIC YEAR 2020/2021
CREATING LEARNING MEDIA IN TEACHING ENGLISH AT SMP MUHAMMADIYAH 2 PAGELARAN ACADEMIC YEAR 2020/2021
The pandemic Covid-19 currently demands teachers to be able to use technology in teaching and learning process. But in reality there are still many teachers who have not been able ...
Self-Management Apps for People With Epilepsy: Systematic Analysis (Preprint)
Self-Management Apps for People With Epilepsy: Systematic Analysis (Preprint)
BACKGROUND
Patients with epilepsy (PWEs) are motivated to manage and cope with their disorder themselves (ie, self-management [SM] is encouraged). Mobile he...

