scholarly journals Risk Measurement Method of Collusion Privilege Escalation Attacks for Android Apps Based on Feature Weight and Behavior Determination

2021 ◽  
Vol 2021 ◽  
pp. 1-18
Author(s):  
Hui Li ◽  
Limin Shen ◽  
Yuying Wang ◽  
Jiayin Feng ◽  
Honglei Tan ◽  
...  

To solve the issue of measuring the risk of the application-layer collusion privilege escalation attacks in Android apps, this paper proposed a risk measurement method based on the feature weight and behavior determination. Analytic hierarchy process (AHP) is used to calculate the weight of feature in the feature set extracted from the app. App behavior and attack behavior are modeled by process algebra. The weak equivalent and nonequivalent are introduced to determine the behavior of apps, whereas the measurement function is constructed to calculate the app risk measurement value. In an experiment with three known apps, the measurement values are 0.629, 1, and 0.976. These results are consistent with reality, and the effectiveness and feasibility of the proposed method are verified. Through the benchmark and test set experiments, it can be seen that the measurement value of apps that has weak equivalent to attack behavior is distributed between 0.0468 and 1, and the measurement value distribution is reasonable, which verifies the accuracy and rationality of the method.

Information ◽  
2020 ◽  
Vol 11 (6) ◽  
pp. 293
Author(s):  
Limin Shen ◽  
Hui Li ◽  
Hongyi Wang ◽  
Yihuan Wang ◽  
Jiayin Feng ◽  
...  

On the Android platform, information leakage can use an application-layer privilege escalation attack composed of multi-app collusion. However, the detection effect of a single app that can construct privilege escalation attacks is not good. Furthermore, the existing software and app measurement methods are not applicable to the measurement of collusion privilege escalation attacks. We propose a method for measuring the risk of a single app by using process algebra to model and determine the attack behavior, and we construct a measurement function based on sensitive data transitions and the feature set of attack behavior. Through the analysis of the privilege escalation attack model, the feature set of attack behavior is obtained. Then, based on the extracted behavior feature set, process algebra is used to model the dangerous behavior of an app. The dangerous behavior of the app is determined by weak equivalence and non-equivalence, and finally the risk of the app is measured based on the measurement function. Three known applications are used to verify the attack, and the risk measurement values are above 0.98. Based on the classification of applications on the market, we select typical apps in each category to build the test set. Benchmark tests and test set experiments show that the risk measurement results are consistent with the actual detection results, verifying the feasibility and effectiveness of this method.


2019 ◽  
Vol 11 (19) ◽  
pp. 5184
Author(s):  
Bo-Rui Yan ◽  
Qian-Li Dong ◽  
Qian Li

International capacity cooperation is easily affected by the interweaving of its internal and external environment. As the risk accumulation exceeds the threshold, a supply chain crisis and even emergency will occur and serious losses will be caused. Regarding multinational operation and international capacity cooperation, 208 cases were summarized to identify risk types and high-incidence areas, and a risk measurement index system was established. A Fuzzy AHP (Analytic Hierarchy Process) method was used to evaluate the importance of each risk index. It was found that country risk was the main cause of supply chain emergencies in international capacity cooperation. Construction, water and electricity supply, mining and manufacturing were major areas of emergencies. In international capacity cooperation, country risk and cross-cultural risk were more important in external risks, while in internal risk, financial risk and decision risk were more important.


2014 ◽  
Vol 571-572 ◽  
pp. 1129-1132
Author(s):  
Tao Xu

Fuzzy Analytic Hierarchy Process (FAHP) has been applied widely in risk measurement. In this paper, we have applied FAHP to the risk measurement of an e-commerce business. The results indicate that FAHP can reveal more details of risks. It is also helpful for the e-commerce businesses to improve their risk management process.


SISFORMA ◽  
2020 ◽  
Vol 7 (2) ◽  
pp. 49
Author(s):  
Balqis Rofiqoh Chasanah ◽  
Candiwan Candiwan

Internet-based attacks have become common and are expected to happen continuously with the development of technology. Therefore, cybersecurity emerged as an important concept in everyday life. It is defined as the protection of cyberspace. Cybersecurity Awareness (CSA) exists as a major defense key in protecting users and systems from internet-based attacks. The research presented in this study aims to assess the level of CSA among college students in Indonesia. This study uses the Analytic Hierarchy Process (AHP) method to test students in three dimensions, including attitudes, knowledge, and behavior. To measure this dimension, six focus areas in the topic of cybersecurity were taken and developed from previous studies on the same topic. The six focus areas are password security, cyberbullying, phishing, malware, identity theft, and the last is downloading, sharing and use of pirated content. The results showed that the total level of CSA for college students in Indonesia was in the good criteria. This is indicated by a total percentage of awareness around 80%. Nevertheless there are some focus areas that can be improved to increase the percentage.


2012 ◽  
Vol 7 (3) ◽  
pp. 182-193
Author(s):  
Geun-Ho Lee ◽  
Chul-Min Kwon ◽  
Akihiro Ikeda ◽  
Nak-Young Chong

2019 ◽  
Vol 10 (2) ◽  
pp. 139-146
Author(s):  
Maitri Purnama Sari ◽  
Didi Sundiman

The purpose of this research was to find out the risks influenced the field of business for social enterprises, and how these risks affected the aspects of social enterprise. This research used a qualitative research approach. The data analyzed in this research were the results of questionnaires and interviews with 17 informants from the vegetarian restaurants in Batam. The results of the questionnaire were processed using Analytic Hierarchy Process (AHP) as analytical tools. This research used descriptive statistical analysis techniques as a data analysis. The results show that the risks examined in this research influence financial losses, image, growth, and quality of the organization. The intention and behavior risk has the highest effect, while financial risk is the lowest.


Sign in / Sign up

Export Citation Format

Share Document