تخطي إلى التنقل الرئيسي تخطي إلى البحث تخطي إلى المحتوى الرئيسي

ApkFuzz: Search-Based Fuzzing for Android APK Vulnerability Discovery

نتاج البحث: فصل من :كتاب / تقرير / مؤتمرمنشور من مؤتمرمراجعة النظراء

ملخص

While most work focuses on executable code, AndroidManifest.xml, serves as the primary entry point for application metadata and permission logic. Yet, it is often overlooked, making it a high-trust, low-scrutiny attack surface. We present ApkFuzz, an AFL-based fuzzer with bit-level mutations targeting the encoded region of AndroidManifest.xml in the APK file. We have identified 9 issues that cause crashes and enable Denial-of-Service (DoS) attacks in core tools, including Google’s apksigner and the widely used research tool DroidBot.

اللغة الأصليةالإنجليزيّة
عنوان منشور المضيفSearch-Based Software Engineering - 18th International Symposium, SSBSE 2026, Proceedings
المحررونWesley K.G. Assunção, Mijung Kim, Ali Ouni
ناشرSpringer Science and Business Media Deutschland GmbH
الصفحات135-141
عدد الصفحات7
رقم المعيار الدولي للكتب (المطبوع)9783032306982
المعرِّفات الرقمية للأشياء
حالة النشرنُشِر - 2027
الحدث18th International Symposium on Search-Based Software Engineering, SSBSE 2026 - Montreal, كندا
المدة: 5 يوليو 20266 يوليو 2026

سلسلة المنشورات

الاسمLecture Notes in Computer Science
مستوى الصوت16699 LNCS
رقم المعيار الدولي للدوريات (المطبوع)0302-9743
رقم المعيار الدولي للدوريات (الإلكتروني)1611-3349

!!Conference

!!Conference18th International Symposium on Search-Based Software Engineering, SSBSE 2026
الدولة/الإقليمكندا
المدينةMontreal
المدة5/07/266/07/26

بصمة

أدرس بدقة موضوعات البحث “ApkFuzz: Search-Based Fuzzing for Android APK Vulnerability Discovery'. فهما يشكلان معًا بصمة فريدة.

قم بذكر هذا