(Press-News.org) Researchers from North Carolina State University have developed a new tool to detect and contain malware that attempts root exploits in Android devices. The tool improves on previous techniques by targeting code written in the C programming language – which is often used to create root exploit malware, whereas the bulk of Android applications are written in Java.
Root exploits take over the system administration functions of an operating system, such as Android. A successful Android root exploit effectively gives hackers unfettered control of a user's smartphone.
The new security tool is called Practical Root Exploit Containment (PREC). It refines an existing technique called anomaly detection, which compares the behavior of a downloaded smartphone application (or app), such as Angry Birds, with a database of how the application should be expected to behave.
When deviations from normal behavior are detected, PREC analyzes them to determine if they are malware or harmless "false positives." If PREC determines that an app is attempting root exploit, it effectively contains the malicious code and prevents it from being executed.
"Anomaly detection isn't new, and it has a problematic history of reporting a lot of false positives," says Dr. Will Enck, an assistant professor of computer science at NC State and co-author of a paper on the work. "What sets our approach apart is that we are focusing solely on C code, which is what most – if not all – Android root exploits are written in."
"Taking this approach has significantly driven down the number of false positives," says Dr. Helen Gu, an associate professor of computer science at NC State and co-author of the paper. "This reduces disturbances for users and makes anomaly detection more practical."
The researchers are hoping to work with app vendors, such as Google Play, to establish a database of normal app behavior.
Most app vendors screen their products for malware, but malware programmers have developed techniques for avoiding detection – hiding the malware until users have downloaded the app and run it on their smartphones.
The NC State research team wants to take advantage of established vendor screening efforts to create a database of each app's normal behavior. This could be done by having vendors incorporate PREC software into their app assessment processes. The software would take the app behavior data and create an external database, but would not otherwise affect the screening process.
"We have already implemented the PREC system and tested it on real Android devices," Gu says. "We are now looking for industry partners to deploy PREC, so that we can protect Android users from root exploits."
INFORMATION:
The paper, "PREC: Practical Root Exploit Containment for Android Devices," will be presented at the Fourth ACM Conference on Data and Application Security and Privacy being held March 3-5 in San Antonio, Texas. Lead author of the paper is former NC State graduate student Tsung-Hsuan Ho. The paper was co-authored by Daniel Dean, a Ph.D. student in Gu's lab at NC State.
The work was supported by the National Security Agency; U.S. Army Research Office grant W911NF-10-1-0273; National Science Foundation grants CNS-1149445, CNS-1253346, and CNS-1222680; IBM Faculty Awards and Google Research Awards.
New technique targets C code to spot, contain malware attacks
2014-03-04
ELSE PRESS RELEASES FROM THIS DATE:
Prevalence of allergies the same, regardless of where you live
2014-03-04
In the largest, most comprehensive, nationwide study to examine the prevalence of allergies from early childhood to old age, scientists from the National Institutes of Health report that allergy prevalence is the same across different regions of the United States, except in children 5 years and younger.
"Before this study, if you would have asked 10 allergy specialists if allergy prevalence varied depending on where people live, all 10 of them would have said yes, because allergen exposures tend to be more common in certain regions of the U.S.," said Darryl Zeldin, M.D., ...
NASA satellite sees Faxai hit typhoon strength
2014-03-04
NASA's Aqua satellite captured an image of the tropical cyclone called Faxai as it reached typhoon strength in the Northwestern Pacific Ocean today, March 4.
On March 4 at 1500 UTC/10 a.m. EST, Tropical cyclone Faxai reached typhoon strength with maximum sustained winds near 65 knots/74.8 mph/120.4 kph. It was centered near 18.2 north and 151.6 east, about 429 nautical miles east-northeast of Andersen Air Force Base, Guam. Faxai was moving to the north-northeast at 16 knots/18.4 mph/29.6 kph.
On March 4 at 03:05 UTC, the Moderate Resolution Imaging Spectroradiometer ...
'Gaydar' revisited
2014-03-04
A recent study sheds new light on the phenomenon known as "gaydar," or the ability to determine another person's sexual orientation.
The study found that women who identified as lesbians were better at detecting sexual orientation in other women, but that straight women were more attune to detecting emotion and personality in their peers.
Led by Northeastern University doctoral candidate Mollie Ruben, with assistance from psychology professor Judith Hall and visiting professor of marketing Krista Hill, this isn't the first study to look at "gaydar," but it is one of ...
Alzheimer's in a dish
2014-03-04
Harvard stem cell scientists have successfully converted skins cells from patients with early-onset Alzheimer's into the types of neurons that are affected by the disease, making it possible for the first time to study this leading form of dementia in living human cells. This may also make it possible to develop therapies far more quickly and accurately than before.
The research, led by Tracy Young-Pearse, PhD, and published in the journal Human Molecular Genetics, confirmed what had long been observed in mouse models—that the mutations associated with early-onset Alzheimer's ...
HIV/STI prevention program in Haiti is changing and saving lives
2014-03-04
TORONTO, ON - New research from the University of Toronto shows that a little training can go a long way in a desperate situation.
Carmen Logie, assistant professor in the Factor-Inwentash Faculty of Social Work, demonstrated that marginalized and displaced women in Leogane, Haiti, can measurably impact mental and sexual health behaviours in their village. Leogane was at the epicentre of a 2010 earthquake that displaced entire populations and led to the collapse of business, social and health infrastructure throughout the country.
"By bringing women together for six ...
A new study reveals the nutrition, cost and safety benefits of canned foods
2014-03-04
Washington, D.C., March 4, 2014 – A new study published in the American Journal of Lifestyle Medicine addresses the common call to action from public health experts to improve access to and consumption of fruits and vegetables. Findings from the Michigan State University (MSU) study show that canned foods deliver on nutrition, affordability and safety helping people increase their fruit and vegetable intake, regardless of geography or income level.
The study, "Nutrition and Cost Comparisons of Select Canned, Frozen and Fresh Fruits and Vegetables" analyzed more than 40 ...
NASA satellite catches last glimpse of Kofi as a tropical cyclone
2014-03-04
Tropical Cyclone Kofi was becoming an extra-tropical storm on March 3 and NASA's Terra satellite captured its last hours as a tropical system.
The Moderate Resolution Imaging Spectroradiometer, or MODIS for short captured an image of Tropical Cyclone Kofi in the South Pacific Ocean on March 3 at 21:50 UTC before it made the total transition into an extra-tropical storm. MODIS is one of the instruments that flies aboard NASA's Terra satellite. The MODIS image showed that despite transitioning, Kofi still had good circulation. The highest and strongest thunderstorms appeared ...
Brandeis University researchers illuminate key structure in heart cells
2014-03-04
Brandeis University researchers have unlocked a controversial structure in heart cells responsible for regulating heart contractions.
For years, scientists have debated how many KCNE1 proteins are required to build a potassium ion channel, theorizing anywhere between one and 14. Now, Brandeis University researchers found that these channels are built with two E1s. Understanding the construction of this channel is key to understanding life-threatening heart conditions, such as arrhythmias, and developing drugs to threat those conditions.
This report challenges a previous ...
Off with your glasses
2014-03-04
Middle-aged adults who suddenly need reading glasses, patients with traumatic brain injuries, and people with visual disorders such as "lazy eye" may have one thing in common --"visual crowding," an inability to recognize individual items surrounded by multiple objects. Visual crowding makes it impossible to read, as single letters within words are rendered illegible. And basic cognitive functions such as facial recognition can also be significantly hampered. Scientists and clinicians currently attribute crowding to a disorder in peripheral vision.
Now Prof. Uri Polat, ...
CHOP researcher finds more genetic signals linking weight and heart health risk factors
2014-03-04
Two recent genetic studies expand the list of genes involved with body fat and body mass index, and their connection to major Western health problems: heart disease, high blood pressure and diabetes. One study showed that higher body mass index (BMI) caused harmful effects on the risk of type 2 diabetes, high blood pressure and inflammation, while another study found gene signals linked to higher levels of body fat metrics, without showing causality.
"These findings are highly relevant to the obesity pandemic in the United States and many other countries," said geneticist ...