Security analysis of menstruation cycle tracking applications using static, dynamic and machine learning techniques

被引:2
|
作者
Deverashetti, Mounika [1 ]
Ranjitha, K. [1 ]
Pradeepthi, K., V [1 ]
机构
[1] CR Rao Adv Inst Math Stat & Comp Sci, Hyderabad, Telengana, India
基金
中国国家自然科学基金;
关键词
Period/menstruation cycle tracking apps; Android apps; Static analysis; Dynamic analysis; Permission based; Machine learning; FORENSIC ANALYSIS; ANDROID APPS;
D O I
10.1016/j.jisa.2022.103171
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
There have been many incidents in the past, where user's private information, health and vitals, shared to a mobile app have been disclosed. In this paper, we consider Menstruation Cycle Tracking Android apps, and analyse their security features to understand if the app developers have taken adequate care to avoid such incidents of breach or disclosure. These apps store extremely personal information of women and need to take security very seriously. We have initially applied Static Analysis techniques on these apps, and understood the various loopholes from the developer's prospective. Moreover, we used Dynamic Analysis techniques to further scrutinise the apps and exploit the discovered vulnerabilities. We found many apps are not observant in implementing minimal security features. Further, we propose a machine learning based-Ranking and Extraction of Android Permissions (REAP) framework, where we extract the permissions of these apps and apply Classification and Clustering algorithms to aid in identifying apps that are seeking more permissions and are potentially more risky. Classification accuracy of 94.52% was achieved using Naive Bayes classifier. Menstruation cycle tracking apps carry extremely private information, however, the app developers, sometimes, fail to provide a secure environment to the end-users.
引用
收藏
页数:13
相关论文
共 50 条
  • [41] Dynamic model to characterise sectors using machine learning techniques
    Perez Moreno, Francisco
    Gomez Comendador, Victor Fernando
    Jurado, Raquel Delgado-Aguilera
    Zamarreno Suarez, Maria
    Janisch, Dominik
    Arnaldo Valdes, Rosa Maria
    AIRCRAFT ENGINEERING AND AEROSPACE TECHNOLOGY, 2022, 94 (09): : 1537 - 1545
  • [42] Identification of nonlinear dynamic system using machine learning techniques
    Samal D.
    Bisoi R.
    Sahu B.
    International Journal of Power and Energy Conversion, 2021, 12 (01) : 23 - 43
  • [43] Analysis of Security of Split Manufacturing Using Machine Learning
    Zeng, Wei
    Zhang, Boyu
    Davoodi, Azadeh
    IEEE TRANSACTIONS ON VERY LARGE SCALE INTEGRATION (VLSI) SYSTEMS, 2019, 27 (12) : 2767 - 2780
  • [44] Analysis of Security of Split Manufacturing using Machine Learning
    Zhang, Boyu
    Magana, Jonathon Crandall
    Davoodi, Azadeh
    2018 55TH ACM/ESDA/IEEE DESIGN AUTOMATION CONFERENCE (DAC), 2018,
  • [45] Knowledge Discovery in Engineering Applications Using Machine Learning Techniques
    Kubik, Christian
    Molitor, Dirk Alexander
    Becker, Marco
    Groche, Peter
    JOURNAL OF MANUFACTURING SCIENCE AND ENGINEERING-TRANSACTIONS OF THE ASME, 2022, 144 (09):
  • [46] Static analysis for the π-calculus with applications to security
    Bodei, C
    Degano, P
    Nielson, F
    Nielson, HR
    INFORMATION AND COMPUTATION, 2001, 168 (01) : 68 - 92
  • [47] Analysis of Machine Learning Techniques for Information Classification in Mobile Applications
    Arteaga, Sandra Perez
    Orozco, Ana Lucila Sandoval
    Villalba, Luis Javier Garcia
    APPLIED SCIENCES-BASEL, 2023, 13 (09):
  • [48] Evaluation of Machine Learning Techniques for Security in SDN
    Ahmad, Ahnaf
    Harjula, Erkki
    Ylianttila, Mika
    Ahmad, Ijaz
    2020 IEEE GLOBECOM WORKSHOPS (GC WKSHPS), 2020,
  • [49] Machine learning-based physical layer security: techniques, open challenges, and applications
    Anil Kumar Kamboj
    Poonam Jindal
    Pankaj Verma
    Wireless Networks, 2021, 27 : 5351 - 5383
  • [50] Machine learning-based physical layer security: techniques, open challenges, and applications
    Kamboj, Anil Kumar
    Jindal, Poonam
    Verma, Pankaj
    WIRELESS NETWORKS, 2021, 27 (08) : 5351 - 5383