GeneDroid Fuzz: An Android Intent Fuzzing Method Based on Gene Mutation

  • Runfeng Lu
  • , Yuzhu Sun
  • , Haofeng Sun
  • , Xiao Fu
  • , Bin Luo
  • , Xiaojiang Du
  • , Jin Shi
  • , Nadjib Aitsaadi
  • , Mohsen Guizani

Research output: Chapter in Book/Report/Conference proceedingConference contributionpeer-review

Abstract

With the rapid expansion of mobile internet usage, the prevalence of the Android operating system on smartphones is steadily growing. However, improper utilization of the Intent mechanism within Android applications can result in security vulnerabilities. Presently, the majority of Android security testing methods, which rely heavily on fuzzing, are predominantly focused on UI interactions, lacking sufficient testing capabilities for Intents. The motivation of this paper is to find a more effective testing method to improve the security detection capabilities of Intents. This paper introduces an Intent fuzzing method based on genetic mutation principles. Initially, we establish an Intent seed library using a text classification model, followed by employing Jaccard distance and minimum edit distance to refine high-quality seeds. Subsequently, we augment the seeds through extensive mutation using genetic algorithms, generating numerous test cases that exhibit structural similarity but contain varied content. During testing, we compare the state before and after Intent testing using image similarity to detect anomalies. Experimental results demonstrate that this method effectively enhances test coverage and identifies potential issues in edge cases. This approach offers an efficient means of conducting Intent security testing and enhances Android app robustness and security.

Original languageEnglish
Title of host publicationGLOBECOM 2024 - 2024 IEEE Global Communications Conference
Pages3733-3738
Number of pages6
ISBN (Electronic)9798350351255
DOIs
StatePublished - 2024
Event2024 IEEE Global Communications Conference, GLOBECOM 2024 - Cape Town, South Africa
Duration: 8 Dec 202412 Dec 2024

Publication series

NameProceedings - IEEE Global Communications Conference, GLOBECOM
ISSN (Print)2334-0983
ISSN (Electronic)2576-6813

Conference

Conference2024 IEEE Global Communications Conference, GLOBECOM 2024
Country/TerritorySouth Africa
CityCape Town
Period8/12/2412/12/24

Keywords

  • Android
  • Fuzzing
  • Gene Mutation
  • Intent

Fingerprint

Dive into the research topics of 'GeneDroid Fuzz: An Android Intent Fuzzing Method Based on Gene Mutation'. Together they form a unique fingerprint.

Cite this