This is a non-IMPACT record, meaning that access to the data is not controlled by IMPACT. For access, see the directions below.

Disclaimer:
This Resource is offered and provided outside of the IMPACT mediation framework. IMPACT and the IMPACT Coordination Council/Blackfire Technology, Inc. expressly disclaim all conditions, representations and warranties including but not limited to Resource availability, quality, accuracy, non-infringement, and non-interference. All Resource information and access is controlled by entities and under terms that are external to the IMPACT legal framework.

Summary

DS-1341
SandDroid
External Dataset
External Data Source
Xi'an Jiaotong University
Unknown
Unknown
56 (lowest rank is 56)

Category & Restrictions

Other
application layer security, cyber defense, wireless, network data, mobile software
Unrestricted
Unknown

Description


SandDroid is an automatic Android application analysis system

Features of SandDroid:

Static Analysis:
Basic Information Extraction: file size, file hash, package name, SDK version, etc
Certification Analysis: Parse the certification and check if it's from AOSP.
Category Analysis: Classify the APK to different categories based on the permission information
Permission Analysis: Extract permissions (include customized permissions) and detect if the declared permission is used
Component Analysis: List all the components (include dynamically registered broadcast receivers) and analyze if the component is exported
Code Feature Analysis: Check native code, java reflection, dynamic loader usage
Advertisement Module Analysis: Extract all the advertisement modules
Sensitive API Analysis: List all the sensitive APIs and the caller code path


Dynamic Analysis:
Network Data Record: capture all the network data during the APK's running period
Http Data Recovery: recover data from http flow
IP Distribution Analysis: parse IP information based on the extracted URLs
File Operation Monitor: record file path and data
SMS & Phone Call Monitor: record sms sent and phone call
SMS Block Monitor: record sms block behavior
Crypto Operation Monitor: record crypto usage
Data Leakage Monitor: data leakage

Comprehensive Analysis:
Risky Behaviors Summary: list risky behaviors
Risk Score: Calculate the risk score based on the static and dynamic analysis result

Additional Details

N/A
false
Unknown
sanddroid, 1341, external data source, inferlink, corporation, source, external, inferlink corporation, analysis, application, android, system, automatic, monitor, file, sms, permission, list, code, based, dynamic, extract, sensitive, network, phone, http, leakage, crypto, certification, include, check, operation, path, risky, score, usage, permissions, advertisement, block, risk, apk, behaviors, component, parse, static, call, native, feature, urls, running, result, loader, comprehensive, categories, behavior, declared, category, exported, summary, caller, recover, receivers, distribution, extraction, capture, module, aosp, reflection, package, period, flow, calculate, api, java, features, extracted, dynamically, modules, size, recovery, detect, version, customized, other, components, classify, broadcast, hash, basic, sdk, analyze, apis, registered