跳到主要导航 跳到搜索 跳到主要内容

The arts and crafts of android adware across a decade

  • Chao Wang
  • , Tianming Liu
  • , Yanjie Zhao
  • , Lin Zhang
  • , Xiaoning Du
  • , Li Li
  • , Haoyu Wang*
  • *此作品的通讯作者
  • Huazhong University of Science and Technology
  • The National Computer Emergency Response Team/Coordination Center of China (CNCERT/CC)
  • Monash University

科研成果: 期刊稿件文章同行评审

摘要

Adware represents a pervasive threat in the mobile ecosystem, yet its inherent characteristics have been largely overlooked by previous research. This work takes a crucial step towards demystifying Android adware. We present AdwareZoo, a comprehensive dataset comprising 15,996 adware samples across 118 distinct families collected from security reports and app repositories. We identify adware family payloads by isolating packages from samples for VirusTotal rescanning, unveiling distinctive patterns in family naming conventions, and exposing the misclassification of legitimate ad networks as adware. Our analysis of payload location strategies reveals that over 30% of adware families employ payloads beyond conventional Java/Kotlin code. Based on our dataset analysis, we conducted a comprehensive Adware Characterization of 92 distinct adware families, revealing diverse implementation patterns and evolving techniques across the mobile ecosystem. To facilitate this analysis, we developed an Adware Characterization Schema that provided a structured taxonomy for systematically classifying the observed behaviors. Our investigation uncovered multiple categories of fraudulent activities, including aggressive ad display techniques, sophisticated click fraud implementations, privacy information leakage, malicious promotion mechanisms, and various persistence and evasion mechanisms employed to avoid detection while maximizing illicit revenue. This research establishes foundations for comprehending the fraudulent and adversarial techniques within the mobile adware landscape and facilitates the development of more robust detection mechanisms against these evolving threats.

源语言英语
文章编号30
期刊Automated Software Engineering
33
1
DOI
出版状态已出版 - 6月 2026

指纹

探究 'The arts and crafts of android adware across a decade' 的科研主题。它们共同构成独一无二的指纹。

引用此