作者
Brendan Saltaformaggio, Rohit Bhatia, Zhongshu Gu, Xiangyu Zhang, Dongyan Xu
发表日期
2015/10/12
研讨会论文
Proceedings of the 22nd ACM SIGSAC Conference on Computer and Communications Security (CCS '15)
页码范围
120-132
简介
An Android app's graphical user interface (GUI) displays rich semantic and contextual information about the smartphone's owner and app's execution. Such information provides vital clues to the investigation of crimes in both cyber and physical spaces. In real-world digital forensics however, once an electronic device becomes evidence most manual interactions with it are prohibited by criminal investigation protocols. Hence investigators must resort to "image-and-analyze" memory forensics (instead of browsing through the subject phone) to recover the apps' GUIs. Unfortunately, GUI reconstruction is still largely impossible with state-of-the-art memory forensics techniques, which tend to focus only on individual in-memory data structures. An Android GUI, however, displays diverse visual elements each built from numerous data structure instances. Furthermore, whenever an app is sent to the background, its GUI …
引用总数
2015201620172018201920202021202220232024286121175333
学术搜索中的文章
B Saltaformaggio, R Bhatia, Z Gu, X Zhang, D Xu - Proceedings of the 22nd ACM SIGSAC Conference on …, 2015