• Home
  • Search
  • ARAP: Demystifying Anti Runtime Analysis Code in Android Apps
  • Cite Icon1
  • https://doi.org/10.1109/tse.2025.3596016Copy DOI Icon

ARAP: Demystifying Anti Runtime Analysis Code in Android Apps

Show More
  • Abstract
  • Literature Map
  • References
  • Citations
  • Similar Papers
Abstract

With the continuous growth in the usage of Android apps, ensuring their security has become critically important. An increasing number of malicious apps adopt anti-analysis techniques to evade security measures. Although some research has started to consider anti-runtime analysis (ARA), it is unfortunate that they have not systematically examined ARA techniques. Furthermore, the rapid evolution of ARA technology exacerbates the issue, leading to increasingly inaccurate analysis results. To effectively analyze Android apps, understanding their adopted ARA techniques is necessary. However, no systematic investigation has been conducted thus far. <p xmlns:mml="http://www.w3.org/1998/Math/MathML" xmlns:xlink="http://www.w3.org/1999/xlink">In this paper, we conduct the first systematic study of the ARA implementations in a wide range of 117,270 Android apps (including both malicious and benign ones) collected between 2016 and 2023. Additionally, we propose a specific investigation tool named <small>ARAP</small> to assist this study by leveraging both static and dynamic analysis. According to the evaluation results, <small>ARAP</small> not only effectively identifies the ARA implementations in Android apps but also reveals many important findings. For instance, almost all apps have implemented at least one category of ARA technology (99.6% for benign apps and 97.0% for malicious apps).

Similar Papers
  • Conference Article
  • Citations16

Secure Integration of Web Content and Applications on Commodity Mobile Operating Systems

  • Apr 02, 2017
  • Drew Davidson +4
  • Research Article
  • Citations107

MalPat: Mining Patterns of Malicious and Benign Android Apps via Permission-Related APIs

  • Mar 01, 2018
  • IEEE Transactions on Reliability
  • Guanhong Tao +3
  • Conference Article
  • Citations7

ActivityHijacker: Hijacking the Android Activity Component for Sensitive Data

  • Aug 01, 2016
  • Zhaoguo Wang +4
  • PDF
  • Research Article
  • Citations4

A Multiclass Detection System for Android Malicious Apps Based on Color Image Features

  • Dec 14, 2020
  • Wireless Communications and Mobile Computing
  • Hua Zhang +7
  • Conference Article
  • Citations6

NLEU: A Semantic-based Taint Analysis for Vetting Apps in Android

  • Oct 01, 2021
  • Yuanqing Liu +2
  • Conference Article
  • Citations16

All Your Sessions Are Belong to Us: Investigating Authenticator Leakage through Backup Channels on Android

  • Dec 01, 2015
  • Guangdong Bai +6
  • PDF
  • Conference Article

Two-factor Protection Scheme in Securing the Source Code of Android Applications

  • Mar 01, 2014
  • Electronic workshops in computing
  • Daniel C.S Tse +5
  • Conference Article
  • Citations9

Real-Time Detection of Malicious Behavior in Android Apps

  • Aug 01, 2016
  • Zhenyu Ni +4
  • PDF
  • Research Article
  • Citations13

An artificial immunity approach to malware detection in a mobile platform

  • Mar 27, 2017
  • EURASIP Journal on Information Security
  • James Brown +2
  • Research Article
  • Citations10

Static and Dynamic Analysis of Android Malware and Goodware Written with Unity Framework

  • Jun 20, 2018
  • Security and Communication Networks
  • Jaewoo Shim +4
  • Conference Article
  • Citations4

Device Administrator Use and Abuse in Android

  • Oct 11, 2019
  • Zhiyong Shan +2
  • Research Article
  • Citations54

Understanding the Purpose of Permission Use in Mobile Apps

  • Jul 11, 2017
  • ACM Transactions on Information Systems
  • Haoyu Wang +4
  • Research Article
  • Citations19

Detecting Malicious Facebook Applications

  • Apr 01, 2016
  • IEEE/ACM Transactions on Networking
  • Sazzadur Rahman +3
  • Conference Article
  • Citations25

MoonlightBox: Mining Android API Histories for Uncovering Release-Time Inconsistencies

  • Oct 01, 2018
  • Li Li +2
  • Conference Article
  • Citations30

Potential Component Leaks in Android Apps: An Investigation into a New Feature Set for Malware Detection

  • Aug 01, 2015
  • Li Li +5
Cactus Communications logo

Copyright 2026 Cactus Communications. All rights reserved.