Netinfo Security ›› 2016, Vol. 16 ›› Issue (8): 61-67.doi: 10.3969/j.issn.1671-1122.2016.08.010

• Orginal Article • Previous Articles     Next Articles

Research on the Method of Data Integrity Detecting on Android System

Lewei QU, Senlin LUO(), Zhipeng SUN, Shuai ZHU   

  1. Information System and Security & Countermeasures Experimental Center, Beijing Institute of Technology, Beijing 100081, China
  • Received:2016-05-12 Online:2016-08-20 Published:2020-05-13

Abstract:

The malicious code causes huge damage. It not only steals users’ personal privacy, invades users’ rights, but also causes serious economic loss. Typical malicious code occupies with advanced technology such as hiding files, hiding progress and self-starting. However, all of these typical methods of attacking could destroy the integrity of system data. This paper proposes a method of data detecting integrity combined file data with memory data on Android system and solves the problems of not all-inclusive detection, relying on hardware, huge consumption of system and hard to transplant in existing methods. This method use the algorithm of MD5 Hash to detect the integrity of data based on credible baseline database. Firstly, the method ensures the integrity of file. Then the method detects the integrity of memory data. At last we obtain the result of detecting integrity of data. At the end of this paper, several experiments are done in the Android simulator environment. And the paper uses 7 malicious codes which attack detection of data in our experiments. The experiment shows that the rate of detecting is 100% and the CPU occupancy rate below 5%. This method has high accuracy, strong practicability, and does not rely on hardware.

Key words: Android system, data integrity, file data, memory data

CLC Number: