{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,7,3]],"date-time":"2026-07-03T16:46:16Z","timestamp":1783097176277,"version":"3.54.6"},"publisher-location":"Cham","reference-count":42,"publisher":"Springer International Publishing","isbn-type":[{"value":"9783030017002","type":"print"},{"value":"9783030017019","type":"electronic"}],"license":[{"start":{"date-parts":[[2018,1,1]],"date-time":"2018-01-01T00:00:00Z","timestamp":1514764800000},"content-version":"tdm","delay-in-days":0,"URL":"http:\/\/www.springer.com\/tdm"}],"content-domain":{"domain":["link.springer.com"],"crossmark-restriction":false},"short-container-title":[],"published-print":{"date-parts":[[2018]]},"DOI":"10.1007\/978-3-030-01701-9_10","type":"book-chapter","created":{"date-parts":[[2018,12,28]],"date-time":"2018-12-28T17:03:08Z","timestamp":1546016588000},"page":"172-192","update-policy":"https:\/\/doi.org\/10.1007\/springer_crossmark_policy","source":"Crossref","is-referenced-by-count":87,"title":["Understanding Android Obfuscation Techniques: A Large-Scale Investigation in the Wild"],"prefix":"10.1007","author":[{"given":"Shuaike","family":"Dong","sequence":"first","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Menghao","family":"Li","sequence":"additional","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Wenrui","family":"Diao","sequence":"additional","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Xiangyu","family":"Liu","sequence":"additional","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Jian","family":"Liu","sequence":"additional","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Zhou","family":"Li","sequence":"additional","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Fenghao","family":"Xu","sequence":"additional","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Kai","family":"Chen","sequence":"additional","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"XiaoFeng","family":"Wang","sequence":"additional","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Kehuan","family":"Zhang","sequence":"additional","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]}],"member":"297","published-online":{"date-parts":[[2018,12,29]]},"reference":[{"key":"10_CR1","unstructured":"smartphone assistant. http:\/\/zhushou.360.cn\/"},{"key":"10_CR2","unstructured":"Allatori. http:\/\/www.allatori.com\/"},{"key":"10_CR3","unstructured":"Androguard. https:\/\/github.com\/androguard\/androguard"},{"key":"10_CR4","unstructured":"Anzhi. http:\/\/www.anzhi.com\/"},{"key":"10_CR5","unstructured":"Appchina. http:\/\/www.appchina.com\/"},{"key":"10_CR6","unstructured":"Backward compatibility for android applications. https:\/\/android-developers.googleblog.com\/2009\/04\/backward-compatibility-for-android.html"},{"key":"10_CR7","unstructured":"DashO. https:\/\/www.preemptive.com\/products\/dasho\/overview"},{"key":"10_CR8","unstructured":"Dexguard. https:\/\/www.guardsquare.com\/en\/dexguard"},{"key":"10_CR9","unstructured":"DexProtector. https:\/\/dexprotector.com\/"},{"key":"10_CR10","unstructured":"Huawei appstore. http:\/\/appstore.huawei.com\/"},{"key":"10_CR11","unstructured":"Java Cryptography Extension. http:\/\/www.oracle.com\/technetwork\/java\/javase\/downloads\/jce8-download-2133166.html"},{"key":"10_CR12","unstructured":"n-gram. https:\/\/en.wikipedia.org\/wiki\/N-gram"},{"key":"10_CR13","unstructured":"Number of available applications in the Google Play Store from December 2009 to December 2017. http:\/\/www.statista.com\/statistics\/266210\/number-of-available-applications-in-the-google-play-store\/"},{"key":"10_CR14","unstructured":"ProGuard. http:\/\/proguard.sourceforge.net\/"},{"key":"10_CR15","unstructured":"Shield4J. http:\/\/shield4j.com\/"},{"key":"10_CR16","unstructured":"Virusshare. https:\/\/virusshare.com\/"},{"key":"10_CR17","unstructured":"Virustotal. https:\/\/www.virustotal.com\/"},{"key":"10_CR18","unstructured":"Wandoujia. https:\/\/www.wandoujia.com\/"},{"key":"10_CR19","unstructured":"Xiaomi application store. http:\/\/app.mi.com\/"},{"key":"10_CR20","unstructured":"Apvrille, A., Nigam, R.: Obfuscation in android malware, and how to fight back. Virus Bull. 1\u201310 (2014)"},{"key":"10_CR21","doi-asserted-by":"publisher","first-page":"72","DOI":"10.1016\/j.cose.2016.05.003","volume":"61","author":"V Balachandran","year":"2016","unstructured":"Balachandran, V., Tan, D.J., Thing, V.L.: Control flow obfuscation for android applications. Comput. Secur. 61, 72\u201393 (2016)","journal-title":"Comput. Secur."},{"key":"10_CR22","doi-asserted-by":"crossref","unstructured":"Bichsel, B., Raychev, V., Tsankov, P., Vechev, M.T.: Statistical deobfuscation of android applications. In: Proceedings of the 2016 ACM SIGSAC Conference on Computer and Communications Security (CCS) (2016)","DOI":"10.1145\/2976749.2978422"},{"key":"10_CR23","doi-asserted-by":"crossref","unstructured":"Calvet, J., Fernandez, J.M., Marion, J.: Aligot: cryptographic function identification in obfuscated binary programs. In: Proceedings of the 19th ACM Conference on Computer and Communications Security (CCS) (2012)","DOI":"10.1145\/2382196.2382217"},{"key":"10_CR24","doi-asserted-by":"crossref","unstructured":"Chen, K., Liu, P., Zhang, Y.: Achieving accuracy and scalability simultaneously in detecting application clones on Android markets. In: Proceeding of the 36th International Conference on Software Engineering (ICSE) (2014)","DOI":"10.1145\/2568225.2568286"},{"key":"10_CR25","doi-asserted-by":"crossref","unstructured":"Duan, Y., et al.: Things you may not know about android (un)packers: a systematic study based on whole-system emulation. In: Proceedings of 25th Annual Network and Distributed System Security Symposium (NDSS) (2018)","DOI":"10.14722\/ndss.2018.23296"},{"key":"10_CR26","unstructured":"Faruki, P., Fereidooni, H., Laxmi, V., Conti, M., Gaur, M.S.: Android Code Protection via Obfuscation Techniques: Past, Present and Future Directions. CoRR abs\/1611.10231 (2016)"},{"key":"10_CR27","series-title":"Lecture Notes of the Institute for Computer Sciences, Social Informatics and Telecommunications Engineering","doi-asserted-by":"publisher","first-page":"315","DOI":"10.1007\/978-3-319-23802-9_24","volume-title":"International Conference on Security and Privacy in Communication Networks","author":"FC Freiling","year":"2015","unstructured":"Freiling, F.C., Protsenko, M., Zhuang, Y.: An empirical evaluation of software obfuscation techniques applied to Android APKs. In: Tian, J., Jing, J., Srivatsa, M. (eds.) SecureComm 2014. LNICST, vol. 153, pp. 315\u2013328. Springer, Cham (2015). https:\/\/doi.org\/10.1007\/978-3-319-23802-9_24"},{"key":"10_CR28","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"publisher","first-page":"41","DOI":"10.1007\/978-3-642-23644-0_3","volume-title":"Recent Advances in Intrusion Detection","author":"F Gr\u00f6bert","year":"2011","unstructured":"Gr\u00f6bert, F., Willems, C., Holz, T.: Automated identification of cryptographic primitives in binary programs. In: Sommer, R., Balzarotti, D., Maier, G. (eds.) RAID 2011. LNCS, vol. 6961, pp. 41\u201360. Springer, Heidelberg (2011). https:\/\/doi.org\/10.1007\/978-3-642-23644-0_3"},{"key":"10_CR29","doi-asserted-by":"crossref","unstructured":"Hoffmann, J., Rytilahti, T., Maiorca, D., Winandy, M., Giacinto, G., Holz, T.: Evaluating analysis tools for android apps: status quo and robustness against obfuscation. In: Proceedings of the Sixth ACM on Conference on Data and Application Security and Privacy (CODASPY) (2016)","DOI":"10.1145\/2857705.2857737"},{"key":"10_CR30","doi-asserted-by":"crossref","unstructured":"Huang, H., et al.: Android malware development on public malware scanning platforms: a large-scale date-driven study. In: Proceeding of the 2016 IEEE International Conference on Big Data (BigData) (2016)","DOI":"10.1109\/BigData.2016.7840712"},{"key":"10_CR31","doi-asserted-by":"crossref","unstructured":"Li, L., Bissyand\u00e9, T.F., Octeau, D., Klein, J.: DroidRA: taming reflection to support whole-program analysis of android apps. In: Proceedings of the 25th International Symposium on Software Testing and Analysis (ISSTA) (2016)","DOI":"10.1145\/2931037.2931044"},{"key":"10_CR32","doi-asserted-by":"crossref","unstructured":"Li, M., et al.: LibD: scalable and precise third-party library detection in Android markets. In: Proceedings of the 39th International Conference on Software Engineering (ICSE) (2017)","DOI":"10.1109\/ICSE.2017.38"},{"key":"10_CR33","doi-asserted-by":"publisher","first-page":"16","DOI":"10.1016\/j.cose.2015.02.007","volume":"51","author":"D Maiorca","year":"2015","unstructured":"Maiorca, D., Ariu, D., Corona, I., Aresu, M., Giacinto, G.: Stealth attacks: an extended insight into the obfuscation effects on Android malware. Comput. Secur. 51, 16\u201331 (2015)","journal-title":"Comput. Secur."},{"key":"10_CR34","doi-asserted-by":"crossref","unstructured":"Matenaar, F., Wichmann, A., Leder, F., Gerhards-Padilla, E.: CIS: the crypto intelligence system for automatic detection and localization of cryptographic functions in current malware. In: Proceeding of the 7th International Conference on Malicious and Unwanted Software (MALWARE), 16\u201318 October 2012, Fajardo, PR, USA (2012)","DOI":"10.1109\/MALWARE.2012.6461007"},{"issue":"4","key":"10_CR35","first-page":"86","volume":"6","author":"J Park","year":"2015","unstructured":"Park, J., Kim, H., Jeong, Y., Cho, S., Han, S., Park, M.: Effects of code obfuscation on Android app similarity analysis. J. Wirel. Mob. Netw. Ubiquitous Comput. Dependable Appl. 6(4), 86\u201398 (2015)","journal-title":"J. Wirel. Mob. Netw. Ubiquitous Comput. Dependable Appl."},{"issue":"3","key":"10_CR36","doi-asserted-by":"publisher","first-page":"209","DOI":"10.1007\/s11416-016-0282-2","volume":"13","author":"MD Preda","year":"2017","unstructured":"Preda, M.D., Maggi, F.: Testing Android malware detectors against code obfuscation: a systematization of knowledge and unified methodology. J. Comput. Virol. Hacking Tech. 13(3), 209\u2013232 (2017)","journal-title":"J. Comput. Virol. Hacking Tech."},{"key":"10_CR37","doi-asserted-by":"crossref","unstructured":"Rastogi, V., Chen, Y., Jiang, X.: DroidChameleon: evaluating Android anti-malware against transformation attacks. In: Proceedings of the 8th ACM Symposium on Information, Computer and Communications Security (ASIACCS) (2013)","DOI":"10.1145\/2484313.2484355"},{"key":"10_CR38","doi-asserted-by":"crossref","unstructured":"Shu, J., Li, J., Zhang, Y., Gu, D.: Android app protection via interpretation obfuscation. In: Proceeding of the 12th IEEE International Conference on Dependable, Autonomic and Secure Computing (DASC) (2014)","DOI":"10.1109\/DASC.2014.20"},{"key":"10_CR39","doi-asserted-by":"crossref","unstructured":"Suarez-Tangil, G., Dash, S.K., Ahmadi, M., Kinder, J., Giacinto, G., Cavallaro, L.: DroidSieve: fast and accurate classification of obfuscated Android malware. In: Proceedings of the Seventh ACM on Conference on Data and Application Security and Privacy (CODASPY) (2017)","DOI":"10.1145\/3029806.3029825"},{"key":"10_CR40","doi-asserted-by":"crossref","unstructured":"Wang, H., Guo, Y., Ma, Z., Chen, X.: WuKong: a scalable and accurate two-phase approach to Android app clone detection. In: Proceedings of the 2015 International Symposium on Software Testing and Analysis (ISSTA), Baltimore, MD, USA, 12\u201317 July 2015 (2015)","DOI":"10.1145\/2771783.2771795"},{"key":"10_CR41","doi-asserted-by":"crossref","unstructured":"Wang, Y., Rountev, A.: Who changed you? Obfuscator identification for Android. In: Proceedings of the 4th IEEE\/ACM International Conference on Mobile Software Engineering and Systems (MOBILESoft) (2017)","DOI":"10.1109\/MOBILESoft.2017.18"},{"key":"10_CR42","doi-asserted-by":"crossref","unstructured":"Zhang, F., Huang, H., Zhu, S., Wu, D., Liu, P.: ViewDroid: towards obfuscation-resilient mobile application repackaging detection. In: Proceedings of 7th ACM Conference on Security & Privacy in Wireless and Mobile Networks (WiSec) (2014)","DOI":"10.1145\/2627393.2627395"}],"container-title":["Lecture Notes of the Institute for Computer Sciences, Social Informatics and Telecommunications Engineering","Security and Privacy in Communication Networks"],"original-title":[],"link":[{"URL":"http:\/\/link.springer.com\/content\/pdf\/10.1007\/978-3-030-01701-9_10","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2019,11,13]],"date-time":"2019-11-13T06:14:40Z","timestamp":1573625680000},"score":1,"resource":{"primary":{"URL":"http:\/\/link.springer.com\/10.1007\/978-3-030-01701-9_10"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2018]]},"ISBN":["9783030017002","9783030017019"],"references-count":42,"URL":"https:\/\/doi.org\/10.1007\/978-3-030-01701-9_10","relation":{},"ISSN":["1867-8211","1867-822X"],"issn-type":[{"value":"1867-8211","type":"print"},{"value":"1867-822X","type":"electronic"}],"subject":[],"published":{"date-parts":[[2018]]},"assertion":[{"value":"SecureComm","order":1,"name":"conference_acronym","label":"Conference Acronym","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"International Conference on Security and Privacy in Communication Systems","order":2,"name":"conference_name","label":"Conference Name","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"Singapore","order":3,"name":"conference_city","label":"Conference City","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"Singapore","order":4,"name":"conference_country","label":"Conference Country","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"2018","order":5,"name":"conference_year","label":"Conference Year","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"8 August 2018","order":7,"name":"conference_start_date","label":"Conference Start Date","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"10 August 2018","order":8,"name":"conference_end_date","label":"Conference End Date","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"securecomm2018","order":10,"name":"conference_id","label":"Conference ID","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"http:\/\/securecomm.org\/","order":11,"name":"conference_url","label":"Conference URL","group":{"name":"ConferenceInfo","label":"Conference Information"}}]}}