{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2025,11,1]],"date-time":"2025-11-01T05:14:28Z","timestamp":1761974068732,"version":"build-2065373602"},"publisher-location":"Berlin, Heidelberg","reference-count":27,"publisher":"Springer Berlin Heidelberg","isbn-type":[{"type":"print","value":"9783642392559"},{"type":"electronic","value":"9783642392566"}],"content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":[],"published-print":{"date-parts":[[2013]]},"DOI":"10.1007\/978-3-642-39256-6_15","type":"book-chapter","created":{"date-parts":[[2013,7,10]],"date-time":"2013-07-10T06:30:36Z","timestamp":1373437836000},"page":"226-241","source":"Crossref","is-referenced-by-count":48,"title":["Quantitative Security Risk Assessment of Android Permissions and Applications"],"prefix":"10.1007","author":[{"given":"Yang","family":"Wang","sequence":"first","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Jun","family":"Zheng","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Chen","family":"Sun","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Srinivas","family":"Mukkamala","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"297","reference":[{"unstructured":"Android and security, \n                    \n                      http:\/\/googlemobile.blogspot.com\/2012\/02\/android-and-security.html","key":"15_CR1"},{"unstructured":"Android enesoluty - fake antivirus, spyware, \n                    \n                      http:\/\/contagiominidump.blogspot.com\/2012\/11\/android-enesoluty-fake-antivirus-spyware.html","key":"15_CR2"},{"unstructured":"Android races past apple in smartphone market share, \n                    \n                      http:\/\/money.cnn.com\/2012\/08\/08\/technology\/smartphone-market-share\/index.html","key":"15_CR3"},{"unstructured":"Aptoide, \n                    \n                      http:\/\/www.aptoide.com","key":"15_CR4"},{"unstructured":"Drioddream malware has now claimed 260,000 devices, \n                    \n                      http:\/\/androidjournalist.wordpress.com\/2011\/03\/10\/droiddream-malware-has-now-claimed-260000-devices\/","key":"15_CR5"},{"unstructured":"Google play, \n                    \n                      https:\/\/play.google.com","key":"15_CR6"},{"unstructured":"Google play hits 25 billion downloads, \n                    \n                      http:\/\/officialandroid.blogspot.com\/2012\/09\/google-play-hits-25-billion-downloads.html","key":"15_CR7"},{"unstructured":"Greasemonkey, \n                    \n                      http:\/\/www.greasespot.net","key":"15_CR8"},{"unstructured":"Mumayi, \n                    \n                      http:\/\/www.mumayi.com\/","key":"15_CR9"},{"unstructured":"Smartphone sales to top 1.7 billion by 2017, dominate mobile phone market, \n                    \n                      http:\/\/www.inquisitr.com\/230416\/smartphone-sales-to-top-1-7-billion-by-2017-dominate-mobile-phone-market\/","key":"15_CR10"},{"unstructured":"National Institue of Standards and Technology (NIST), Risk management guide for information technology systems (2002)","key":"15_CR11"},{"unstructured":"Alexander, C.: Market risk analysis: quantitative methods in finance. Wiley (2008)","key":"15_CR12"},{"doi-asserted-by":"crossref","unstructured":"Barrera, D., Kayacik, H.G., van Oorschot, P.C., Somayaji, A.: A methodology for empirical analysis of permission-based security models and its application to android. In: Proceedings of the 17th ACM Conference on Computer and Communications Security, CCS 2010, pp. 73\u201384 (2010)","key":"15_CR13","DOI":"10.1145\/1866307.1866317"},{"issue":"7","key":"15_CR14","doi-asserted-by":"publisher","first-page":"1145","DOI":"10.1016\/S0031-3203(96)00142-2","volume":"30","author":"A.P. Bradley","year":"1997","unstructured":"Bradley, A.P.: The use of the area under the roc curve in the evaluation of machine learning algorithms. Pattern Recogn.\u00a030(7), 1145\u20131159 (1997)","journal-title":"Pattern Recogn."},{"doi-asserted-by":"crossref","unstructured":"Chia, P.H., Yamamoto, Y., Asokan, N.: Is this app safe?: a large scale study on application permissions and risk signals. In: Proceedings of the 21st International Conference on World Wide Web, WWW 2012, pp. 311\u2013320 (2012)","key":"15_CR15","DOI":"10.1145\/2187836.2187879"},{"doi-asserted-by":"crossref","unstructured":"Enck, W., Ongtang, M., McDaniel, P.: On lightweight mobile phone application certification. In: Proceedings of the 16th ACM Conference on Computer and Communications Security, CCS 2009, pp. 235\u2013245 (2009)","key":"15_CR16","DOI":"10.1145\/1653662.1653691"},{"issue":"8","key":"15_CR17","doi-asserted-by":"publisher","first-page":"861","DOI":"10.1016\/j.patrec.2005.10.010","volume":"27","author":"T. Fawcett","year":"2006","unstructured":"Fawcett, T.: An introduction to roc analysis. Pattern Recognition Letters\u00a027(8), 861\u2013874 (2006)","journal-title":"Pattern Recognition Letters"},{"doi-asserted-by":"crossref","unstructured":"Felt, A.P., Chin, E., Hanna, S., Song, D., Wagner, D.: Android permissions demystified. In: Proceedings of the 18th ACM Conference on Computer and Communications Security, CCS 2011, pp. 627\u2013638 (2011)","key":"15_CR18","DOI":"10.1145\/2046707.2046779"},{"doi-asserted-by":"crossref","unstructured":"Felt, A.P., Egelman, S., Wagner, D.: I\u2019ve got 99 problems, but vibration ain\u2019t one: a survey of smartphone users\u2019 concerns. In: Proceedings of the Second ACM Workshop on Security and Privacy in Smartphones and Mobile Devices, SPSM 2012, pp. 33\u201344 (2012)","key":"15_CR19","DOI":"10.1145\/2381934.2381943"},{"unstructured":"Felt, A.P., Greenwood, K., Wagner, D.: The effectiveness of application permissions. In: Proceedings of the 2nd USENIX Conference on Web Application Development, WebApps 2011, p. 7 (2011)","key":"15_CR20"},{"doi-asserted-by":"crossref","unstructured":"Felt, A.P., Ha, E., Egelman, S., Haney, A., Chin, E., Wagner, D.: Android permissions: user attention, comprehension, and behavior. In: Proceedings of the Eighth Symposium on Usable Privacy and Security, SOUPS 2012, pp. 3:1\u20133:14 (2012)","key":"15_CR21","DOI":"10.1145\/2335356.2335360"},{"doi-asserted-by":"crossref","unstructured":"Frank, M., Dong, B., Felt, A.P., Song, D.: Mining permission request patterns from android and facebook applications. In: Proceedings of the IEEE International Conference on Data Mining, ICDM 2012 (2012)","key":"15_CR22","DOI":"10.1109\/ICDM.2012.86"},{"unstructured":"Joh, H., Malaiya, Y.K.: Defining and assessing quantitative security risk measures using vulnerability lifecycle and cvss metrics. In: Proceedings of the 2011 International Conference on Security and Management, SAM 2011, pp. 10\u201316 (2011)","key":"15_CR23"},{"doi-asserted-by":"crossref","unstructured":"Sarma, B.P., Li, N., Gates, C., Potharaju, R., Nita-Rotaru, C., Molloy, I.: Android permissions: a perspective combining risks and benefits. In: Proceedings of the 17th ACM Symposium on Access Control Models and Technologies, SACMAT 2012, pp. 13\u201322 (2012)","key":"15_CR24","DOI":"10.1145\/2295136.2295141"},{"doi-asserted-by":"crossref","unstructured":"Wei, X., Gomez, L., Neamtiu, L., Faloutsos, M.: Permission evolution in the android ecosystem. In: Proceedings of the 2012 Annual Computer Security Applications Conference, ACSAC 2012 (2012)","key":"15_CR25","DOI":"10.1145\/2420950.2420956"},{"doi-asserted-by":"crossref","unstructured":"Zhou, Y., Jiang, X.: Dissecting android malware: characterization and evolution. In: Proceedings of the 33rd IEEE Symposium on Security and Privacy, Oakland 2012, pp. 95\u2013109 (2012)","key":"15_CR26","DOI":"10.1109\/SP.2012.16"},{"unstructured":"Zhou, Y., Wang, Z., Zhou, W., Jiang, X.: Hey, you, get off my market: detecting malicious apps in official and alternative android markets. In: Proceedings of the 19th Network and Distributed System Security Symposium, NDSS 2012 (2012)","key":"15_CR27"}],"container-title":["Lecture Notes in Computer Science","Data and Applications Security and Privacy XXVII"],"original-title":[],"link":[{"URL":"http:\/\/link.springer.com\/content\/pdf\/10.1007\/978-3-642-39256-6_15","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2019,5,15]],"date-time":"2019-05-15T14:07:08Z","timestamp":1557929228000},"score":1,"resource":{"primary":{"URL":"http:\/\/link.springer.com\/10.1007\/978-3-642-39256-6_15"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2013]]},"ISBN":["9783642392559","9783642392566"],"references-count":27,"URL":"https:\/\/doi.org\/10.1007\/978-3-642-39256-6_15","relation":{},"ISSN":["0302-9743","1611-3349"],"issn-type":[{"type":"print","value":"0302-9743"},{"type":"electronic","value":"1611-3349"}],"subject":[],"published":{"date-parts":[[2013]]}}}