{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2025,8,30]],"date-time":"2025-08-30T16:19:09Z","timestamp":1756570749616},"reference-count":28,"publisher":"Springer Science and Business Media LLC","issue":"1","license":[{"start":{"date-parts":[[2022,8,8]],"date-time":"2022-08-08T00:00:00Z","timestamp":1659916800000},"content-version":"tdm","delay-in-days":0,"URL":"https:\/\/www.springernature.com\/gp\/researchers\/text-and-data-mining"},{"start":{"date-parts":[[2022,8,8]],"date-time":"2022-08-08T00:00:00Z","timestamp":1659916800000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/www.springernature.com\/gp\/researchers\/text-and-data-mining"}],"content-domain":{"domain":["link.springer.com"],"crossmark-restriction":false},"short-container-title":["Front. Comput. Sci."],"published-print":{"date-parts":[[2023,2]]},"DOI":"10.1007\/s11704-021-1126-x","type":"journal-article","created":{"date-parts":[[2022,8,8]],"date-time":"2022-08-08T11:02:52Z","timestamp":1659956572000},"update-policy":"http:\/\/dx.doi.org\/10.1007\/springer_crossmark_policy","source":"Crossref","is-referenced-by-count":3,"title":["VenomAttack: automated and adaptive activity hijacking in Android"],"prefix":"10.1007","volume":"17","author":[{"given":"Pu","family":"Sun","sequence":"first","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Sen","family":"Chen","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Lingling","family":"Fan","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Pengfei","family":"Gao","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Fu","family":"Song","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Min","family":"Yang","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"297","published-online":{"date-parts":[[2022,8,8]]},"reference":[{"key":"1126_CR1","doi-asserted-by":"crossref","unstructured":"Lu L, Li Z, Wu Z, Lee W, Jiang G. CHEX: statically vetting Android apps for component hijacking vulnerabilities. In: Proceedings of 2012 ACM Conference on Computer and Communications Security. 2012, 229\u2013240","DOI":"10.1145\/2382196.2382223"},{"key":"1126_CR2","unstructured":"Rydstedt G, Gourdin B, Bursztein E, Boneh D. Framing attacks on smart phones and dumb routers: tap-jacking and geo-localization attacks. In: Proceedings of the 4th USENIX Conference on Offensive Technologies. 2010, 1\u20138"},{"key":"1126_CR3","unstructured":"Chen Q A, Qian Z, Mao Z M. Peeking into your app without actually seeing it: UI state inference and novel Android attacks. In: Proceedings of the 23rd USENIX Conference on Security Symposium. 2014, 1037\u20131052"},{"key":"1126_CR4","doi-asserted-by":"crossref","unstructured":"Wang Z, Li C, Guan Y, Xue Y, Dong Y. ActivityHijacker: hijacking the Android activity component for sensitive data. In: Proceedings of the 25th International Conference on Computer Communication and Networks. 2016, 1\u20139","DOI":"10.1109\/ICCCN.2016.7568487"},{"key":"1126_CR5","unstructured":"Ren C, Zhang Y, Xue H, Wei T, Liu P. Towards discovering and understanding task hijacking in Android. In: Proceedings of the 24th USENIX Conference on Security Symposium. 2015, 945\u2013959"},{"key":"1126_CR6","doi-asserted-by":"crossref","unstructured":"Lee S, Hwang S, Ryu S. All about activity injection: threats, semantics, and detection. In: Proceedings of the 32nd IEEE\/ACM International Conference on Automated Software Engineering. 2017, 252\u2013262","DOI":"10.1109\/ASE.2017.8115638"},{"key":"1126_CR7","doi-asserted-by":"crossref","unstructured":"Ren Y, Li Y, Yuan F, Zhang F. Hijacking activity technology analysis and research in Android system. In: Proceedings of the International Conference on Trustworthy Computing and Services. 2013, 46\u201353","DOI":"10.1007\/978-3-662-43908-1_6"},{"key":"1126_CR8","doi-asserted-by":"crossref","unstructured":"Xiao Y, Bai G, Mao J, Liang Z, Cheng W. Privilege leakage and information stealing through the Android task mechanism. In: Proceedings of 2017 IEEE Symposium on Privacy-Aware Computing. 2017, 152\u2013163","DOI":"10.1109\/PAC.2017.29"},{"key":"1126_CR9","doi-asserted-by":"publisher","first-page":"92","DOI":"10.1016\/j.jnca.2018.12.007","volume":"127","author":"L Yang","year":"2019","unstructured":"Yang L, Zhi Y, Wei T, Yu S, Ma J. Inference attack in Android activity based on program fingerprint. Journal of Network and Computer Applications, 2019, 127: 92\u2013106","journal-title":"Journal of Network and Computer Applications"},{"key":"1126_CR10","doi-asserted-by":"crossref","unstructured":"Luo L, Zeng Q, Cao C, Chen K, Liu J, Liu L, Gao N, Yang M, Xing X, Liu P. System service call-oriented symbolic execution of Android framework with applications to vulnerability discovery and exploit generation. In: Proceedings of the 15th Annual International Conference on Mobile Systems, Applications, and Services. 2017, 225\u2013238","DOI":"10.1145\/3081333.3081361"},{"key":"1126_CR11","doi-asserted-by":"crossref","unstructured":"Ren C, Liu P, Zhu S. WindowGuard: systematic protection of GUI security in Android. In: Proceedings of the 24th Annual Network and Distributed System Security Symposium. 2017","DOI":"10.14722\/ndss.2017.23529"},{"key":"1126_CR12","doi-asserted-by":"crossref","unstructured":"Liu J, Wu D, Xue J. TDroid: exposing app switching attacks in Android with control flow specialization. In: Proceedings of the 33rd ACM\/IEEE International Conference on Automated Software Engineering. 2018, 236\u2013247","DOI":"10.1145\/3238147.3238188"},{"key":"1126_CR13","doi-asserted-by":"crossref","unstructured":"Liu F, Cai H, Wang G, Yao D, Elish K O, Ryder B G. MR-Droid: a scalable and prioritized analysis of inter-app communication risks. In: Proceedings of 2017 IEEE Security and Privacy Workshops. 2017, 189\u2013198","DOI":"10.1109\/SPW.2017.12"},{"key":"1126_CR14","doi-asserted-by":"crossref","unstructured":"Yan F, Li Y, Zhang L. ActivityShielder: an activity hijacking defense scheme for Android devices. In: Proceedings of the 27th International Conference on Computer Communication and Networks. 2018, 1\u20139","DOI":"10.1109\/ICCCN.2018.8487367"},{"key":"1126_CR15","doi-asserted-by":"crossref","unstructured":"Chen S, Fan L, Chen C, Su T, Li W, Liu Y, Xu L. StoryDroid: automated generation of storyboard for android apps. In: Proceedings of the 41st IEEE\/ACM International Conference on Software Engineering. 2019, 596\u2013607","DOI":"10.1109\/ICSE.2019.00070"},{"key":"1126_CR16","doi-asserted-by":"crossref","unstructured":"Chen T, He J, Song F, Wang G, Wu Z, Yan J. Android stack machine. In: Proceedings of the 30th International Conference on Computer Aided Verification. 2018, 487\u2013504","DOI":"10.1007\/978-3-319-96142-2_29"},{"key":"1126_CR17","doi-asserted-by":"crossref","unstructured":"Bkakria A, Graa M, Cuppens-Boulahia N, Cuppens F, Lanet J L. Realtime detection and reaction to activity hijacking attacks in Android smartphones (short paper). In: Proceedings of the 15th Annual Conference on Privacy, Security and Trust (PST). 2017, 253\u2013258","DOI":"10.1109\/PST.2017.00037"},{"issue":"6","key":"1126_CR18","doi-asserted-by":"publisher","first-page":"1269","DOI":"10.1109\/TIFS.2017.2656460","volume":"12","author":"L Li","year":"2017","unstructured":"Li L, Li D, Bissyand\u00e9 T F, Klein J, Le Traon Y, Lo D, Cavallaro L. Understanding android app piggybacking: a systematic study of malicious code grafting. IEEE Transactions on Information Forensics and Security, 2017, 12(6): 1269\u20131284","journal-title":"IEEE Transactions on Information Forensics and Security"},{"key":"1126_CR19","doi-asserted-by":"crossref","unstructured":"Gao J, Li L, Kong P, Bissyand\u00e9 T F, Klein J. Borrowing your enemy\u2019s arrows: the case of code reuse in Android via direct inter-app code invocation. In: Proceedings of the 28th ACM Joint Meeting on European Software Engineering Conference and Symposium on the Foundations of Software Engineering. 2020, 939\u2013951","DOI":"10.1145\/3368089.3409745"},{"key":"1126_CR20","unstructured":"Tuncay G S, Qian J, Gunter C A. See no evil: phishing for permissions with false transparency. In: Proceedings of the 29th USENIX Security Symposium. 2020, 415\u2013432"},{"key":"1126_CR21","doi-asserted-by":"crossref","unstructured":"Saltaformaggio B, Bhatia R, Gu Z, Zhang X, Xu D. GUITAR: piecing together android app GUIs from memory images. In: Proceedings of the 22nd ACM SIGSAC Conference on Computer and Communications Security. 2015, 120\u2013132","DOI":"10.1145\/2810103.2813650"},{"issue":"6","key":"1126_CR22","first-page":"2551","volume":"18","author":"S Chen","year":"2021","unstructured":"Chen S, Fan L, Chen C, Xue M, Liu Y, Xu L. GUI-Squatting attack: automated generation of Android phishing apps. IEEE Transactions on Dependable and Secure Computing, 2021, 18(6): 2551\u20132568","journal-title":"IEEE Transactions on Dependable and Secure Computing"},{"issue":"9","key":"1126_CR23","doi-asserted-by":"publisher","first-page":"5210","DOI":"10.1002\/int.22510","volume":"36","author":"F Song","year":"2021","unstructured":"Song F, Lei Y, Chen S, Fan L, Liu Y. Advanced evasion attacks and mitigations on practical ML-based phishing website classifiers. International Journal of Intelligent Systems, 2021, 36(9): 5210\u20135240","journal-title":"International Journal of Intelligent Systems"},{"key":"1126_CR24","doi-asserted-by":"crossref","unstructured":"Chen S, Su T, Fan L, Meng G, Xue M, Liu Y, Xu L. Are mobile banking apps secure? what can be improved?. In: Proceedings of the 26th ACM Joint Meeting on European Software Engineering Conference and Symposium on the Foundations of Software Engineering. 2018, 797\u2013802","DOI":"10.1145\/3236024.3275523"},{"key":"1126_CR25","doi-asserted-by":"crossref","unstructured":"Song F, Touili T. Model-checking for android malware detection. In: Proceedings of the 12th Asian Symposium on Programming Languages and Systems. 2014, 216\u2013235","DOI":"10.1007\/978-3-319-12736-1_12"},{"key":"1126_CR26","doi-asserted-by":"crossref","unstructured":"Xu Z, Ren K, Song F. Android malware family classification and characterization using CFG and DFG. In: Proceedings of 2019 International Symposium on Theoretical Aspects of Software Engineering. 2019, 49\u201356","DOI":"10.1109\/TASE.2019.00-20"},{"key":"1126_CR27","doi-asserted-by":"crossref","unstructured":"Chen S, Fan L, Meng G, Su T, Xue M, Xue Y, Liu Y, Xu L. An empirical assessment of security risks of global android banking apps. In: Proceedings of the 42nd IEEE\/ACM International Conference on Software Engineering. 2020, 1310\u20131322","DOI":"10.1145\/3377811.3380417"},{"key":"1126_CR28","doi-asserted-by":"crossref","unstructured":"Tang C, Chen S, Fan L, Xu L, Liu Y, Tang Z, Dou L. A large-scale empirical study on industrial fake apps. In: Proceedings of the 41st IEEE\/ACM International Conference on Software Engineering: Software Engineering in Practice. 2019, 183\u2013192","DOI":"10.1109\/ICSE-SEIP.2019.00028"}],"container-title":["Frontiers of Computer Science"],"original-title":[],"language":"en","link":[{"URL":"https:\/\/link.springer.com\/content\/pdf\/10.1007\/s11704-021-1126-x.pdf","content-type":"application\/pdf","content-version":"vor","intended-application":"text-mining"},{"URL":"https:\/\/link.springer.com\/article\/10.1007\/s11704-021-1126-x\/fulltext.html","content-type":"text\/html","content-version":"vor","intended-application":"text-mining"},{"URL":"https:\/\/link.springer.com\/content\/pdf\/10.1007\/s11704-021-1126-x.pdf","content-type":"application\/pdf","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2024,3,21]],"date-time":"2024-03-21T21:31:10Z","timestamp":1711056670000},"score":1,"resource":{"primary":{"URL":"https:\/\/link.springer.com\/10.1007\/s11704-021-1126-x"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2022,8,8]]},"references-count":28,"journal-issue":{"issue":"1","published-print":{"date-parts":[[2023,2]]}},"alternative-id":["1126"],"URL":"https:\/\/doi.org\/10.1007\/s11704-021-1126-x","relation":{},"ISSN":["2095-2228","2095-2236"],"issn-type":[{"value":"2095-2228","type":"print"},{"value":"2095-2236","type":"electronic"}],"subject":[],"published":{"date-parts":[[2022,8,8]]},"assertion":[{"value":"19 March 2021","order":1,"name":"received","label":"Received","group":{"name":"ArticleHistory","label":"Article History"}},{"value":"19 August 2021","order":2,"name":"accepted","label":"Accepted","group":{"name":"ArticleHistory","label":"Article History"}},{"value":"8 August 2022","order":3,"name":"first_online","label":"First Online","group":{"name":"ArticleHistory","label":"Article History"}}],"article-number":"171801"}}