{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,7,1]],"date-time":"2026-07-01T03:56:40Z","timestamp":1782878200959,"version":"3.54.5"},"publisher-location":"New York, NY, USA","reference-count":61,"publisher":"ACM","license":[{"start":{"date-parts":[[2019,11,11]],"date-time":"2019-11-11T00:00:00Z","timestamp":1573430400000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/www.acm.org\/publications\/policies\/copyright_policy#Background"}],"content-domain":{"domain":["dl.acm.org"],"crossmark-restriction":true},"short-container-title":[],"published-print":{"date-parts":[[2019,11,11]]},"DOI":"10.1145\/3338498.3358654","type":"proceedings-article","created":{"date-parts":[[2019,11,11]],"date-time":"2019-11-11T18:15:00Z","timestamp":1573496100000},"page":"150-161","update-policy":"https:\/\/doi.org\/10.1145\/crossmark-policy","source":"Crossref","is-referenced-by-count":3,"title":["State of the Sandbox"],"prefix":"10.1145","author":[{"given":"Maximilian","family":"Blochberger","sequence":"first","affiliation":[{"name":"University of Hamburg, Hamburg, Germany"}],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Jakob","family":"Rieck","sequence":"additional","affiliation":[{"name":"University of Hamburg, Hamburg, Germany"}],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Christian","family":"Burkert","sequence":"additional","affiliation":[{"name":"University of Hamburg, Hamburg, Germany"}],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Tobias","family":"Mueller","sequence":"additional","affiliation":[{"name":"University of Hamburg, Hamburg, Germany"}],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Hannes","family":"Federrath","sequence":"additional","affiliation":[{"name":"University of Hamburg, Hamburg, Germany"}],"role":[{"vocabulary":"crossref","role":"author"}]}],"member":"320","published-online":{"date-parts":[[2019,11,11]]},"reference":[{"key":"e_1_3_2_1_1_1","doi-asserted-by":"publisher","DOI":"10.1109\/SP.2016.33"},{"key":"e_1_3_2_1_2_1","volume-title":"USENIX Security Symposium. USENIX Association, 257--272","author":"Akhawe Devdatta","year":"2013","unstructured":"Devdatta Akhawe and Adrienne Porter Felt . 2013 . Alice in warningland: A large-scale field study of browser security warning effectiveness . In USENIX Security Symposium. USENIX Association, 257--272 . Devdatta Akhawe and Adrienne Porter Felt. 2013. Alice in warningland: A large-scale field study of browser security warning effectiveness. In USENIX Security Symposium. USENIX Association, 257--272."},{"key":"e_1_3_2_1_3_1","unstructured":"Apple Inc. 2011. App sandbox and the mac app store. In WWDC. https : \/ \/ developer.apple.com\/videos\/play\/wwdc2011\/204\/.  Apple Inc. 2011. App sandbox and the mac app store. In WWDC. https : \/ \/ developer.apple.com\/videos\/play\/wwdc2011\/204\/."},{"key":"e_1_3_2_1_4_1","volume-title":"Retrieved","author":"Apple Inc. [n. d.]","year":"2019","unstructured":"Apple Inc. [n. d.] App store review guidelines . Retrieved April 24, 2019 from https:\/\/developer.apple.com\/app-store\/review\/guidelines\/. Apple Inc. [n. d.] App store review guidelines. Retrieved April 24, 2019 from https:\/\/developer.apple.com\/app-store\/review\/guidelines\/."},{"key":"e_1_3_2_1_5_1","volume-title":"Retrieved","author":"Apple Inc.","year":"2016","unstructured":"Apple Inc. 2016 . Apple developer documentation: app sandbox design guide. (September 13, 2016) . Retrieved September 18, 2018 from https:\/\/developer. apple.com\/library\/archive\/documentation\/Security\/Conceptual\/AppSandbox DesignGuide. Apple Inc. 2016. Apple developer documentation: app sandbox design guide. (September 13, 2016). Retrieved September 18, 2018 from https:\/\/developer. apple.com\/library\/archive\/documentation\/Security\/Conceptual\/AppSandbox DesignGuide."},{"key":"e_1_3_2_1_6_1","volume-title":"Apple developer documentation: entitlement key reference. (March 27","author":"Apple Inc. 2017.","year":"2017","unstructured":"Apple Inc. 2017. Apple developer documentation: entitlement key reference. (March 27 , 2017 ). https:\/\/developer.apple.com\/library\/archive\/documentation\/ Miscellaneous\/Reference\/EntitlementKeyReference . Apple Inc. 2017. Apple developer documentation: entitlement key reference. (March 27, 2017). https:\/\/developer.apple.com\/library\/archive\/documentation\/ Miscellaneous\/Reference\/EntitlementKeyReference."},{"key":"e_1_3_2_1_7_1","volume-title":"Retrieved","author":"Apple Inc.","year":"2016","unstructured":"Apple Inc. 2016 . Creating xpc services . Retrieved April 24, 2019 from https: \/\/developer.apple.com\/library\/content\/documentation\/MacOSX\/Conceptual\/ BPSystemStartup\/Chapters\/CreatingXPCServices.html. Apple Inc. 2016. Creating xpc services. Retrieved April 24, 2019 from https: \/\/developer.apple.com\/library\/content\/documentation\/MacOSX\/Conceptual\/ BPSystemStartup\/Chapters\/CreatingXPCServices.html."},{"key":"e_1_3_2_1_8_1","volume-title":"Retrieved","author":"Apple Inc. [n. d.]","year":"2019","unstructured":"Apple Inc. [n. d.] Enterprise partner feed relational - affiliate resources . Retrieved April 24, 2019 from https:\/\/affiliate.itunes.apple.com\/resources\/ documentation\/itunes-enterprise-partner-feed\/. Apple Inc. [n. d.] Enterprise partner feed relational - affiliate resources. Retrieved April 24, 2019 from https:\/\/affiliate.itunes.apple.com\/resources\/ documentation\/itunes-enterprise-partner-feed\/."},{"key":"e_1_3_2_1_9_1","volume-title":"Retrieved","author":"Apple Inc. [n. d.] Entitlements - bundle resources |","year":"2019","unstructured":"Apple Inc. [n. d.] Entitlements - bundle resources | apple developer documentation . Retrieved April 25, 2019 from https:\/\/developer.apple.com\/documentation\/ bundleresources\/entitlements. Apple Inc. [n. d.] Entitlements - bundle resources | apple developer documentation. Retrieved April 25, 2019 from https:\/\/developer.apple.com\/documentation\/ bundleresources\/entitlements."},{"key":"e_1_3_2_1_10_1","volume-title":"Retrieved","author":"Apple Inc. [n. d.]","year":"2019","unstructured":"Apple Inc. [n. d.] Itunes search api - affiliate resources . Retrieved April 24, 2019 from https:\/\/affiliate.itunes.apple.com\/resources\/documentation\/itunes-storeweb- service-search-api\/. Apple Inc. [n. d.] Itunes search api - affiliate resources. Retrieved April 24, 2019 from https:\/\/affiliate.itunes.apple.com\/resources\/documentation\/itunes-storeweb- service-search-api\/."},{"key":"e_1_3_2_1_11_1","volume-title":"Retrieved","author":"Apple Inc. [n. d.]","year":"2019","unstructured":"Apple Inc. [n. d.] Mac app store preview . Retrieved April 24, 2019 from https: \/\/itunes.apple.com\/us\/genre\/id39. Apple Inc. [n. d.] Mac app store preview. Retrieved April 24, 2019 from https: \/\/itunes.apple.com\/us\/genre\/id39."},{"key":"e_1_3_2_1_12_1","volume-title":"macOS Security -- Overview for IT. White paper. (November","author":"Apple Inc. 2018.","year":"2018","unstructured":"Apple Inc. 2018. macOS Security -- Overview for IT. White paper. (November 2018 ). https:\/\/www.apple.com\/business\/resources\/docs\/macOS_Security_ Overview .pdf. Apple Inc. 2018. macOS Security -- Overview for IT. White paper. (November 2018). https:\/\/www.apple.com\/business\/resources\/docs\/macOS_Security_ Overview.pdf."},{"key":"e_1_3_2_1_13_1","volume-title":"d.] Appshopper. Retrieved","year":"2019","unstructured":"[n. d.] Appshopper. Retrieved April 24, 2019 from http:\/\/appshopper.com\/mac\/. [n. d.] Appshopper. Retrieved April 24, 2019 from http:\/\/appshopper.com\/mac\/."},{"key":"e_1_3_2_1_14_1","unstructured":"Dionysus Blazakis. 2011. The Apple Sandbox. White paper.  Dionysus Blazakis. 2011. The Apple Sandbox. White paper."},{"key":"e_1_3_2_1_15_1","volume-title":"Wallach","author":"Book Theodore","year":"2013","unstructured":"Theodore Book , Adam Pridgen , and Dan S . Wallach . 2013 . Longitudinal analysis of android ad library permissions. CoRR , abs\/1303.0857. Theodore Book, Adam Pridgen, and Dan S.Wallach. 2013. Longitudinal analysis of android ad library permissions. CoRR, abs\/1303.0857."},{"key":"e_1_3_2_1_16_1","unstructured":"Simon Cooper Nick Lane-Smith and Joshua Osborne. 2014. Restriction of program process capabilities. (2014). Patent No. US Patent 8 635 663 B2. https: \/\/patents.google.com\/patent\/US8635663B2.  Simon Cooper Nick Lane-Smith and Joshua Osborne. 2014. Restriction of program process capabilities. (2014). Patent No. US Patent 8 635 663 B2. https: \/\/patents.google.com\/patent\/US8635663B2."},{"key":"e_1_3_2_1_17_1","unstructured":"Razvan Deaconescu Luke Deshotels Mihai Bucicoiu William Enck Lucas Davi and Ahmad-Reza Sadeghi. 2016. Sandblaster: reversing the apple sandbox. CoRR abs\/1608.04303.  Razvan Deaconescu Luke Deshotels Mihai Bucicoiu William Enck Lucas Davi and Ahmad-Reza Sadeghi. 2016. Sandblaster: reversing the apple sandbox. CoRR abs\/1608.04303."},{"key":"e_1_3_2_1_18_1","doi-asserted-by":"publisher","DOI":"10.1145\/2810103.2813675"},{"key":"e_1_3_2_1_19_1","doi-asserted-by":"crossref","unstructured":"Luke Deshotels Razvan Deaconescu Costin Carabas Iulia Manda William Enck Mihai Chiroiu Ninghui Li and Ahmad-Reza Sadeghi. 2018. Ioracle: automated evaluation of access control policies in ios. In AsiaCCS. ACM 117-- 131.  Luke Deshotels Razvan Deaconescu Costin Carabas Iulia Manda William Enck Mihai Chiroiu Ninghui Li and Ahmad-Reza Sadeghi. 2018. Ioracle: automated evaluation of access control policies in ios. In AsiaCCS. ACM 117-- 131.","DOI":"10.1145\/3196494.3196527"},{"key":"e_1_3_2_1_20_1","doi-asserted-by":"publisher","DOI":"10.1145\/2976749.2978336"},{"key":"e_1_3_2_1_21_1","volume-title":"Enterprise Mac Security","author":"Edge Charles","unstructured":"Charles Edge and Daniel O'Donnell . 2016. Enterprise Mac Security . ( 3 rd ed.). Apress . Charles Edge and Daniel O'Donnell. 2016. Enterprise Mac Security. (3rd ed.). Apress.","edition":"3"},{"key":"e_1_3_2_1_22_1","volume-title":"Retrieved","author":"Esser Stefan","year":"2014","unstructured":"Stefan Esser . 2014 . Ios 8: containers, sandboxes and entitlements . Retrieved February 12, 2018 from https:\/\/www.slideshare.net\/i0n1c\/ruxcon-2014-stefanesser- ios8-containers-sandboxes-and-entitlements. Stefan Esser. 2014. Ios 8: containers, sandboxes and entitlements. Retrieved February 12, 2018 from https:\/\/www.slideshare.net\/i0n1c\/ruxcon-2014-stefanesser- ios8-containers-sandboxes-and-entitlements."},{"key":"e_1_3_2_1_23_1","volume-title":"Wagner","author":"Felt Adrienne Porter","year":"2011","unstructured":"Adrienne Porter Felt , Kate Greenwood , and David A . Wagner . 2011 . The effectiveness of application permissions. In WebApps. USENIX Association . Adrienne Porter Felt, Kate Greenwood, and David A. Wagner. 2011. The effectiveness of application permissions. In WebApps. USENIX Association."},{"key":"e_1_3_2_1_24_1","volume-title":"Wagner","author":"Felt Adrienne Porter","year":"2012","unstructured":"Adrienne Porter Felt , Elizabeth Ha , Serge Egelman , Ariel Haney , Erika Chin , and David A . Wagner . 2012 . Android permissions: user attention, comprehension, and behavior. In SOUPS. ACM , 3. Adrienne Porter Felt, Elizabeth Ha, Serge Egelman, Ariel Haney, Erika Chin, and David A. Wagner. 2012. Android permissions: user attention, comprehension, and behavior. In SOUPS. ACM, 3."},{"key":"e_1_3_2_1_25_1","volume-title":"Elisabeth Morant, and Sunny Consolvo.","author":"Felt Adrienne Porter","year":"2016","unstructured":"Adrienne Porter Felt , Robert W. Reeder , Alex Ainslie , Helen Harris , MaxWalker, Christopher Thompson , Mustafa Emre Acer , Elisabeth Morant, and Sunny Consolvo. 2016 . Rethinking connection security indicators. In SOUPS. USENIX Association , 1--14. Adrienne Porter Felt, RobertW. Reeder, Alex Ainslie, Helen Harris, MaxWalker, Christopher Thompson, Mustafa Emre Acer, Elisabeth Morant, and Sunny Consolvo. 2016. Rethinking connection security indicators. In SOUPS. USENIX Association, 1--14."},{"key":"e_1_3_2_1_26_1","volume-title":"Retrieved","author":"Foresman Chris","year":"2012","unstructured":"Chris Foresman . 2012 . Apple's latest sandboxing deadline delay signals moving goalposts for devs. (February 22, 2012) . Retrieved March 14, 2018 from https: \/\/arstechnica.com\/?p=36730. Chris Foresman. 2012. Apple's latest sandboxing deadline delay signals moving goalposts for devs. (February 22, 2012). Retrieved March 14, 2018 from https: \/\/arstechnica.com\/?p=36730."},{"key":"e_1_3_2_1_27_1","volume-title":"Sadeh","author":"Fu Bin","year":"2013","unstructured":"Bin Fu , Jialiu Lin , Lei Li , Christos Faloutsos , Jason I. Hong , and Norman M . Sadeh . 2013 . Why people hate your app: making sense of user feedback in a mobile app store. In KDD. ACM, 1276--1284. Bin Fu, Jialiu Lin, Lei Li, Christos Faloutsos, Jason I. Hong, and Norman M. Sadeh. 2013. Why people hate your app: making sense of user feedback in a mobile app store. In KDD. ACM, 1276--1284."},{"key":"e_1_3_2_1_28_1","volume-title":"USENIX Security Symposium. USENIX Association.","author":"Goldberg Ian","unstructured":"Ian Goldberg , David A. Wagner , Randi Thomas , and Eric A. Brewer . 1996. A secure environment for untrusted helper applications . In USENIX Security Symposium. USENIX Association. Ian Goldberg, David A. Wagner, Randi Thomas, and Eric A. Brewer. 1996. A secure environment for untrusted helper applications. In USENIX Security Symposium. USENIX Association."},{"key":"e_1_3_2_1_29_1","doi-asserted-by":"publisher","DOI":"10.14722\/usec.2014.23045"},{"key":"e_1_3_2_1_30_1","unstructured":"Ivan Krsti and Love H\u00f6rnquist \u00c5strand. 2016. File system access for one or more sandboxed applications. (2016). Patent No. US Patent 9 342 689 B2. https:\/\/patents.google.com\/patent\/US9342689B2.  Ivan Krsti and Love H\u00f6rnquist \u00c5strand. 2016. File system access for one or more sandboxed applications. (2016). Patent No. US Patent 9 342 689 B2. https:\/\/patents.google.com\/patent\/US9342689B2."},{"key":"e_1_3_2_1_31_1","first-page":"837","article-title":"Methods for restricting resources used by a program based on entitlements. (2016). Patent No","volume":"15","author":"Krsti Ivan","year":"2016","unstructured":"Ivan Krsti , Austin G. Jennings , and Richard L. Hagy . 2016 . Methods for restricting resources used by a program based on entitlements. (2016). Patent No . US Patent App. 15\/060 , 837 . https:\/\/patents.google.com\/patent\/US20160321471A1. Ivan Krsti, Austin G. Jennings, and Richard L. Hagy. 2016. Methods for restricting resources used by a program based on entitlements. (2016). Patent No. US Patent App. 15\/060,837. https:\/\/patents.google.com\/patent\/US20160321471A1.","journal-title":"US Patent App."},{"key":"e_1_3_2_1_32_1","unstructured":"Ivan Krsti and Pierre-Olivier J. Martel. 2013. System and method for preserving references in sandboxes. (2013). Patent No. US Patent 8 601 579 B2. https : \/\/patents.google.com\/patent\/US8601579B2.  Ivan Krsti and Pierre-Olivier J. Martel. 2013. System and method for preserving references in sandboxes. (2013). Patent No. US Patent 8 601 579 B2. https : \/\/patents.google.com\/patent\/US8601579B2."},{"key":"e_1_3_2_1_34_1","volume-title":"Security & Insecurity","author":"Levin Jonathan","unstructured":"Jonathan Levin . 2017. * OS Internals : Security & Insecurity . Volume 3 . Jonathan Levin. 2017. *OS Internals: Security & Insecurity. Volume 3."},{"key":"e_1_3_2_1_35_1","volume-title":"User Space","author":"Levin Jonathan","unstructured":"Jonathan Levin . 2017. * OS Internals : User Space . Volume 1 . Jonathan Levin. 2017. *OS Internals: User Space. Volume 1."},{"key":"e_1_3_2_1_36_1","volume-title":"Mac OS X and iOS Internals: To the Apple's Core","author":"Levin Jonathan","unstructured":"Jonathan Levin . 2012. Mac OS X and iOS Internals: To the Apple's Core . Wiley . Jonathan Levin. 2012. Mac OS X and iOS Internals: To the Apple's Core. Wiley."},{"key":"e_1_3_2_1_37_1","volume-title":"Florian Schaub, Hazim Almuhimedi, Shikun Zhang","author":"Liu Bin","year":"2016","unstructured":"Bin Liu , Mads Schaarup Andersen , Florian Schaub, Hazim Almuhimedi, Shikun Zhang , Norman M. Sadeh, Yuvraj Agarwal, and Alessandro Acquisti. 2016 . Follow my recommendations: A personalized privacy assistant for mobile app permissions. In SOUPS. USENIX Association , 27--41. Bin Liu, Mads Schaarup Andersen, Florian Schaub, Hazim Almuhimedi, Shikun Zhang, Norman M. Sadeh, Yuvraj Agarwal, and Alessandro Acquisti. 2016. Follow my recommendations: A personalized privacy assistant for mobile app permissions. In SOUPS. USENIX Association, 27--41."},{"key":"e_1_3_2_1_38_1","volume-title":"andWenchao Ding","author":"Liu Wei","year":"2015","unstructured":"Wei Liu , Ge Zhang , Jun Chen , Yuze Zou , andWenchao Ding . 2015 .Ameasurementbased study on application popularity in android and ios app stores. In Mobidata@ MobiHoc. ACM, 13--18. Wei Liu, Ge Zhang, Jun Chen, Yuze Zou, andWenchao Ding. 2015.Ameasurementbased study on application popularity in android and ios app stores. In Mobidata@ MobiHoc. ACM, 13--18."},{"key":"e_1_3_2_1_39_1","doi-asserted-by":"crossref","unstructured":"Michael Maass Adam Sales Benjamin Chung and Joshua Sunshine. 2016. A systematic analysis of the science of sandboxing. PeerJ Computer Science 2.  Michael Maass Adam Sales Benjamin Chung and Joshua Sunshine. 2016. A systematic analysis of the science of sandboxing. PeerJ Computer Science 2.","DOI":"10.7717\/peerj-cs.43"},{"key":"e_1_3_2_1_40_1","volume-title":"d.] Macos - security - apple. Retrieved","year":"2018","unstructured":"[n. d.] Macos - security - apple. Retrieved September 18, 2018 from https : \/\/www.apple.com\/macos\/security\/. [n. d.] Macos - security - apple. Retrieved September 18, 2018 from https : \/\/www.apple.com\/macos\/security\/."},{"key":"e_1_3_2_1_41_1","volume-title":"d.] Macupdate. Retrieved","year":"2019","unstructured":"[n. d.] Macupdate. Retrieved April 24, 2019 from https:\/\/macupdate.com. [n. d.] Macupdate. Retrieved April 24, 2019 from https:\/\/macupdate.com."},{"key":"e_1_3_2_1_42_1","unstructured":"Pierre-Olivier Martel Kelly Yancey and Garrett Jacobson. 2018. Your apps and the future of macos security. In WWDC. https:\/\/developer.apple.com\/videos\/ play\/wwdc2018\/702\/.  Pierre-Olivier Martel Kelly Yancey and Garrett Jacobson. 2018. Your apps and the future of macos security. In WWDC. https:\/\/developer.apple.com\/videos\/ play\/wwdc2018\/702\/."},{"key":"e_1_3_2_1_43_1","doi-asserted-by":"publisher","DOI":"10.1109\/TSE.2016.2630689"},{"key":"e_1_3_2_1_44_1","volume-title":"d.] Mas-cli\/mas. Retrieved","year":"2019","unstructured":"[n. d.] Mas-cli\/mas. Retrieved April 1, 2019 from https:\/\/github.com\/mascli\/ mas. [n. d.] Mas-cli\/mas. Retrieved April 1, 2019 from https:\/\/github.com\/mascli\/ mas."},{"key":"e_1_3_2_1_45_1","volume-title":"Stefan Esser, Vincenzo Iozzo, and Ralf-Philipp Weinmann.","author":"Miller Charlie","year":"2012","unstructured":"Charlie Miller , Dionysus Blazakis , Dino Dai Zovi , Stefan Esser, Vincenzo Iozzo, and Ralf-Philipp Weinmann. 2012 . iOS Hacker's Handbook. Wiley , (May 2012). isbn: 978--1118204122. Charlie Miller, Dionysus Blazakis, Dino Dai Zovi, Stefan Esser, Vincenzo Iozzo, and Ralf-Philipp Weinmann. 2012. iOS Hacker's Handbook. Wiley, (May 2012). isbn: 978--1118204122."},{"key":"e_1_3_2_1_46_1","volume-title":"Dai Zovi","author":"Miller Charlie","year":"2009","unstructured":"Charlie Miller and Dino A . Dai Zovi . 2009 . The Mac Hacker's Handbook. ( 1 st ed.). Wiley . isbn: 978-0--470--39536--3. Charlie Miller and Dino A. Dai Zovi. 2009. The Mac Hacker's Handbook. (1st ed.). Wiley. isbn: 978-0--470--39536--3.","edition":"1"},{"key":"e_1_3_2_1_47_1","volume-title":"USENIX Security Symposium. USENIX Association.","author":"Provos Niels","year":"2003","unstructured":"Niels Provos , Markus Friedl , and Peter Honeyman . 2003 . Preventing privilege escalation . In USENIX Security Symposium. USENIX Association. Niels Provos, Markus Friedl, and Peter Honeyman. 2003. Preventing privilege escalation. In USENIX Security Symposium. USENIX Association."},{"key":"e_1_3_2_1_48_1","unstructured":"David Rahardja Toby C. Paterson and Anthony D'Auria. 2018. Mediated data exchange for sandboxed applications. (2018). Patent No. US Patent 9 898 355 B2. https:\/\/patents.google.com\/patent\/US9898355B2.  David Rahardja Toby C. Paterson and Anthony D'Auria. 2018. Mediated data exchange for sandboxed applications. (2018). Patent No. US Patent 9 898 355 B2. https:\/\/patents.google.com\/patent\/US9898355B2."},{"key":"e_1_3_2_1_49_1","doi-asserted-by":"publisher","DOI":"10.1016\/j.cose.2012.09.007"},{"key":"e_1_3_2_1_50_1","volume-title":"Benjamin Andow, Adwait Nadkarni, Luke Deshotels, Jason Gionta, William Enck, and Xiaohui Gu.","author":"Shu Rui","year":"2016","unstructured":"Rui Shu , Peipei Wang , Sigmund Albert Gorski III , Benjamin Andow, Adwait Nadkarni, Luke Deshotels, Jason Gionta, William Enck, and Xiaohui Gu. 2016 . A study of security isolation techniques. ACM Comput. Surv ., 49, 3, 50:1--50:37. Rui Shu, Peipei Wang, Sigmund Albert Gorski III, Benjamin Andow, Adwait Nadkarni, Luke Deshotels, Jason Gionta, William Enck, and Xiaohui Gu. 2016. A study of security isolation techniques. ACM Comput. Surv., 49, 3, 50:1--50:37."},{"key":"e_1_3_2_1_51_1","volume-title":"Retrieved","author":"Strafach Will","year":"2017","unstructured":"Will Strafach . 2017 . Archived. (October 3, 2017) . Retrieved April 25, 2019 from https:\/\/web.archive.org\/web\/20180207074222\/https:\/twitter.com\/chronic\/ status\/915281242597314560. Will Strafach. 2017. Archived. (October 3, 2017). Retrieved April 25, 2019 from https:\/\/web.archive.org\/web\/20180207074222\/https:\/twitter.com\/chronic\/ status\/915281242597314560."},{"key":"e_1_3_2_1_52_1","volume-title":"USENIX Security Symposium. USENIX Association, 399--416","author":"Sunshine Joshua","year":"2009","unstructured":"Joshua Sunshine , Serge Egelman , Hazim Almuhimedi , Neha Atri , and Lorrie Faith Cranor . 2009 . Crying wolf: an empirical study of SSL warning effectiveness . In USENIX Security Symposium. USENIX Association, 399--416 . Joshua Sunshine, Serge Egelman, Hazim Almuhimedi, Neha Atri, and Lorrie Faith Cranor. 2009. Crying wolf: an empirical study of SSL warning effectiveness. In USENIX Security Symposium. USENIX Association, 399--416."},{"key":"e_1_3_2_1_53_1","unstructured":"Yogesh Swami. 2012. Axelexic\/sanboxinterposed. Retrieved April 1 2019 from https:\/\/github.com\/axelexic\/SanboxInterposed.  Yogesh Swami. 2012. Axelexic\/sanboxinterposed. Retrieved April 1 2019 from https:\/\/github.com\/axelexic\/SanboxInterposed."},{"key":"e_1_3_2_1_54_1","doi-asserted-by":"crossref","unstructured":"Nicolas Viennot Edward Garcia and Jason Nieh. 2014. A measurement study of google play. In SIGMETRICS. ACM 221--233.  Nicolas Viennot Edward Garcia and Jason Nieh. 2014. A measurement study of google play. In SIGMETRICS. ACM 221--233.","DOI":"10.1145\/2637364.2592003"},{"key":"e_1_3_2_1_55_1","volume-title":"Apple's sandbox guide. Version 0.1. (September 3","author":"Vila\u00e7a Pedro","year":"2011","unstructured":"Pedro Vila\u00e7a . 2011. Apple's sandbox guide. Version 0.1. (September 3 , 2011 ). Pedro Vila\u00e7a. 2011. Apple's sandbox guide. Version 0.1. (September 3, 2011)."},{"key":"e_1_3_2_1_56_1","volume-title":"USENIX Security Symposium. USENIX Association, 559--572","author":"Lu Kangjie","year":"2013","unstructured":"TieleiWang, Kangjie Lu , Long Lu , Simon P. Chung , and Wenke Lee . 2013 . Jekyll on ios: when benign apps become evil . In USENIX Security Symposium. USENIX Association, 559--572 . TieleiWang, Kangjie Lu, Long Lu, Simon P. Chung, andWenke Lee. 2013. Jekyll on ios: when benign apps become evil. In USENIX Security Symposium. USENIX Association, 559--572."},{"key":"e_1_3_2_1_57_1","volume-title":"Retrieved","author":"Wardle Patrick","year":"2018","unstructured":"Patrick Wardle . 2018 . Escaping the microsoft office sandbox. (August 15, 2018) . Retrieved April 24, 2019 from https:\/\/objective-see.com\/blog\/blog_0x35.html. Patrick Wardle. 2018. Escaping the microsoft office sandbox. (August 15, 2018). Retrieved April 24, 2019 from https:\/\/objective-see.com\/blog\/blog_0x35.html."},{"key":"e_1_3_2_1_58_1","unstructured":"Takuya Watanabe Mitsuaki Akiyama Fumihiro Kanei Eitaro Shioji Yuta Takata Bo Sun Yuta Ishii Toshiki Shibahara Takeshi Yagi and Tatsuya Mori. 2017. A study on the vulnerabilities of mobiles apps associated with software modules. CoRR abs\/1702.03112.  Takuya Watanabe Mitsuaki Akiyama Fumihiro Kanei Eitaro Shioji Yuta Takata Bo Sun Yuta Ishii Toshiki Shibahara Takeshi Yagi and Tatsuya Mori. 2017. A study on the vulnerabilities of mobiles apps associated with software modules. CoRR abs\/1702.03112."},{"key":"e_1_3_2_1_59_1","unstructured":"Xuetao Wei Lorenzo Gomez Iulian Neamtiu and Michalis Faloutsos. 2012. Permission evolution in the android ecosystem. In ACSAC. ACM 31--40.  Xuetao Wei Lorenzo Gomez Iulian Neamtiu and Michalis Faloutsos. 2012. Permission evolution in the android ecosystem. In ACSAC. ACM 31--40."},{"key":"e_1_3_2_1_60_1","volume-title":"USENIX Security Symposium. USENIX Association, 499--514","author":"Wijesekera Primal","year":"2015","unstructured":"Primal Wijesekera , Arjun Baokar , Ashkan Hosseini , Serge Egelman , David A. Wagner , and Konstantin Beznosov . 2015 . Android permissions remystified: A field study on contextual integrity . In USENIX Security Symposium. USENIX Association, 499--514 . Primal Wijesekera, Arjun Baokar, Ashkan Hosseini, Serge Egelman, David A. Wagner, and Konstantin Beznosov. 2015. Android permissions remystified: A field study on contextual integrity. In USENIX Security Symposium. USENIX Association, 499--514."},{"key":"e_1_3_2_1_61_1","doi-asserted-by":"publisher","DOI":"10.1145\/2810103.2813609"},{"key":"e_1_3_2_1_62_1","unstructured":"Hengshu Zhu Hui Xiong Yong Ge and Enhong Chen. 2014. Mobile app recommendations with security and privacy awareness. In KDD. ACM 951--960.  Hengshu Zhu Hui Xiong Yong Ge and Enhong Chen. 2014. Mobile app recommendations with security and privacy awareness. In KDD. ACM 951--960."}],"event":{"name":"CCS '19: 2019 ACM SIGSAC Conference on Computer and Communications Security","location":"London United Kingdom","acronym":"CCS '19","sponsor":["SIGSAC ACM Special Interest Group on Security, Audit, and Control"]},"container-title":["Proceedings of the 18th ACM Workshop on Privacy in the Electronic Society"],"original-title":[],"link":[{"URL":"https:\/\/dl.acm.org\/doi\/10.1145\/3338498.3358654","content-type":"unspecified","content-version":"vor","intended-application":"text-mining"},{"URL":"https:\/\/dl.acm.org\/doi\/pdf\/10.1145\/3338498.3358654","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2025,6,17]],"date-time":"2025-06-17T23:12:48Z","timestamp":1750201968000},"score":1,"resource":{"primary":{"URL":"https:\/\/dl.acm.org\/doi\/10.1145\/3338498.3358654"}},"subtitle":["Investigating macOS Application Security"],"short-title":[],"issued":{"date-parts":[[2019,11,11]]},"references-count":61,"alternative-id":["10.1145\/3338498.3358654","10.1145\/3338498"],"URL":"https:\/\/doi.org\/10.1145\/3338498.3358654","relation":{},"subject":[],"published":{"date-parts":[[2019,11,11]]},"assertion":[{"value":"2019-11-11","order":2,"name":"published","label":"Published","group":{"name":"publication_history","label":"Publication History"}}]}}