Call Me Back! Attacks on System Server and System Apps in Android through Synchronous Callback
Association for Computing Machinery (ACM) via YouTube
Overview
Syllabus
Intro
Android System Server
How a System Service is provided
Callback during IPC
What is a Callback Handle
Malicious Callback: Block
Malicious Callback: Exception
Malicious Callback: Self-Poisoning
Other Victims System Apps
Research Questions
Meaningful Attacks
Defense Approaches
Question 1: How to Detect?
Question 2: Detected Vulnerabilities
Taught by
ACM CCS