Skip to main content
  • Home
  • About
  • Faculty Experts
  • For The Media
  • Videos
  • Topics
    • Alumni
    • Events
    • Faculty
    • Library
    • Research
    • Students
    • All Topics
  • Contact
  • Submit
STEM
  • All News
  • Arts & Culture
  • Business & Economy
  • Campus & Community
  • Health & Society
  • Media, Law & Policy
  • STEM
  • Veterans
  • |
  • Alumni
  • The Peel
  • Athletics
Sections
  • All News
  • Arts & Culture
  • Business & Economy
  • Campus & Community
  • Health & Society
  • Media, Law & Policy
  • STEM
  • Veterans
  • |
  • Alumni
  • The Peel
  • Athletics
  • Home
  • About
  • Faculty Experts
  • For The Media
  • Videos
  • Topics
    • Alumni
    • Events
    • Faculty
    • Library
    • Research
    • Students
    • All Topics
  • Contact
  • Submit
STEM

Faculty to Present Research at Cybersecurity Conference

Thursday, October 30, 2014, By Matt Wheeler
Share
College of Engineering and Computer Science

The College of Engineering and Computer Science has had three papers accepted by the Association for Computing Machinery’s Conference on Computer and Communications Security, a prestigious security conference that will take place this November in Scottsdale, Ariz. It is a notable achievement to have three research papers accepted from the same institution at such a well-regarded cybersecurity conference. Students and faculty will travel to the conference and present their work to an audience of computing professionals and researchers.

engineersIn their paper, “Code Injection Attacks on HTML5-based Mobile Apps: Characterization, Detection and Mitigation,” Professors Wenliang (Kevin) Du and Heng Yin address the security concerns that arise as smartphone applications begin to rely more and more on HTML5. Unfortunately, the web technology used by HTML5-based mobile apps has a dangerous feature, which allows data and code to be mixed together, making code injection attacks possible.

Du and Yin conducted a systematic study on such apps and found a new form of code injection attack, which inherits the fundamental cause of cross-site scripting attack (XSS), but uses many more channels to inject code than XSS.  These channels, unique to mobile devices, include Contact, SMS, Barcode and MP3 files. To assess the prevalence of this, they developed a vulnerability detection tool and analyzed apps found in Google Play. Out of 15,510 apps, 478 apps were found to be vulnerable. Click here for more details.

In another paper, “Semantics-Aware Android Malware Classification Using Weighted Contextual API Dependency Graphs,” Yin highlights how the drastic increase of Android malware has necessitated automation of the malware analysis process. Existing automated detection and classification can be easily evaded In this paper, Yin proposes a semantic-based approach that classifies malware via dependency graphs. Using these, he and his team have developed methods to battle transformation attacks, malware variants and zero-day malware. They have also implemented a prototype system that can correctly label 93 percent of malware instances. Click here for more details.

Finally, in “Beware, Your Hands Reveal Your Secrets,” Professor Vir V. Phoha reveals his research that introduces a new way for adversaries to learn a smartphone user’s PIN. Instead of watching over a person’s shoulder, this method relies entirely on the spatio-temporal dynamics of a person’s hands as they enter their PIN. Essentially, that means that adversaries can determine your PIN without even being able to see your screen. Click here for more details.

 

  • Author
  • Faculty Experts

Matt Wheeler

  • Vir V. Phoha

  • Recent
  • Message from Chancellor Kent Syverud
    Tuesday, April 20, 2021, By News Staff
  • Make the Most of Your Wellness Day | Public Health Reminders
    Tuesday, April 20, 2021, By News Staff
  • Falk Professor Advocates for Including Autistic Adults in Research That Shapes Their World
    Monday, April 19, 2021, By Matt Michael
  • Campus Resources Available for Faculty, Staff and Students
    Monday, April 19, 2021, By News Staff
  • Call to Volunteer: Give Back at The Big Event
    Monday, April 19, 2021, By News Staff

More In STEM

Fusion of Art and Science Leads to Discovery

Robert Wysocki arrived at Syracuse University in 2008, having made a name in the art world by capturing landscapes in three dimensions. Known for large sand sculptures showcased in galleries from Los Angeles to Florida, Wysocki’s inspiration began on a…

Bioengineering Ph.D. Student Receives National Recognition for Breakthrough Molecular Computational Tool

Nandhini Rajagopal’s accomplishments are massive even though her research focuses on small molecules. As part of biomedical and chemical engineering Professor Shikha Nangia’s research group, the Ph.D. student has focused her work on minute interactions between protein molecules in the…

New Study From Department of Biology Highlights Ways to Support Students in Virtual Learning Environments

The mass migration to virtual learning that resulted from the COVID-19 pandemic led to a profound change in student learning. While it presented many challenges, it also created opportunities for documenting responses. Two researchers from the Department of Biology in…

Research Computing: A Decade of Discovery on Campus

Do you need more computing power to move your work forward? Since 2011, the Research Computing team within Information Technology Services (ITS) has helped faculty and staff tackle computational challenges beyond the capabilities of a normal desktop or laptop computer. Each…

Engineering Professor Shobha Bhatia Receives 2021 Judith Greenberg Seinfeld Scholar Award

Civil and Environmental Engineering Professor Shobha Bhatia has been honored by Chancellor Kent Syverud with a 2021 Judith Greenberg Seinfeld Scholar award. The award recognizes exceptional creativity and a passion for excellence. It provides $10,000 for Bhatia to undertake an…

Subscribe to SU Today

If you need help with your subscription, contact sunews@syr.edu.

Connect With Us

  • Twitter
  • Facebook
  • Instagram
  • Youtube
  • LinkedIn
Social Media Directory

For the Media

Find an Expert Follow @SyracuseUNews
  • Facebook
  • Instagram
  • Youtube
  • LinkedIn
  • @SyracuseU
  • @SyracuseUNews
  • @SUCampus
  • Social Media Directory
  • Accessibility
  • Privacy
  • Campus Status
  • Syracuse.edu
© 2021 Syracuse University News. All Rights Reserved.