FirmwareDroid: Security Analysis of the Android Firmware EcoSystem
Thomas Sutter

TL;DR
This paper presents FirmwareDroid, a comprehensive analysis of the Android firmware ecosystem, including dataset collection, malware detection in pre-installed apps, and insights into Android custom ROMs, highlighting security risks and detection strategies.
Contribution
We developed FirmwareDroid, a web service for analyzing Android firmware and pre-installed apps, and provided large-scale malware detection results across thousands of firmware samples.
Findings
Pre-installed apps can pose security threats to Android users.
We detected hundreds of malware samples in firmware archives.
Analyzed over 900,000 apps using open-source security tools.
Abstract
The Android Open Source Project (AOSP) is probably the most used and customized operating system for smartphones and IoT devices worldwide. Its market share and high adaptability makes Android an interesting operating system for many developers. Nowadays, we use Android firmware in smartphones, TVs, smartwatches, cars, and other devices by various vendors and manufacturers. The sheer amount of customized Android firmware and devices makes it hard for security analysts to detect potentially harmful applications. Another fact is that many vendors include apps from 3rd party developers. Such bloatware usually has more privileges than standard apps and cannot be removed by the user without rooting the device. In recent years several cases were reported where 3rd party developers could include malicious apps into the Android built chain. Media reports claim that pre-installed malware like…
Peer Reviews
No public reviews on file for this paper yet. If you reviewed it on a platform where reviews are public (OpenReview, ICLR, NeurIPS, ICML), you can paste yours below so the community can read it here.
Videos
No videos yet. Explain this paper in a talk, walkthrough, or lecture? Add one.
Taxonomy
TopicsAdvanced Malware Detection Techniques · Mobile and Web Applications · Digital and Cyber Forensics
