Location via proxy:   [ UP ]  
[Report a bug]   [Manage cookies]                
Skip to main content

Showing 1–3 of 3 results for author: Kojusner, B

Searching in archive cs. Search in all archives.
.
  1. arXiv:2301.10056  [pdf

    cs.CR cs.CV cs.MM cs.SD eess.AS

    Side Eye: Characterizing the Limits of POV Acoustic Eavesdropping from Smartphone Cameras with Rolling Shutters and Movable Lenses

    Authors: Yan Long, Pirouz Naghavi, Blas Kojusner, Kevin Butler, Sara Rampazzi, Kevin Fu

    Abstract: Our research discovers how the rolling shutter and movable lens structures widely found in smartphone cameras modulate structure-borne sounds onto camera images, creating a point-of-view (POV) optical-acoustic side channel for acoustic eavesdropping. The movement of smartphone camera hardware leaks acoustic information because images unwittingly modulate ambient sound as imperceptible distortions.… ▽ More

    Submitted 26 January, 2023; v1 submitted 24 January, 2023; originally announced January 2023.

    Journal ref: 2023 IEEE Symposium on Security and Privacy

  2. arXiv:2204.01516  [pdf, other

    cs.CR cs.SE

    SAUSAGE: Security Analysis of Unix domain Socket Usage in Android

    Authors: Mounir Elgharabawy, Blas Kojusner, Mohammad Mannan, Kevin R. B. Butler, Byron Williams, Amr Youssef

    Abstract: The Android operating system is currently the most popular mobile operating system in the world. Android is based on Linux and therefore inherits its features including its Inter-Process Communication (IPC) mechanisms. These mechanisms are used by processes to communicate with one another and are extensively used in Android. While Android-specific IPC mechanisms have been studied extensively, Unix… ▽ More

    Submitted 4 April, 2022; originally announced April 2022.

    Comments: Accepted to EuroS&P 2022

  3. arXiv:2111.01631  [pdf, other

    cs.SE

    SO{U}RCERER: Developer-Driven Security Testing Framework for Android Apps

    Authors: Muhammad Sajidur Rahman, Blas Kojusner, Ryon Kennedy, Prerit Pathak, Lin Qi, Byron Williams

    Abstract: Frequently advised secure development recommendations often fall short in practice for app developers. Tool-driven (e.g., using static analysis tools) approaches lack context and domain-specific requirements of an app being tested. App developers struggle to find an actionable and prioritized list of vulnerabilities from a laundry list of security warnings reported by static analysis tools. Proces… ▽ More

    Submitted 2 November, 2021; v1 submitted 2 November, 2021; originally announced November 2021.

    Comments: Accepted at the 2021 Automated Software Engineering Conference's Workshop on Advances in Mobile App Analysis (A-Mobile'21)

    ACM Class: D.2.1; D.2.5; K.4.3; K.7.0; K.6.3