Bamboo: LLM-Driven Discovery of API-Permission Mappings in the Android Framework
arxiv.org·14h

View PDF HTML (experimental)

Abstract:The permission mechanism in the Android Framework is integral to safeguarding the privacy of users by managing users’ and processes’ access to sensitive resources and operations. As such, developers need to be equipped with an in-depth understanding of API permissions to build robust Android apps. Unfortunately, the official API documentation by Android chronically suffers from imprecision and incompleteness, causing developers to spend significant effort to accurately discern necessary permissions. This potentially leads to incorrect permission declarations in Android app development, potentially resulting in security violations and app failures. Recent efforts in impr…

Similar Posts

Loading similar posts...