activity
20182021
most citedSecurity Smells in Android

47 citations · 50 across the 4 of their papers we have counts for

collaborators
Showing cs.CRShow all

6 papers · 1 filter

cs.CR2021

Security Header Fields in HTTP Clients

Pascal Gadient, Oscar Nierstrasz, Mohammad Ghafari

HTTP headers are commonly used to establish web communications, and some of them are relevant for security. However, we have only little information about the usage and support of…

cs.CR2021

Phish What You Wish

Pascal Gadient, Pascal Gerig, Oscar Nierstrasz +1

IT professionals have no simple tool to create phishing websites and raise the awareness of users. We developed a prototype that can dynamically mimic websites by using enriched sc…

cs.CR20213 cited

Security Smells Pervade Mobile App Servers

Pascal Gadient, Marc-Andrea Tarnutzer, Oscar Nierstrasz +1

[Background] Web communication is universal in cyberspace, and security risks in this domain are devastating. [Aims] We analyzed the prevalence of six security smells in mobile app…

cs.CR202047 cited

Security Smells in Android

Mohammad Ghafari, Pascal Gadient, Oscar Nierstrasz

The ubiquity of smartphones, and their very broad capabilities and usage, make the security of these devices tremendously important. Unfortunately, despite all progress in security…

cs.CR2020

Web APIs in Android through the Lens of Security

Pascal Gadient, Mohammad Ghafari, Marc-Andrea Tarnutzer +1

Web communication has become an indispensable characteristic of mobile apps. However, it is not clear what data the apps transmit, to whom, and what consequences such transmissions…

cs.CR2018

Security Code Smells in Android ICC

Pascal Gadient, Mohammad Ghafari, Patrick Frischknecht +1

Android Inter-Component Communication (ICC) is complex, largely unconstrained, and hard for developers to understand. As a consequence, ICC is a common source of security vulnerabi…