Friday, July 27, 2012

Researchers Beat Google's Bouncer

[![][1]][2]
[![][3]][4]

An anonymous reader writes "When earlier this year Google introduced Bouncer -- an automated app scanning service that analyzes apps by running them on Google's cloud infrastructure and simulating how they will run on an Android device -- it shared practically nothing about how it operates, in the hopes of making malicious app developers' scramble for a while to discover how to bypass it. As it turned out, several months later security researchers Jon Oberheide and Charlie Miller discovered -- among other things -- just what kind of virtual environment Bouncer uses (the QEMU processor emulator) and that all requests coming from Google came from a specific IP block, and made an app that was instructed to behave as a legitimate one every time it detected this specific virtual environment. Now two more researchers have effectively proved that Bouncer can be rather easily fooled into considering a malicious app harmless."

[![][5]][6] [![][7]][8] [![Share on Google+][9]][10]

[Read more of this story][11] at Slashdot.

![][12]

[1]: http://feedads.g.doubleclick.net/~at/XCs7Lbvvm2wHjz2PAW0oz7ZZfCw/0/di
[2]: http://feedads.g.doubleclick.net/~at/XCs7Lbvvm2wHjz2PAW0oz7ZZfCw/0/da
[3]: http://feedads.g.doubleclick.net/~at/XCs7Lbvvm2wHjz2PAW0oz7ZZfCw/1/di
[4]: http://feedads.g.doubleclick.net/~at/XCs7Lbvvm2wHjz2PAW0oz7ZZfCw/1/da
[5]: http://a.fsdn.com/sd/twitter_icon_large.png
[6]: http://twitter.com/home?status=Researchers+Beat+Google's+Bouncer%3A+http%3A%2F%2Fbit.ly%2FOiezLh
[7]: http://a.fsdn.com/sd/facebook_icon_large.png
[8]: http://www.facebook.com/sharer.php?u=http%3A%2F%2Ftech.slashdot.org%2Fstory%2F12%2F07%2F27%2F169223%2Fresearchers-beat-googles-bouncer%3Futm_source%3Dslashdot%26utm_medium%3Dfacebook
[9]: http://www.gstatic.com/images/icons/gplus-16.png
[10]: http://plus.google.com/share?url=http://tech.slashdot.org/story/12/07/27/169223/researchers-beat-googles-bouncer?utm_source=slashdot&utm_medium=googleplus
[11]: http://tech.slashdot.org/story/12/07/27/169223/researchers-beat-googles-bouncer?utm_source=rss1.0moreanon&utm_medium=feed
[12]: http://feeds.feedburner.com/~r/Slashdot/slashdot/~4/ld7XNDGYsgs

URL: http://rss.slashdot.org/~r/Slashdot/slashdot/~3/ld7XNDGYsgs/researchers-beat-googles-bouncer

No comments:

Post a Comment