Zum Hauptinhalt springen

Showing 1–2 of 2 results for author: Malisa, L

Searching in archive cs. Search in all archives.
.
  1. arXiv:1611.01477  [pdf, other

    cs.CR

    Using Hover to Compromise the Confidentiality of User Input on Android

    Authors: Enis Ulqinaku, Luka Malisa, Julinda Stefa, Alessandro Mei, Srdjan Capkun

    Abstract: We show that the new hover (floating touch) technology, available in a number of today's smartphone models, can be abused by any Android application running with a common SYSTEM_ALERT_WINDOW permission to record all touchscreen input into other applications. Leveraging this attack, a malicious application running on the system is therefore able to profile user's behavior, capture sensitive input s… ▽ More

    Submitted 2 August, 2017; v1 submitted 4 November, 2016; originally announced November 2016.

    Comments: 11 pages

  2. arXiv:1604.04723  [pdf, other

    cs.CR

    Hacking in the Blind: (Almost) Invisible Runtime UI Attacks on Safety-Critical Terminals

    Authors: Luka Malisa, Kari Kostiainen, Thomas Knell, David Sommer, Srdjan Capkun

    Abstract: Many terminals are used in safety-critical operations in which humans, through terminal user interfaces, become a part of the system control loop (e.g., medical and industrial systems). These terminals are typically embedded, single-purpose devices with restricted functionality, sometimes air-gapped and increasingly hardened. We describe a new way of attacking such terminals in which an adversar… ▽ More

    Submitted 16 April, 2016; originally announced April 2016.