Posts

Showing posts from April, 2022

Presenting and researching during covid: Robert Choudhury

During the lockdown I was researching the implementation of sandboxes with mobile operating systems on the internet. After producing a program to survey these platforms and setting up a reporting server I was able to ascertain that sensor implementations were vulnerable to trivial attacks because of the lack of dynamic values witnessed during the survey. I furthered this work by looking into how researchers would run malware samples on local physical devices which would report the results and then be reset ready for the next execution. This setup has the benefit of including all the sensors of a mobile device and real-world readings.   I decided to imitate such a setup at home using a physical device attached via USB to a reporting server to see if I could exploit the real-world readings to tell me something about the nature of the app analysis. From this I created an app that contained a reverse Turing test to act as a trigger for malware only when a device is performing a recognised