Hi Everyone,
I’m reaching out regarding my first research paper submission to arXiv under the cs.CR (Cryptography and Security) category. I have completed a research study on Android security and am currently going through the arXiv submission process.
The paper is titled:
“A Systematic Study of Security Enforcement at Android Inter-Component Boundaries: An Empirical Evaluation of First-Party Interfaces and Platform Security Guardrails on Android 17.”
The study examines how effectively Android enforces security at different inter-component communication (IPC) boundaries, including Activities, Services, BroadcastReceivers, ContentProviders, custom URI schemes, and platform-level security controls.
In the study, I conducted 120 security-enforcement evaluations across more than 30 Google and AOSP packages on Android 17. The evaluation follows an expected-versus-observed methodology under a zero-permission attacker model. The study identified 97 enforcement gaps and 23 enforcement holds, from which I derived a 14-category taxonomy of recurring enforcement gaps across manifest, code, platform, and architectural layers.
The main objective of the work is not simply to identify individual vulnerabilities, but to study whether security mechanisms at Android trust boundaries actually enforce the security behavior they are intended to provide. The paper also includes positive controls to demonstrate that the methodology can distinguish functioning security enforcement from observed gaps.
I am submitting to arXiv for the first time, and arXiv requires an endorsement for the cs.CR category.
If you are registered as an eligible arXiv endorser for cs.CR, I would be very grateful if you could endorse my submission. The endorsement request details provided by arXiv are:
Endorsement Code: 9H4EN4
Endorsement link:
ArXiv Endorsement Link
I can also share the complete manuscript if you would like to review it before endorsing.
Thank you very much for your time and support