RV-Android: Efficient Parametric Android Runtime Verification, a Brief Tutorial

  • Philip Daian
  • Yliès Falcone
  • Patrick Meredith
  • Traian Florin Şerbănuţă
  • Shin’ichi Shiriashi
  • Akihito Iwai
  • Grigore Rosu
Conference paper

DOI: 10.1007/978-3-319-23820-3_24

Volume 9333 of the book series Lecture Notes in Computer Science (LNCS)
Cite this paper as:
Daian P. et al. (2015) RV-Android: Efficient Parametric Android Runtime Verification, a Brief Tutorial. In: Bartocci E., Majumdar R. (eds) Runtime Verification. Lecture Notes in Computer Science, vol 9333. Springer, Cham

Abstract

RV-Android is a new freely available open source runtime library for monitoring formal safety properties on Android. RV-Android uses the commercial RV-Monitor technology as its core monitoring library generation technology, allowing for the verification of safety properties during execution and operating entirely in userspace with no kernel or operating system modifications required. RV-Android improves on previous Android monitoring work by replacing the JavaMOP framework with RV-Monitor, a more advanced monitoring library generation tool with core algorithmic improvements that greatly improve resource consumption, efficiency, and battery life considerations. We demonstrate the developer usage of RV-Android with the standard Android build process, using instrumentation mechanisms effective on both Android binaries and source code. Our method allows for both property development and advanced application testing through runtime verification. We showcase the user frontend of RV-Monitor, which is available for public demo use and requires no knowledge of RV concepts. We explore the extra expressiveness the MOP paradigm provides over simply writing properties as aspects through two sample security properties, and show an example of a real security violation mitigated by RV-Android on-device. Lastly, we propose RV as an extension to the next-generation Android permissions system debuting in Android M.

Copyright information

© Springer International Publishing Switzerland 2015

Authors and Affiliations

  • Philip Daian
    • 1
  • Yliès Falcone
    • 4
  • Patrick Meredith
    • 1
  • Traian Florin Şerbănuţă
    • 1
  • Shin’ichi Shiriashi
    • 2
  • Akihito Iwai
    • 3
  • Grigore Rosu
    • 1
    • 4
  1. 1.Runtime Verification Inc.UrbanaUSA
  2. 2.Toyota InfoTechnology Center U.S.A.Mountain ViewUSA
  3. 3.Denso International America Inc.San JoseUSA
  4. 4.University of Illinois at Urbana-ChampaignChampaignUSA