Careful About What App Promotion Ads Recommend! Detecting and Explaining Malware Promotion via App Promotion Graph

Shang Ma

Network and Distributed System Security (NDSS) Symposium 2025 · Day 3 · Malware

This talk, presented by Shang Ma from the University of Nardam, delves into a critical and often overlooked vector for mobile malware distribution: app promotion ads. While ad-supported apps are ubiquitous and a primary means for users to discover new applications, a significant vulnerability exists within this ecosystem. Specifically, the presentation highlights how "custom-made" app promotion ads, which bypass the vetting processes of established ad libraries, are being actively exploited by malicious actors to promote a wide array of malware. The research underscores the inadequacy of current static analysis methods for detection, proposing a novel, graph-based approach to identify and explain these insidious promotion tactics.

AI review

Legitimate academic research with a real contribution — using graph-based promotion relationships to catch mobile malware that static analysis misses. The core insight is sound and the detection gains are measurable, but this is squarely a conference paper presentation, not a practitioner-facing talk with operational teeth.

Watch on YouTube