Skip to main navigation Skip to search Skip to main content

WinSpy: Cross-window Side-channel Attacks on Android’s Multi-window Mode

  • Zeng Li
  • , Chuan Yan
  • , Liuhuo Wan
  • , Hui Zhuang
  • , Pengfei Hu
  • , Guangdong Bai
  • , Yiran Shen*
  • *Corresponding author for this work

Research output: Chapters, Conference Papers, Creative and Literary WorksRGC 32 - Refereed conference paper (with host publication)peer-review

Abstract

With the development of the Android system and increasing screen size, the use of multi-window mode has become prevalent among users. However, the security and privacy implications associated with this mode have not been thoroughly investigated. This paper uncovers severe and unique security vulnerabilities in Android’s multi-window mode, revealing several high-risk side-channels that facilitate diverse cross-window attacks, leading to significant breaches of user privacy. In detail, our research introduces WinSpy, a framework leveraging a newly discovered resource contention side-channel in multi-window mode to fingerprint app launches, web pages, and in-app activities, all without violating Android’s permission framework. Our extensive evaluations demonstrate that WinSpy achieves high accuracy (from 70 to 80% detecting website and app launches to over 97% recognizing critical in-app activities). Additionally, we reveal that due to Android’s lenient permission management for this mode, window apps can also use Inertial Measurement Unit sensors to launch attacks, such as inferring the user’s touch positions outside the window with high precision. Furthermore, we propose systematic mitigations against these vulnerabilities. © 2025 Copyright held by the owner/author(s). Publication rights licensed to ACM.
Original languageEnglish
Title of host publicationACM MobiCom ’25
Subtitle of host publicationProceedings of the 31st Annual International Conference on Mobile Computing and Networking
PublisherAssociation for Computing Machinery
Pages407-421
Number of pages15
ISBN (Print)9798400711299
DOIs
Publication statusPublished - Nov 2025
Externally publishedYes
Event31st Annual International Conference on Mobile Computing and Networking (ACM MobiCom 2025) - , Hong Kong, China
Duration: 4 Nov 20258 Nov 2025
https://www.sigmobile.org/mobicom/2025/index.html

Publication series

NameACM MobiCom - Proceedings of the Annual International Conference on Mobile Computing and Networking

Conference

Conference31st Annual International Conference on Mobile Computing and Networking (ACM MobiCom 2025)
Abbreviated titleACM MobiCom ’25
PlaceHong Kong, China
Period4/11/258/11/25
Internet address

Research Keywords

  • Android security and privacy
  • Multi-window mode
  • Side-channel attack

Fingerprint

Dive into the research topics of 'WinSpy: Cross-window Side-channel Attacks on Android’s Multi-window Mode'. Together they form a unique fingerprint.

Cite this