Score: 0

Security and Privacy Assessment of U.S. and Non-U.S. Android E-Commerce Applications

Published: October 14, 2025 | arXiv ID: 2510.12031v1

By: Urvashi Kishnani, Sanchari Das

Potential Business Impact:

Finds security flaws in shopping apps.

Business Areas:
E-Commerce Platforms Commerce and Shopping, Internet Services

E-commerce mobile applications are central to global financial transactions, making their security and privacy crucial. In this study, we analyze 92 top-grossing Android e-commerce apps (58 U.S.-based and 34 international) using MobSF, AndroBugs, and RiskInDroid. Our analysis shows widespread SSL and certificate weaknesses, with approximately 92% using unsecured HTTP connections and an average MobSF security score of 40.92/100. Over-privileged permissions were identified in 77 apps. While U.S. apps exhibited fewer manifest, code, and certificate vulnerabilities, both groups showed similar network-related issues. We advocate for the adoption of stronger, standardized, and user-focused security practices across regions.

Page Count
10 pages

Category
Computer Science:
Cryptography and Security