DocumentCode :
186862
Title :
User-defined privilege restriction mechanism for secure execution environments on Android
Author :
Boheung Chung ; Youngsung Jeon ; Jeongnyeo Kim
Author_Institution :
Cyber Security Res. Dept., Electron. & Telecommun. Res. Inst., Daejeon, South Korea
fYear :
2014
fDate :
22-24 Oct. 2014
Firstpage :
815
Lastpage :
816
Abstract :
Recently emerging mobile devices have powerful capabilities and access personal and private data ever than before. Whenever we want to use various services, we would encounter unexpected security problems unless we carefully approve and manage app´s permissions. To make secure execution environment for users or apps, we propose strict and light-weight privilege restriction mechanism. For this purpose, we strictly distinguish app´s priority more than that of Android and validate their permissions at run-time. As all apps must be a secure or a non-secure one according to their priority at run-time, Android doesn´t need to statically analyze in its database for all installed apps to validate and permit apps´ privilege. Providing secure environment for secure one, we dynamically constrain the others privileges by deleting some of its permissions temporarily. With the help of our proposed method, users can easily identify the most privileged app among all others and they could efficiently prohibit unintended app´s behavior to attain higher privilege without theirs acknowledgement.
Keywords :
Android (operating system); authorisation; mobile computing; smart phones; Android access control; light-weight privilege restriction mechanism; mobile devices; private data; secure execution environments; security problems; user-defined privilege restriction mechanism; Androids; Databases; Humanoid robots; Internet; Security; Smart phones; Android access control; least privilege; privilege restriction; separating application;
fLanguage :
English
Publisher :
ieee
Conference_Titel :
Information and Communication Technology Convergence (ICTC), 2014 International Conference on
Conference_Location :
Busan
Type :
conf
DOI :
10.1109/ICTC.2014.6983299
Filename :
6983299
Link To Document :
بازگشت