• DocumentCode
    186862
  • Title

    User-defined privilege restriction mechanism for secure execution environments on Android

  • Author

    Boheung Chung ; Youngsung Jeon ; Jeongnyeo Kim

  • Author_Institution
    Cyber Security Res. Dept., Electron. & Telecommun. Res. Inst., Daejeon, South Korea
  • fYear
    2014
  • fDate
    22-24 Oct. 2014
  • Firstpage
    815
  • Lastpage
    816
  • Abstract
    Recently emerging mobile devices have powerful capabilities and access personal and private data ever than before. Whenever we want to use various services, we would encounter unexpected security problems unless we carefully approve and manage app´s permissions. To make secure execution environment for users or apps, we propose strict and light-weight privilege restriction mechanism. For this purpose, we strictly distinguish app´s priority more than that of Android and validate their permissions at run-time. As all apps must be a secure or a non-secure one according to their priority at run-time, Android doesn´t need to statically analyze in its database for all installed apps to validate and permit apps´ privilege. Providing secure environment for secure one, we dynamically constrain the others privileges by deleting some of its permissions temporarily. With the help of our proposed method, users can easily identify the most privileged app among all others and they could efficiently prohibit unintended app´s behavior to attain higher privilege without theirs acknowledgement.
  • Keywords
    Android (operating system); authorisation; mobile computing; smart phones; Android access control; light-weight privilege restriction mechanism; mobile devices; private data; secure execution environments; security problems; user-defined privilege restriction mechanism; Androids; Databases; Humanoid robots; Internet; Security; Smart phones; Android access control; least privilege; privilege restriction; separating application;
  • fLanguage
    English
  • Publisher
    ieee
  • Conference_Titel
    Information and Communication Technology Convergence (ICTC), 2014 International Conference on
  • Conference_Location
    Busan
  • Type

    conf

  • DOI
    10.1109/ICTC.2014.6983299
  • Filename
    6983299