Title :
Tamper-resistant database logging on mobile devices
Author :
Mazumdar, Subhasish ; Paturi, Anand
Author_Institution :
New Mexico Inst. of Min. & Technol., Socorro, NM, USA
Abstract :
Modern mobile devices are able to run a wide range of thirdparty/service provider applications that provide users with a variety of attractive services. These applications have their own databases on the mobile device; user data pertaining to the application are stored there. The popularity comes with a price: attackers are interested in exploiting the weaknesses of the mobile systems to manipulate personal information of users via malicious code or malware. Another problem is that mobile devices are often stolen or misplaced and stored data, which users value more than the hardware, compromised. We propose a consolidated logging scheme that reflects all transactions performed on all databases of mobile applications. Only a part of this logis stored on the mobile device, thus addressing the conflict between space limitation in these devices and the space requirement of logging; yet, it is tamper-resistant and enables restoration of data through logging. We formalize our claims and explain how our scheme addresses some important problems created by malware and theft.
Keywords :
database management systems; invasive software; mobile computing; system monitoring; malicious code; malware; mobile database; mobile devices; mobile systems; tamper-resistant database logging; Forensics; Indexes; Malware; Mobile communication; Mobile handsets; Servers;
Conference_Titel :
Internet Security (WorldCIS), 2011 World Congress on
Print_ISBN :
978-1-4244-8879-7
Electronic_ISBN :
978-0-9564263-7-6