Towards hierarchical security framework for smartphones

作者: Hongwei Luo , Guili He , Xiaodong Lin , Xuemin Shen

DOI: 10.1109/ICCCHINA.2012.6356880

关键词:

摘要: With powerful computing capability, plentiful functionality and advanced operating systems with flexible APIs, smartphones have become indispensable part of our daily lives. However, growing functionality, complexity popularity also increased concerns about information security, these been further exacerbated by rich third-party applications. In order to protect significant research standardizations efforts made in recent years. most activities focus on specific issues, which cannot mitigate negative effects as a whole. this paper, we first introduce common architecture including main smartphone assets. Then identify threats are clustered into vulnerabilities attacks. Based the layered structure smartphones, propose hierarchical security framework for hardware system application user data communication security. Finally, present preliminary solutions regard framework, give future direction.

参考文章(26)
Damien Octeau, William Enck, Patrick McDaniel, Swarat Chaudhuri, A study of android application security usenix security symposium. pp. 21- 21 ,(2011)
Paul Ferrill, Exploring the Android API Pro Android Python with SL4A. pp. 113- 138 ,(2011) , 10.1007/978-1-4302-3570-5_5
Jie Wang, Computer Network Security Computer Network Security: Theory and Practice. ,(2009) , 10.1007/978-3-540-79698-5
Saber Salah, Sami Abduljalil Abdulhak, Hyontai Sug, Dae-Ki Kang, HoonJae Lee, None, Performance analysis of intrusion detection systems for Smartphone security enhancements International Conference on Mobile IT Convergence. pp. 15- 19 ,(2011)
Manuel Egele, Christopher Kruegel, Engin Kirda, Giovanni Vigna, PiOS : Detecting privacy leaks in iOS applications network and distributed system security symposium. ,(2011)
Wenwu Zhu, Helen J. Wang, Chuanxiong Guo, Smart-Phone Attacks and Defenses ,(2004)
Shashi Shekhar, Michael Dietz, Anhei Shu, Dan S. Wallach, Yuliy Pisetsky, Quire: lightweight provenance for smart phone operating systems usenix security symposium. pp. 23- 23 ,(2011)
William Enck, Patrick McDaniel, Jaeyeon Jung, Byung-Gon Chun, Peter Gilbert, Anmol N. Sheth, Landon P. Cox, TaintDroid: an information-flow tracking system for realtime privacy monitoring on smartphones operating systems design and implementation. pp. 393- 407 ,(2010) , 10.5555/1924943.1924971
Jerry Cheng, Starsky H.Y. Wong, Hao Yang, Songwu Lu, SmartSiren Proceedings of the 5th international conference on Mobile systems, applications and services - MobiSys '07. pp. 258- 271 ,(2007) , 10.1145/1247660.1247690
A. Shabtai, Y. Fledel, U. Kanonov, Y. Elovici, S. Dolev, C. Glezer, Google Android: A Comprehensive Security Assessment ieee symposium on security and privacy. ,vol. 8, pp. 35- 44 ,(2010) , 10.1109/MSP.2010.2