【24h】

AppGuard - Enforcing User Requirements on Android Apps

机译:AppGuard-在Android Apps上执行用户要求

获取原文

摘要

The success of Android phones makes them a prominent target for malicious software, in particular since the Android permission system turned out to be inadequate to protect the user against security and privacy threats. This work presents AppGuard, a powerful and flexible system for the enforcement of user-customizable security policies on un-trusted Android applications. AppGuard does not require any changes to a smartphone's firmware or root access. Our system offers complete mediation of security-relevant methods based on callee-site inline reference monitoring. We demonstrate the general applicability of AppGuard by several case studies, e.g., removing permissions from overly curious apps as well as defending against several recent real-world attacks on Android phones. Our technique exhibits very little space and runtime overhead. AppGuard is publicly available, has been invited to the Samsung Apps market, and has had more than 500,000 downloads so far.
机译:Android手机的成功使它们成为恶意软件的主要目标,特别是由于Android许可系统被证明不足以保护用户免受安全和隐私威胁的侵害。这项工作提出了AppGuard,这是一个功能强大且灵活的系统,用于在不受信任的Android应用程序上实施用户可自定义的安全策略。 AppGuard不需要对智能手机的固件或root用户访问权限进行任何更改。我们的系统基于被呼叫者现场内联参考监视提供与安全性相关方法的完全中介。我们通过几个案例研究证明了AppGuard的普遍适用性,例如,从过于好奇的应用程序中删除了权限,以及抵御了Android手机上最近发生的几种实际攻击。我们的技术展示的空间和运行时开销非常小。 AppGuard是公开可用的,已被邀请进入Samsung Apps市场,到目前为止,下载量已超过500,000。

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号