首页> 外文期刊>Journal of network and computer applications >A root privilege management scheme with revocable authorization for Android devices
【24h】

A root privilege management scheme with revocable authorization for Android devices

机译:具有针对Android设备的可撤销授权的root特权管理方案

获取原文
获取原文并翻译 | 示例

摘要

As a critical part in mobile cloud computing, the vulnerability of Android devices can directly affect the security of the mobile cloud. The unsecured Android can be potentially exploited by malwares to obtain the root privilege. Root privilege misuse is the critical issue for Android security, which breaks the integrity of Android security and rises the risk of permission escalation from malwares. The existing solutions still fail to balance the trade-off between the users desires on using root privilege and the Android security, which lays risks in leading to the root privilege misuse. To address this issue, a root privilege management scheme named Root Privilege Manager (RPM) is proposed, which adopts the root privilege access control to guarantee the exclusive root access opportunity of the authenticated apps. RPM verifies the authorization and integrity of root requesting apps based on the extracted authorization files during app installation, and then root access management controls the granting of root privilege based on the authenticated results. In this way, the end users are free from the embarrassment of appropriate decision-making while confront root access management. The prototype of RPM is implemented to evaluate its effectiveness, efficiency and performance. The experiments show RPM can effectively control the granting of root privilege and the time consumption in root access management is increased by 0.21%-0.94% respectively compared with the user management.
机译:作为移动云计算的关键部分,Android设备的漏洞会直接影响移动云的安全性。不安全的Android可能会被恶意软件利用以获取root特权。根特权滥用是Android安全的关键问题,它破坏了Android安全的完整性,并增加了来自恶意软件的权限升级的风险。现有的解决方案仍然无法在用户使用root特权与Android安全性之间进行权衡,这会导致root特权被滥用。为了解决此问题,提出了一种名为Root Privilege Manager(RPM)的root特权管理方案,该方案采用root特权访问控制来保证已验证应用程序的独占root访问机会。 RPM在应用安装过程中根据提取的授权文件来验证根请求应用的授权和完整性,然后根访问管理根据已验证的结果来控制对根特权的授予。这样,最终用户可以在面对根访问管理的同时摆脱适当决策的尴尬。 RPM的原型用于评估其有效性,效率和性能。实验表明,RPM可以有效地控制根特权的授予,与用户管理相比,根访问管理的时间消耗分别增加了0.21%-0.94%。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号