...
首页> 外文期刊>International Journal of Information Security >Formal modeling and automatic enforcement of Bring Your Own Device policies
【24h】

Formal modeling and automatic enforcement of Bring Your Own Device policies

机译:自带设备策略的正式建模和自动实施

获取原文
获取原文并翻译 | 示例
           

摘要

The emerging Bring Your Own Device (BYOD) paradigm is pushing the adoption of employees' personal mobile devices (e.g., smartphones and tablets) inside organizations for professional usage. However, allowing private, general purpose devices to interact with proprietary, possibly critical infrastructures enables obvious threats. Unfortunately, current mobile OSes do not seem to provide adequate security support for dealing with them. In this paper, we present a formal modeling and assessment of the security of mobile applications. In particular, we propose a security framework for verifying and enforcing BYOD security policies on Android devices. Interestingly, our approach is non-invasive and only requires minor platform modifications at application level. Finally, we provide empirical evidence of the practical feasibility of the approach by means of a prototype which we used to validate a set of real Android applications.
机译:新兴的自带设备(BYOD)范例正在推动组织内部采用员工的个人移动设备(例如,智能手机和平板电脑)进行专业使用。但是,允许私有通用设备与专有的,可能关键的基础结构进行交互会带来明显的威胁。不幸的是,当前的移动操作系统似乎没有为处理它们提供足够的安全支持。在本文中,我们提出了对移动应用程序安全性的正式建模和评估。特别是,我们提出了一个安全框架,用于在Android设备上验证和实施BYOD安全策略。有趣的是,我们的方法是非侵入性的,只需要在应用程序级别进行较小的平台修改即可。最后,我们通过一个原型来提供该方法的实际可行性的经验证据,该原型用于验证一组真实的Android应用程序。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号