SecureMyDroid: enforcing security in the mobile devices lifecycle

SecureMyDroid: enforcing security in the mobile devices lifecycle
复制标题

SecureMyDroid:在移动设备生命周期中加强安全性

DOI:
10.1145/1852666.1852696
复制
发表时间:
2010
影响因子:
1.7
通讯作者:
G. Italiano
G. Italiano
中科院分区:
医学4区
文献类型:
--
作者:
A. Distefano;A. Grillo;Alessandro Lentini;G. Italiano

文献摘要

被引文献

相似文献

由于移动设备(如智能手机、PDA、移动电话等)的广泛增长和普及,以及其强大的功能,许多用户正在大量使用移动设备进行个人和与工作相关的(公司)活动。这对此类设备的安全构成了严重威胁。在本文中,我们提出了一种新的方法,基于移动设备安全生命周期的定义,以将企业安全策略扩展到此类设备。我们专注于一种新的视角,使我们能够将强大的安全策略和服务实施应用于移动设备。提议的方法利用移动设备操作系统(OS)的定制版本。特别是,我们提出了一个基于Google Android操作系统定制版本的安全移动设备的原型(称为SecureMyDroid)。这款原型机的强大功能之一在于能够完全定制移动设备的运行环境。这防止了对于已经通过安装诸如反恶意软件、反病毒等定制应用程序进行了个性化的设备而言仍然可行的大部分篡改。
Due to the extensive growth and diffusion of mobile devices (e.g., Smartphone, PDAs, mobile phones, etc.), and to their powerful capabilities, many users are massively using mobile devices both for personal and for work-related (corporate) activities. This poses serious threats to the security of such devices. In this paper, we propose a novel approach, based on the definition of a secure lifecycle for mobile devices, in order to extend corporate security policies to such devices. We focus on a new perspective that allows us to apply strong security policies and services enforcement to mobile devices. The approach proposed leverages on a customized release of the mobile device Operating System (OS). In particular, we present a prototype (called SecureMyDroid) of a secure mobile device based on a customized release of the Google Android operating system. One of the strong features of this prototype lies in the capability of fully customizing the operating environment of mobile devices. This prevents most of the tampering that is still practicable for devices that have been personalized through the installation of customized applications such as antimalware, antivirus, etc.