TruzCall: Secure VoIP Calling on Android using ARM TrustZone

TruzCall: Secure VoIP Calling on Android using ARM TrustZone
复制标题

DOI:
10.1109/mobisecserv48690.2020.9042945
复制
发表时间:
2020-02
期刊:
2020 Sixth International Conference on Mobile And Secure Services (MobiSecServ)
影响因子:
--
通讯作者:
A. Ahlawat;Wenliang Du
A. Ahlawat;Wenliang Du
中科院分区:
其他
文献类型:
--
作者:
A. Ahlawat;Wenliang Du

文献摘要

被引文献

相似文献

如今,整个社会的使用都普遍存在。手机的常见用途涉及使用VoIP应用程序打电话给他人。但是,移动设备上的OSS容易妥协,为想要在打电话时想进行私人对话的用户造成风险。今天,移动设备提供了一种称为可信执行环境(TEE)的硬件保护模式,以保护用户免受受损OS的影响。在本文中,我们提出了一种设计,以允许用户通过受损的手机进行安全的端到端受保护的VoIP调用。我们使用Android OS和运行OP-TEE OS的Teblezone Tee实施了设计,Truzcall。我们使用支持Trustzone的Hikey开发板构建了一个原型,并使用开源VoIP App Linphone测试了我们的设计。我们的测试采用了基于模拟的环境,该环境允许Hikey板使用真实的手机进行音频硬件。
Use of mobile phones today has become pervasive throughout society. A common use of a phone involves calling another person using VoIP apps. However the OSes on mobile devices are prone to compromise creating a risk for users who want to have private conversations when calling someone. Mobile devices today provide a hardware-protected mode called trusted execution environment (TEE) to protect users from a compromised OS. In this paper we propose a design to allow a user to make a secure end-to-end protected VoIP call from a compromised mobile phone. We implemented our design, TruzCall using Android OS and TrustZone TEE running OP-TEE OS. We built a prototype using the TrustZone-enabled Hikey development board and tested our design using the open source VoIP app Linphone. Our testing utilizes a simulation based environment that allows a Hikey board to use a real phone for audio hardware.