MOSES: supporting operation modes on smartphones

MOSES: supporting operation modes on smartphones
复制标题

MOSES:支持智能手机上的操作模式

DOI:
--
复制
发表时间:
2012
期刊:
ACM Symposium on Access Control Models and Technologies
影响因子:
--
通讯作者:
Earlence Fernandes
Earlence Fernandes
中科院分区:
--
文献类型:
--
作者:
G. Russello;M. Conti;B. Crispo;Earlence Fernandes

文献摘要

被引文献

相似文献

智能手机是提高企业用户生产力的非常有效的工具。随着计算能力和存储容量的不断增强,智能手机允许最终用户执行多项任务,并在移动时始终进行更新。因此,最终用户要求他们的个人智能手机连接到他们的工作 IT 基础设施。公司愿意支持员工拥有智能手机,因为员工的生产力得到提高。然而,人们发现智能手机安全机制对恶意应用程序提供的保护非常有限,这些恶意应用程序可能会泄露存储在智能手机上的数据。这对敏感的企业数据构成了严重威胁。在本文中,我们介绍了 MOSES,这是一个基于策略的框架,用于在 Android 平台上实施应用程序和数据的软件隔离。在 MOSES 中,可以在单个智能手机中定义不同的安全配置文件。每个安全配置文件都与一组控制对应用程序和数据的访问的策略相关联。 MOSES 的主要特征之一是从一种安全配置文件动态切换到另一种安全配置文件。
Smartphones are very effective tools for increasing the productivity of business users. With their increasing computational power and storage capacity, smartphones allow end users to perform several tasks and be always updated while on the move. As a consequence, end users require that their personal smartphones are connected to their work IT infrastructure. Companies are willing to support employee-owned smartphones because of the increase in productivity of their employees. However, smartphone security mechanisms have been discovered to offer very limited protection against malicious applications that can leak data stored on them. This poses a serious threat to sensitive corporate data. In this paper we present MOSES, a policy-based framework for enforcing software isolation of applications and data on the Android platform. In MOSES, it is possible to define distinct security profiles within a single smartphone. Each security profile is associated with a set of policies that control the access to applications and data. One of the main characteristics of MOSES is the dynamic switching from one security profile to another.