CISPA
Browse

Secure Multi-Execution in Android

Download (1018.67 kB)
conference contribution
posted on 2023-11-29, 18:10 authored by Dhiman Chakraborty, Christian Hammer, Sven BugielSven Bugiel
Mobile operating systems, such as Google’s Android, have become a fixed part of our daily lives and are entrusted with a plethora of private information. Congruously, their data protection mechanisms have been improved steadily over the last decade and, in particular, for Android, the research community has explored various enhancements and extensions to the access control model. However, the vast majority of those solutions has been concerned with controlling the access to data, but equally important is the question of how to control the flow of data once released. Ignoring control over the dissemination of data between applications or between components of the same app, opens the door for attacks, such as permission re-delegation or privacy-violating third-party libraries. Controlling information flows is a long-standing problem, and one of the most recent and practical-oriented approaches to information flow control is secure multi-execution. In this paper, we present Ariel, the design and implementation of an IFC architecture for Android based on the secure multi-execution of apps. Ariel demonstrably extends Android’s system with support for executing multiple instances of apps, and it is equipped with a policy lattice derived from the protection levels of Android’s permissions as well as an I/O scheduler to achieve control over data flows between application instances. We demonstrate how secure multi-execution with Ariel can help to mitigate two prominent attacks on Android, permission re-delegations and malicious advertisement libraries.

History

Preferred Citation

Dhiman Chakraborty, Christian Hammer and Sven Bugiel. Secure Multi-Execution in Android. In: Selected Areas in Cryptography (SAC). 2019.

Primary Research Area

  • Secure Connected and Mobile Systems

Name of Conference

Selected Areas in Cryptography (SAC)

Legacy Posted Date

2019-05-02

Open Access Type

  • Unknown

BibTeX

@inproceedings{cispa_all_2884, title = "Secure Multi-Execution in Android", author = "Chakraborty, Dhiman and Hammer, Christian and Bugiel, Sven", booktitle="{Selected Areas in Cryptography (SAC)}", year="2019", }

Usage metrics

    Categories

    No categories selected

    Exports

    RefWorks
    BibTeX
    Ref. manager
    Endnote
    DataCite
    NLM
    DC