首页> 外文会议>IEEE European Symposium on Security and Privacy Workshops >The Curious Case of the Curious Case: Detecting Touchscreen Events Using a Smartphone Protective Case
【24h】

The Curious Case of the Curious Case: Detecting Touchscreen Events Using a Smartphone Protective Case

机译:好奇的情况下的好奇的情况:使用智能手机保护套检测触摸屏事件

获取原文

摘要

Security-conscious users are very careful with software they allow their phone to run. They are much less careful with the choices they make regarding accessories such as headphones or chargers and only few, if any, care about cyber security threats coming from the phone's protective case. We show how a malicious smartphone protective case can be used to detect and monitor the victim's interaction with the phone's touchscreen, opening the door to keylogger-like attacks, threatening the user's security and privacy. This feat is achieved by implementing a hidden capacitive sensing mechanism inside the case. Our attack is both sensitive enough to track the user's finger location across the screen, and simple and cheap enough to be mass-produced and deployed en masse. We discuss the theoretical principles behind this attack, present a preliminary proof-of-concept, and discuss potential countermeasures and mitigations.
机译:具有安全意识的用户在使用允许其手机运行的软件时要非常小心。他们在选择诸如耳机或充电器之类的配件时要谨慎得多,只有很少(如果有的话)关心来自手机保护套的网络安全威胁。我们将展示如何使用恶意的智能手机保护套来检测和监视受害者与手机触摸屏的互动,为类似键盘记录程序的攻击打开大门,威胁用户的安全和隐私。通过在壳体内部实施隐藏式电容感应机制可实现这一壮举。我们的攻击既灵敏到足以在屏幕上跟踪用户的手指位置,又既简单又便宜,足以批量生产和部署。我们讨论了这种攻击背后的理论原理,提出了初步的概念证明,并讨论了潜在的对策和缓解措施。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号