...
首页> 外文期刊>Wireless communications & mobile computing >From Hardware to Operating System: A Static Measurement Method of Android System Based on TrustZone
【24h】

From Hardware to Operating System: A Static Measurement Method of Android System Based on TrustZone

机译:从硬件到操作系统:基于TrustZone的Android系统静态测量方法

获取原文
           

摘要

Android system has been one of the main targets of hacker attacks for a long time. At present, it is faced with security risks such as privilege escalation attacks, image tampering, and malicious programs. In view of the above risks, the current detection of the application layer can no longer guarantee the security of the Android system. The security of mobile terminals needs to be fully protected from the bottom to the top, and the consistency test of the hardware system is realized from the hardware layer of the terminal. However, there is not a complete set of security measures to ensure the reliability and integrity of the Android system at present. Therefore, from the perspective of trusted computing, this paper proposes and implements a trusted static measurement method of the Android system based on TrustZone to protect the integrity of the system layer and provide a trusted underlying environment for the detection of the Android application layer. This paper analyzes from two aspects of security and efficiency. The experimental results show that this method can detect the Android system layer privilege escalation attack and discover the rootkit that breaks the integrity of the Android kernel in time during the startup process, and the performance loss of this method is within the acceptable range.
机译:Android系统一直是黑客攻击的主要目标之一。目前,它面临安全风险,如特权升级攻击,图像篡改和恶意程序。鉴于上述风险,应用层的电流检测不再保证Android系统的安全性。需要完全保护移动终端的安全性从底部到顶部完全保护,并且硬件系统的一致性测试是从终端的硬件层实现的。但是,没有完整的安全措施,以确保目前Android系统的可靠性和完整性。因此,从受信任计算的角度来看,本文提出了一种基于TrustZone的Android系统的可信静态测量方法,以保护系统层的完整性,并为检测到Android应用层提供可信赖的底层环境。本文从安全性和效率的两个方面分析。实验结果表明,此方法可以检测Android系统层权限升级攻击,并发现启动过程中及时中断Android内核完整性的rootkit,此方法的性能丢失在可接受的范围内。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号