信息网络安全
信息網絡安全
신식망락안전
NETINFO SECURITY
2014年
1期
43-47
,共5页
Android安全%重打包%动态权限管理%细粒度策略%应用加固
Android安全%重打包%動態權限管理%細粒度策略%應用加固
Android안전%중타포%동태권한관리%세립도책략%응용가고
Android security%repackaging technology%dynamic permissions management%ifne-grained policy%reinforce Android apps
随着移动互联网快速发展,智能手机面临着严峻的安全威胁。由于Android权限划分的粗粒度以及权限授权一次性的约束,对于应用申请的权限,用户要么全部接受,要么拒绝安装,对于安装后应用可疑行为束手无策。为此文章设计了利用重打包注入安全防护代码的加固系统,不仅提供应用动态权限管理机制,还提供权限划分细粒度的安全策略,从源头上遏制恶意代码行为,用户也可根据需求定制策略,满足不同安全需求的安全加固应用。
隨著移動互聯網快速髮展,智能手機麵臨著嚴峻的安全威脅。由于Android權限劃分的粗粒度以及權限授權一次性的約束,對于應用申請的權限,用戶要麽全部接受,要麽拒絕安裝,對于安裝後應用可疑行為束手無策。為此文章設計瞭利用重打包註入安全防護代碼的加固繫統,不僅提供應用動態權限管理機製,還提供權限劃分細粒度的安全策略,從源頭上遏製噁意代碼行為,用戶也可根據需求定製策略,滿足不同安全需求的安全加固應用。
수착이동호련망쾌속발전,지능수궤면림착엄준적안전위협。유우Android권한화분적조립도이급권한수권일차성적약속,대우응용신청적권한,용호요요전부접수,요요거절안장,대우안장후응용가의행위속수무책。위차문장설계료이용중타포주입안전방호대마적가고계통,불부제공응용동태권한관리궤제,환제공권한화분세립도적안전책략,종원두상알제악의대마행위,용호야가근거수구정제책략,만족불동안전수구적안전가고응용。
With the rapid development of mobile Internet, smart phones are facing serious security threats. Due to the coarse-grained division of permission and permission authorized only one time on Android, users have either accept all permissions at install time, or else can’t install an App at all. For suspicious behavior ,users are even more helpless after applications installed. This paper designs a system that using the Android repackaging technology, which injects the security code to the application. It’s not only provides the dynamic permission management but also provides the ifne-grained security policy and contain the malicious code from the source. Users can also customize strategy to meet the different security need.