首页    期刊浏览 2025年02月20日 星期四
登录注册

文章基本信息

  • 标题:A Novel Android Security Framework to Prevent Privilege Escalation Attacks
  • 本地全文:下载
  • 作者:Ahamed K. H. Hussain ; Mohsen Kakavand ; Mira Silval
  • 期刊名称:International Journal of Computer Network and Information Security
  • 印刷版ISSN:2074-9090
  • 电子版ISSN:2231-4946
  • 出版年度:2020
  • 卷号:12
  • 期号:1
  • 页码:20-26
  • DOI:10.5815/ijcnis.2020.01.03
  • 出版社:MECS Publisher
  • 摘要:Android is the most popular operating system in the world, with numerous applications having been developed for the platform since its inception, however, it has its fair share of security issues. Despite security precautions taken by developers and the system itself when it comes to permission delegation for applications, privilege escalation attacks are still possible up till Android API level 25. Unfortunately, many existing detection and prevention solutions fall short of the standard necessary or are taxing in resources not found on most Android devices. Proof is shown that a custom created malicious application can elevate its privileges, beyond the permissions it was given, in the existing Android system. In this paper, a modification to the existing Android framework is proposed, one that can detect inter-component communication messages between malicious apps attempting to elevate their privileges and benign applications. Part of this framework is the ability for the user to decide if permissions should be elevated, allowing them some measure of control. The results of the experimental evaluation demonstrate that the solution proposed is effective in preventing privilege escalation attacks on Android API level 24..
  • 关键词:Android Security;Privilege Escalation;Permission Escalation
国家哲学社会科学文献中心版权所有