Netinfo Security ›› 2015, Vol. 15 ›› Issue (9): 89-92.doi: 10.3969/j.issn.1671-1122.2015.09.021

• Orginal Article • Previous Articles     Next Articles

A Framework Design for Preventing Android from Apps Privilege-Escalation Attacks

Xu-dong SHAO1(), Yang LIU2   

  1. 1.The Third Research Institute of Ministry of Public Security, Shanghai 201204, China
    2.Shanghai Chenrui Information Technology Corporation, Shanghai 201204, China
  • Received:2015-07-15 Online:2015-09-01 Published:2015-11-13

Abstract:

Android has been pointed in recent researches it is easy suffered from app’s privilege-escalation attacks. But most of the researches focus on confused deputy attacks, and they are lack of consideration about collusion attacks. In this paper, Android’s security framework is analyzed, and the defense methods for the collusion attacks are studied. Also, a new system level security framework for Android be designed and implemented, in order to taming the potential collusion attacks exploiting its vulnerabilities.

Key words: Android, privilege-escalation attack, collusion attack, confused deputy attack

CLC Number: