A Framework for Formal Specification and Verification of Security Properties of the Android Permissions System

03/18/2022
by   Amirhosein Sayyadabdi, et al.
0

Android is a widely deployed operating system that employs a permission-based access control model. The Android Permissions System (APS) is responsible for mediating resource requests from applications. APS is a critical component of the Android security mechanism. A failure in the design of APS can potentially lead to vulnerabilities that grant unauthorized access to resources by malicious applications. Researchers have employed formal methods for analyzing the security properties of APS. Since Android is constantly evolving, we intend to design and implement a framework for formal specification and verification of the security properties of APS. In particular, we intend to present a behavioral model of APS that represents the non-binary, context dependent permissions introduced in Android 10 and temporal permissions introduced in Android 11.

READ FULL TEXT

page 1

page 2

page 3

research
08/23/2022

Towards a Formal Approach for Detection of Vulnerabilities in the Android Permissions System

Android is a widely used operating system that employs a permission-base...
research
04/04/2022

SAUSAGE: Security Analysis of Unix domain Socket Usage in Android

The Android operating system is currently the most popular mobile operat...
research
11/11/2013

Efficient Runtime Monitoring with Metric Temporal Logic: A Case Study in the Android Operating System

We present a design and an implementation of a security policy specifica...
research
09/12/2017

A certified reference validation mechanism for the permission model of Android

Android embodies security mechanisms at both OS and application level. I...
research
12/06/2017

Android Multi-Level System Permission Management Approach

With the expansion of the market share occupied by the Android platform,...
research
04/11/2019

The Android Platform Security Model

Android is the most widely deployed end-user focused operating system. W...
research
10/29/2020

Towards a certified reference monitor of the Android 10 permission system

Android is a platform for mobile devices that captures more than 85 tota...

Please sign up or login with your details

Forgot password? Click here to reset