摘要
现有的Android权限管理机制存在管理粒度过粗,不能动态配置,且不支持用户自定义管理应用程序权限诸多缺陷。提出一个细粒度的Android应用权限管理系统Droid Defence。该系统通过对现有Android应用权限机制的扩展,结合轻量级客户端程序,实现对应用程序细粒度的权限审核管理,用户可以由不同的应用场景动态分配应用程序权限,同时系统采用众包技术收集处理用户应用权限信息,并给予安全反馈。实验表明,该系统移动端和云端技术相结合,以较小能耗,保护用户隐私,提升系统的安全性。
The existing Android system does not allow customized application permission due to its coarse-grained and inflexible management mechanism.To solve this problem,Droid Defence,a fine-grained Android permission management system was proposed,which was extended on the base of the original Android framework.Users can dynamically allocate application permissions under different scenarios through a light-weight client deployed on mobile device.And safety reports would be released after user data collection and processing based on mobile cloud crowdsourcing.Experimental results showed that Droid Defence can enhance system security and protect user privacy with little system consumption.
出处
《四川大学学报(工程科学版)》
EI
CAS
CSCD
北大核心
2014年第6期14-18,共5页
Journal of Sichuan University (Engineering Science Edition)
基金
国家自然科学基金资助项目(61373006)
南京邮电大学科技基金资助项目(NY212059)