Rethinking Permission Enforcement Mechanism on Mobile Systems.

Yuan Zhang,Min Yang,Guofei Gu,Hao Chen
DOI: https://doi.org/10.1109/TIFS.2016.2581304
IF: 7.231
2016-01-01
IEEE Transactions on Information Forensics and Security
Abstract:To protect sensitive resources from unauthorized use, modern mobile systems, such as Android and iOS, design a permission-based access control model. However, current model could not enforce fine-grained control over the dynamic permission use contexts, causing two severe security problems. First, any code package in an application could use the granted permissions, inducing attackers to embed mal...
What problem does this paper attempt to address?