Method and system for dynamic application program safety management based on SEAndroid platform

An application program and dynamic security technology, applied in the field of system security management, can solve problems such as reducing system security attributes, increasing interaction costs, and difficulty in transplantation, so as to achieve both enhanced flexibility and practicability, ease of use and security Effect

Inactive Publication Date: 2014-02-26
UNIV OF ELECTRONICS SCI & TECH OF CHINA
View PDF2 Cites 32 Cited by
  • Summary
  • Abstract
  • Description
  • Claims
  • Application Information

AI Technical Summary

Problems solved by technology

The biggest problem with the SEAndroid system itself is that it follows the inherent SELinux administrator operation mode. Only users who are familiar with the Linux system have the ability to customize the system's security policy library, that is, modify it based on the source code to change the application. security context, this operation method is difficult to transplant to mobile terminal operating systems for ordinary consumers, because the operation complexity of security policy modified based on source code makes it difficult for general end users to implement security policies on terminal devices. custom made
With the widespread application of Android, security issues have become more and more prominent. In addition, users have increased concerns about privacy and security. Users hope to participate in the system protection of terminal devices, and security policies based on source code modifications are increasing. This reduces the user's interaction cost (users need to be familiar with the corresponding operating instructions of the Linux system), so there is an urgent need for an easy-to-use and safe operation method for formulating security policies to reduce the user's interaction cost without reducing the cost of the system. security attribute

Method used

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
View more

Image

Smart Image Click on the blue labels to locate them in the text.
Viewing Examples
Smart Image
  • Method and system for dynamic application program safety management based on SEAndroid platform
  • Method and system for dynamic application program safety management based on SEAndroid platform

Examples

Experimental program
Comparison scheme
Effect test

Embodiment Construction

[0023] All features disclosed in this specification, or steps in all methods or processes disclosed, may be combined in any manner, except for mutually exclusive features and / or steps.

[0024] Any feature disclosed in this specification (including any appended claims, abstract and drawings), unless expressly stated otherwise, may be replaced by alternative features which are equivalent or serve a similar purpose. That is, unless expressly stated otherwise, each feature is one example only of a series of equivalent or similar features.

[0025] combine figure 1 , the application program dynamic security management method of the present invention is:

[0026] Firstly, based on any common keyword, each authority in the system authority library is divided into multiple template types to form the template type library of the system; each template type in the template type library includes at least one authority, and is identified by the corresponding security label. Identificati...

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

PUM

No PUM Login to view more

Abstract

The invention relates to SEAndroid platform based system safety management, in particular to a method and a system for dynamic application program safety management based on an SEAndroid platform. The method includes performing category classification on each permission in a system permission library to acquire a system template type library; during operation of an application program, capturing and intercepting progress creation of the application program, and judging whether the application program is started for the first time after being installed or not; if not, directly executing the progress creation; if yes, analyzing a configuration file of the application program, and acquiring a safety label set through matching and inquiring; based on the acquired safety label set, displaying a safety strategy selection interface to a user, generating a safety strategy setting file according to selection setting of the user, and executing the progress creation of the current application program according to the safety strategy setting file of the current application program. The invention further provides the dynamic application program safety management system corresponding to the method. The method and the system can be applied to SEAndroid based terminal equipment and have the advantages of convenience and safety.

Description

technical field [0001] The invention relates to system security management based on SEAndroid (Security Enhanced Android System) platform, in particular to a method and system for dynamic security management of application programs based on SEAndroid platform. Background technique [0002] SEAndroid is based on SELinux (Security Enhanced Linux System) by the US National Security Agency (NSA), modified and transplanted according to the characteristics of Android. In SELinux, by defining the allowed operations of each process in advance, it is forbidden to perform deviant operations. SEAndroid follows this mechanism, and by restricting the operating authority of each process, it can prevent malicious software from tampering with the system. Generally speaking, in order to take advantage of the usurped root authority (system super authority) for a long time, malicious software that attacks vulnerabilities will bury special commands in the Android system area (such as the su sw...

Claims

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

Application Information

Patent Timeline
no application Login to view more
Patent Type & Authority Applications(China)
IPC IPC(8): G06F21/50
CPCG06F21/57
Inventor 杨霞桑楠江维张献忠魏兰石鹏孙海泳曾睿孙超群展华益
Owner UNIV OF ELECTRONICS SCI & TECH OF CHINA
Who we serve
  • R&D Engineer
  • R&D Manager
  • IP Professional
Why Eureka
  • Industry Leading Data Capabilities
  • Powerful AI technology
  • Patent DNA Extraction
Social media
Try Eureka
PatSnap group products