Title
Overhaul: Input-Driven Access Control for Better Privacy on Traditional Operating Systems
Abstract
The prevailing security model for OSes focuses on isolating users from each other, however, the changing computing landscape has led to the extension of traditional access control models for single-user devices. Modern OSes for mobile devices such as iOS and Android have taken the opportunity provided by these new platforms to introduce permission systems in which users can manage access to sensitive resources during application installation or runtime. One drawback of similar efforts on desktop environments is that applications must be rewritten with this security model in mind, which hinders traditional OSes from enjoying the benefits of user-driven access control. We present a novel architecture for retrofitting a dynamic, input-driven access control model into traditional OSes. In this model, access to privacy-sensitive resources is mediated based on the temporal proximity of user interactions to access requests, and requests are communicated back to the user via visual alerts. We present a prototype implementation and demonstrate how input-driven access control can be realized for resources such as the microphone, camera, clipboard, and screen contents. Our approach is transparent to applications and users, and incurs no discernible performance overhead.
Year
DOI
Venue
2016
10.1109/DSN.2016.47
2016 46th Annual IEEE/IFIP International Conference on Dependable Systems and Networks (DSN)
Keywords
Field
DocType
input driven access control,operating systems,single user devices,mobile devices,privacy-sensitive resources,user interactions,visual alerts
Drawback,Permission,Computer access control,Android (operating system),Computer science,Computer security,Clipboard,Mobile device,Access control,Computer security model,Operating system,Distributed computing
Conference
ISBN
Citations 
PageRank 
978-1-4673-8892-4
2
0.37
References 
Authors
15
3
Name
Order
Citations
PageRank
Kaan Onarlioglu124014.31
William Robertson21762123.11
Engin Kirda35386334.12