论文标题

智能手机安全的调查:软件漏洞,恶意软件和攻击

A Survey on Smartphones Security: Software Vulnerabilities, Malware, and Attacks

论文作者

Ahvanooey, Milad Taleby, Li, Qianmu, Rabbani, Mahdi, Rajput, Ahmed Raza

论文摘要

如今,智能手机及其应用的使用在人们的日常生活中迅速越来越受欢迎。在过去的十年中,由于3G,4G,GPRS和Wi-Fi等移动设备提供的不同形式的应用程序和连接性,移动货币服务(例如移动支付系统和应用市场)的可用性已大大增加。在同一趋势中,针对这些服务和通信网络的漏洞数量也已升高。因此,智能手机已成为恶意程序员的理想目标设备。随着脆弱性和攻击的数量,研究人员提出的安全对策已经相应地提升。由于这些原因,支付系统的安全性是移动支付系统中最重要的问题之一。在这项调查中,我们旨在为智能手机设备的安全解决方案研究提供全面且结构化的概述。这项调查通过专注于软件攻击(例如智能手机应用程序),回顾了2017年至2017年的安全解决方案,威胁和漏洞的最新技术。我们概述了一些旨在根据检测规则,数据收集和操作系统保护智能手机免受这些攻击组的对策,尤其是专注于开源应用程序。通过这种分类,我们希望为用户和研究人员提供简单的理解,以提高他们对智能手机安全性和隐私的了解。

Nowadays, the usage of smartphones and their applications have become rapidly increasing popular in people's daily life. Over the last decade, availability of mobile money services such as mobile-payment systems and app markets have significantly increased due to the different forms of apps and connectivity provided by mobile devices such as 3G, 4G, GPRS, and Wi-Fi, etc. In the same trend, the number of vulnerabilities targeting these services and communication networks has raised as well. Therefore, smartphones have become ideal target devices for malicious programmers. With increasing the number of vulnerabilities and attacks, there has been a corresponding ascent of the security countermeasures presented by the researchers. Due to these reasons, security of the payment systems is one of the most important issues in mobile payment systems. In this survey, we aim to provide a comprehensive and structured overview of the research on security solutions for smartphone devices. This survey reviews the state of the art on security solutions, threats, and vulnerabilities during the period of 2011-2017, by focusing on software attacks, such those to smartphone applications. We outline some countermeasures aimed at protecting smartphones against these groups of attacks, based on the detection rules, data collections and operating systems, especially focusing on open source applications. With this categorization, we want to provide an easy understanding for users and researchers to improve their knowledge about the security and privacy of smartphones.

扫码加入交流群

加入微信交流群

微信交流群二维码

扫码加入学术交流群,获取更多资源