|国家预印本平台
首页|针对虚拟化框架隐私漏洞的修复方案

针对虚拟化框架隐私漏洞的修复方案

Repair plan for privacy vulnerabilities in Virtualization Framework

中文摘要英文摘要

虚拟化框架在安卓系统中的应用十分广泛,本文在系统性地研究Android虚拟化框架的基础上,发现虚拟化框架中的应用有很大的安全风险,恶意软件可以轻易利用虚拟化框架引入的隐私安全漏洞对框架内的应用的隐私数据进行窃取。在研究过程中,本文研究出一个修复虚拟化框架的隐私安全漏洞的方案。对于恶意软件利用六种隐私漏洞做出的攻击,该方案分别制定了具体的策略。最后本文用修复漏洞的虚拟化框架和未进行修复的虚拟化框架进行对照实验,验证该数据保护方案的有效性。

Virtualization framework is widely used in the Android system. Based on the systematic study of the Android virtualization framework, this paper finds that the application of the virtualization framework has a great security risk, and malicious software can easily take advantage of the privacy security loopholes introduced by the virtualization framework to steal the privacy data of the application within the framework. In the process of research, this paper developed a solution to repair the privacy security holes of the virtualization framework. The plan lists six vulnerabilities and lays out specific strategies for how malware can exploit them. Finally, a comparative experiment was conducted with the virtualization framework that repaired the vulnerability and the virtualization framework that did not repair the vulnerability to verify the effectiveness of the data protection scheme.

牛少彰、周翀宇

计算技术、计算机技术

计算机软件与理论ndroid软件安全虚拟化框架漏洞修复数据保护

omputer Software and TheoryAndroid.Software SecurityVirtualization FrameworkVulnerability RepairData Protection

牛少彰,周翀宇.针对虚拟化框架隐私漏洞的修复方案[EB/OL].(2021-04-30)[2025-08-16].http://www.paper.edu.cn/releasepaper/content/202104-262.点此复制

评论