{"id":924,"date":"2014-05-25T18:23:43","date_gmt":"2014-05-25T16:23:43","guid":{"rendered":"http:\/\/sseblog.ec-spride.de\/?p=924"},"modified":"2014-05-25T18:23:43","modified_gmt":"2014-05-25T16:23:43","slug":"droidforce-at-ares14","status":"publish","type":"post","link":"https:\/\/blogs.uni-paderborn.de\/sse\/2014\/05\/25\/droidforce-at-ares14\/","title":{"rendered":"DroidForce accepted at ARES&#8217;14"},"content":{"rendered":"<div class=\"twoclick_social_bookmarks_post_924 social_share_privacy clearfix 1.6.4 locale-en_US sprite-en_US\"><\/div><div class=\"twoclick-js\"><script type=\"text\/javascript\">\/* <![CDATA[ *\/\njQuery(document).ready(function($){if($('.twoclick_social_bookmarks_post_924')){$('.twoclick_social_bookmarks_post_924').socialSharePrivacy({\"txt_help\":\"Wenn Sie diese Felder durch einen Klick aktivieren, werden Informationen an Facebook, Twitter, Flattr, Xing, t3n, LinkedIn, Pinterest oder Google eventuell ins Ausland \\u00fcbertragen und unter Umst\\u00e4nden auch dort gespeichert. N\\u00e4heres erfahren Sie durch einen Klick auf das <em>i<\\\/em>.\",\"settings_perma\":\"Dauerhaft aktivieren und Daten\\u00fcber-tragung zustimmen:\",\"info_link\":\"http:\\\/\\\/www.heise.de\\\/ct\\\/artikel\\\/2-Klicks-fuer-mehr-Datenschutz-1333879.html\",\"uri\":\"https:\\\/\\\/blogs.uni-paderborn.de\\\/sse\\\/2014\\\/05\\\/25\\\/droidforce-at-ares14\\\/\",\"post_id\":924,\"post_title_referrer_track\":\"DroidForce+accepted+at+ARES%26%238217%3B14\",\"display_infobox\":\"on\"});}});\n\/* ]]> *\/<\/script><\/div><p>We are proud that our paper &#8220;DROIDFORCE: Enforcing Complex, Data-Centric, System-Wide Policies in Android&#8221; has been accepted at this year&#8217;s <a href=\"http:\/\/www.ares-conference.eu\/conference\/\">ARES<\/a> conference. It was a collaborative paper together with <a href=\"https:\/\/www22.in.tum.de\/en\/people\/enrico-lovat\/\">Enrico Lovat<\/a>\u00a0(TU Munich) from the group of Prof. Dr. Alexander Pretschner. The abstract of the paper:<\/p>\n<div class=\"column\">\n<p><em>Smartphones are nowadays used to store and process many kinds of privacy-sensitive data such as contacts, photos, and e-mails. Sensors provide access to the phone\u2019s physical location, and can record audio and video. While this is convenient for many applications, it also makes smartphones a worthwhile target for attackers providing malicious applications. Current approaches to runtime enforcement try to mitigate unauthorized leaks of confidential data. However, they are often capable of enforcing only a very limited set of policies, like preventing data leaks only within single components or monitoring access only to specific sensitive system resources.<\/em><\/p>\n<p><em>In this work, we present DROIDFORCE, an approach for enforcing complex, data-centric, system-wide policies on Android applications. DROIDFORCE allows users to specify fine-grained constraints on how and when which data may be processed on their phones, regardless of whether the malicious behavior is distributed over different colluding components or even applications. Policies can be dynamically exchanged at runtime and no modifications to the operating system nor root access to the phone are required.<\/em><\/p>\n<p><em>DROIDFORCE works purely on the application level. It provides a centralized policy decision point as a dedicated Android application and it instruments a decentralized policy enforcement point into every target application. Analyzing and instrumenting an application takes in total less than a minute and secured applications exhibit no noticeable slowdown in practice.\u00a0<\/em><\/p>\n<\/div>\n<p>The complete paper\u00a0can be downloaded from <a href=\"https:\/\/www.informatik.tu-darmstadt.de\/fileadmin\/user_upload\/Group_EC-Spride\/Publikationen\/droidforce_ares2014.pdf\">here<\/a>\u00a0(note: it is only a preprint, the final version will be published at ARES in September).<\/p>\n","protected":false},"excerpt":{"rendered":"<p>We are proud that our paper &#8220;DROIDFORCE: Enforcing Complex, Data-Centric, System-Wide Policies in Android&#8221; has been accepted at this year&#8217;s ARES conference. It was a collaborative paper together with Enrico Lovat\u00a0(TU Munich) from the group of Prof. Dr. Alexander Pretschner. &hellip; <a href=\"https:\/\/blogs.uni-paderborn.de\/sse\/2014\/05\/25\/droidforce-at-ares14\/\">Continue reading <span class=\"meta-nav\">&rarr;<\/span><\/a><\/p>\n","protected":false},"author":6581,"featured_media":0,"comment_status":"closed","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[1],"tags":[],"class_list":["post-924","post","type-post","status-publish","format-standard","hentry","category-general"],"_links":{"self":[{"href":"https:\/\/blogs.uni-paderborn.de\/sse\/wp-json\/wp\/v2\/posts\/924","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/blogs.uni-paderborn.de\/sse\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/blogs.uni-paderborn.de\/sse\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/blogs.uni-paderborn.de\/sse\/wp-json\/wp\/v2\/users\/6581"}],"replies":[{"embeddable":true,"href":"https:\/\/blogs.uni-paderborn.de\/sse\/wp-json\/wp\/v2\/comments?post=924"}],"version-history":[{"count":0,"href":"https:\/\/blogs.uni-paderborn.de\/sse\/wp-json\/wp\/v2\/posts\/924\/revisions"}],"wp:attachment":[{"href":"https:\/\/blogs.uni-paderborn.de\/sse\/wp-json\/wp\/v2\/media?parent=924"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/blogs.uni-paderborn.de\/sse\/wp-json\/wp\/v2\/categories?post=924"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/blogs.uni-paderborn.de\/sse\/wp-json\/wp\/v2\/tags?post=924"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}