Computer Science ›› 2017, Vol. 44 ›› Issue (Z11): 353-356, 380.doi: 10.11896/j.issn.1002-137X.2017.11A.074

MacDroid:A Lightweight Kernel-level Mandatory Access Control Framework for Android

LI Ni-ge, MA Yuan-yuan, CHEN Mu, CHEN Lu and XU Min   

  • Online:2018-12-01 Published:2018-12-01

Abstract: Smart terminal has become an important information processing platform in the mobile Internet era,and its security threats are becoming more and more serious.The security protection architecture for traditional computers has been unable to meet the special needs of smart terminal security protection.By analyzing the characteristics and levels of the smart terminal operating system,a lightweight kernel-level mandatory access control framework(MacDroid) was designed.The key issues of MacDroid security policy definition,security policy compilation,security policy implementation and so on were deeply studied in this paper.The MacDroid security policy description language(PSL) was proposed and the PSL lexical and grammar formal definition were given.Finally,the effect of MacDroid access control framework on the behavior of different layers of intelligent mobile terminals was evaluted.The experimental results show that the MacDroid framework has good control effect on application layer,native layer and kernel layer malware behavior of Android smart terminal.()

Key words: Android,Kernel,Mandatory access control,Malware detection

