Enhancing Cross-Device Security with Fine-Grained Permission Control

被引:0
|
作者
Hu, Han [1 ]
Wang, Daibin [2 ]
Hong, Tailiang [2 ]
Zhang, Sheng [1 ]
机构
[1] Tsinghua Univ, Shenzhen Int Grad Sch, Key Lab Adv Sensor & Integrated Syst, Shenzhen 518055, Peoples R China
[2] Huawei Technol Co Ltd, Shenzhen, Peoples R China
关键词
Mobile device; Access control; Permission; Cross device; Operating system; ACCESS-CONTROL;
D O I
10.1007/978-3-031-64954-7_6
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
With the proliferation of smart devices in personal and home environments, there is a growing need for cross-device interaction. However, distributed scenarios that cross device boundaries pose unique security and privacy challenges. While existing cross-device security mechanisms focus primarily on authentication, there is little research on fine-grained permission control. Permission models, which are critical security mechanisms for single devices, do not adequately support cross-device access control. To address this gap, we proposed and implemented a distributed role and attribute hybrid-based access control (DHBAC) model to enhance the security of cross-device access. DHBAC extends the single-device permission system to cross-device access control, providing fine-grained control based on users, devices, and applications. This approach effectively eliminates the over-authorization problem and supports the principle of least privilege. In addition, DHBAC can dynamically adjust and assign permissions based on specific scenarios and user requirements, improving the flexibility and adaptability of the system. To evaluate DHBAC, we deployed it on Harmony Operating System and tested it in several real-world, cross-device scenarios. Our evaluation shows that DHBAC effectively blocked malicious cross-device access and mitigated the associated security risks with acceptable system overhead.
引用
收藏
页码:101 / 121
页数:21
相关论文
共 50 条
  • [41] Fine-grained Access Control to Web Databases
    Roichman, Alex
    Gudes, Ehud
    SACMAT'07: PROCEEDINGS OF THE 12TH ACM SYMPOSIUM ON ACCESS CONTROL MODELS AND TECHNOLOGIES, 2007, : 31 - 40
  • [42] Delegatable access control for fine-grained XML
    Wu, J
    Seberry, J
    Mu, Y
    Ruan, C
    11TH INTERNATIONAL CONFERENCE ON PARALLEL AND DISTRIBUTED SYSTEMS WORKSHOPS, VOL II, PROCEEDINGS,, 2005, : 270 - 274
  • [43] The microwave flowmeter for fine-grained media control
    Shebalkova, L
    Starikov, E
    MICROWAVE ELECTRONICS: MEASUREMENTS, IDENTIFICATION, APPLICATIONS, CONFERENCE PROCEEDINGS, 2003, : 129 - 131
  • [44] A Fine-Grained Image Access Control Model
    Al Bouna, Bechara
    Chbeir, Richard
    Gabillon, Alban
    Capolsini, Patrick
    8TH INTERNATIONAL CONFERENCE ON SIGNAL IMAGE TECHNOLOGY & INTERNET BASED SYSTEMS (SITIS 2012), 2012, : 603 - 612
  • [45] Learning fine-grained control for mapless navigation
    de Villiers, Fred
    Brink, Willie
    2020 INTERNATIONAL SAUPEC/ROBMECH/PRASA CONFERENCE, 2020, : 666 - 671
  • [46] Fine-grained access control for cloud computing
    Ye, Xinfeng
    Khoussainov, Bakh
    INTERNATIONAL JOURNAL OF GRID AND UTILITY COMPUTING, 2013, 4 (2-3) : 160 - 168
  • [47] Authenticated Data Redaction with Fine-Grained Control
    Ma, Jinhua
    Liu, Jianghua
    Huang, Xinyi
    Xiang, Yang
    Wu, Wei
    IEEE TRANSACTIONS ON EMERGING TOPICS IN COMPUTING, 2020, 8 (02) : 291 - 302
  • [48] Fine-grained access control of PDM and CAPP
    Feng, SH
    Jiang, ZL
    ADVANCES IN MATERIALS MANUFACTURING SCIENCE AND TECHNOLOGY, 2004, 471-472 : 573 - 576
  • [49] Cross-lingual fine-grained entity typing
    Department of Computer Science, The University of Texas, Austin, United States
    arXiv, 1600,
  • [50] BDSS: Blockchain-based Data Sharing Scheme With Fine-grained Access Control And Permission Revocation In Medical Environment
    Zhang, Lejun
    Zou, Yanfei
    Yousuf, Muhammad Hassam
    Wang, Weizheng
    Jin, Zilong
    Su, Yansen
    Seokhoon, Kim
    KSII TRANSACTIONS ON INTERNET AND INFORMATION SYSTEMS, 2022, 16 (05): : 1634 - 1652