Cloud Platform Based Automated Security Testing System for Mobile Internet

被引:0
|
作者
Dan Tao [1 ,2 ]
Zhaowen Lin [3 ]
Cheng Lu [1 ,2 ]
机构
[1] the School of Electronic and Information Engineering,Beijing Jiaotong University
[2] Jiangsu High Technology Research Key Laboratory for Wireless Sensor Networks
[3] Network and Information Center,Institute of Network Technology,Science and Technology on Information Transmission and Dissemination in Communication Networks Laboratory,National Engineering Laboratory for Mobile Network Security,Beijing University of Posts
基金
中国国家自然科学基金;
关键词
automated security testing; cloud platform; virtualization; Metasploit;
D O I
暂无
中图分类号
TP311.53 [];
学科分类号
081202 ; 0835 ;
摘要
With respect to security, the use of various terminals in the mobile Internet environment is problematic.Traditional terminal testing methods cannot simulate actual testing environments; thus, the test results do not accurately reflect the security of terminals. To address this problem, we designed and developed a cloud platform based automated testing system for the mobile Internet. In this system, virtualization and automation technology are utilized to integrate mobile terminals into the cloud platform as a resource, to achieve a novel cloud service called Testing as a Service(Taa S). The system consists of three functional modules: web front-end module, testing environment module, and automated testing module. We adopted the permeable automated testing tool Metasploit to perform security testing. In our test experiments, we selected 100 apps with diverse vulnerability levels, ranging from secure to vulnerable, to perform a series of functional tests. The experimental results show that this system can correctly test both the number of vulnerable apps and their corresponding vulnerability levels. As such, the designed system can flexibly configure various testing environments for different testing cases or projects, and thereby perform security testing automatically.
引用
收藏
页码:537 / 544
页数:8
相关论文
共 50 条
  • [1] Cloud Platform Based Automated Security Testing System for Mobile Internet
    Tao, Dan
    Lin, Zhaowen
    Lu, Cheng
    [J]. TSINGHUA SCIENCE AND TECHNOLOGY, 2015, 20 (06) : 537 - 544
  • [2] Design of Mobile Office System Security Platform based on Cloud Technology
    Liu, X. N.
    Ren, W.
    Bai, Y. B.
    Yang, S. Q.
    Hu, Z. X.
    Yang, J.
    [J]. MANUFACTURING, DESIGN SCIENCE AND INFORMATION ENGINEERING, VOLS I AND II, 2015, : 1692 - 1698
  • [3] An Automated Virtual Security Testing Platform for Android Mobile Apps
    Wang, Yong
    [J]. 2015 1ST CONFERENCE ON MOBILE AND SECURE SERVICES (MOBISECSERV), 2015, : 27 - 28
  • [4] Cloud-Based Simulated Automated Testing Platform for Virtual Coupling System
    Wang, Qi
    Chai, Ming
    Wang, Haifeng
    Zhang, Hao
    Chai, Jinchuan
    Lin, Bingyue
    [J]. 2022 IEEE 25TH INTERNATIONAL CONFERENCE ON INTELLIGENT TRANSPORTATION SYSTEMS (ITSC), 2022, : 2738 - 2743
  • [5] Cloud computing security study based on the mobile Internet environment
    Ding, Wen
    [J]. INFORMATION SCIENCE AND MANAGEMENT ENGINEERING, VOLS 1-3, 2014, 46 : 1993 - 1998
  • [6] An Automated Testing Platform for Mobile Applications
    Ma, Xin
    Wang, Ning
    Xie, Peizhang
    Zhou, Jungui
    Zhang, Xiaofang
    Fang, Chunrong
    [J]. 2016 IEEE INTERNATIONAL CONFERENCE ON SOFTWARE QUALITY, RELIABILITY AND SECURITY COMPANION (QRS-C 2016), 2016, : 159 - 162
  • [7] Design of security evaluation system for mobile Internet Information management platform based on BOPPPS model
    Bao Hongrui
    He Haiguang
    Yang Qinsi
    Jin Feng
    [J]. 2019 INTERNATIONAL CONFERENCE ON ROBOTS & INTELLIGENT SYSTEM (ICRIS 2019), 2019, : 216 - 220
  • [8] Multimedia security in laboratory system based on cloud platform
    Yang, Jiachen
    Fan, Dayong
    Song, Houbing
    Ahmed, Syed Hassan
    Mehmood, Amjad
    Lv, Haibin
    [J]. JOURNAL OF INTELLIGENT & FUZZY SYSTEMS, 2016, 31 (05) : 2473 - 2481
  • [9] A Mobile Platform Solution for Public Security Application Based on Internet of Thing
    Tang Qianjin
    [J]. 2011 INTERNATIONAL CONFERENCE ON COMPUTER, ELECTRICAL, AND SYSTEMS SCIENCES, AND ENGINEERING (CESSE 2011), 2011, : 532 - 535
  • [10] Research on Data Mining Algorithm for Mobile Internet based on Business Cloud Platform
    Yue, Miao
    Guang, Wu Huai
    [J]. INTERNATIONAL JOURNAL OF GRID AND DISTRIBUTED COMPUTING, 2016, 9 (05): : 1 - 12