L4Android: a generic operating system framework for secure smartphones

  • Authors:
  • Matthias Lange;Steffen Liebergeld;Adam Lackorzynski;Alexander Warg;Michael Peter

  • Affiliations:
  • Technische Universität Berlin and Deutsche Telekom Laboratories, Berlin, Germany;Technische Universität Berlin and Deutsche Telekom Laboratories, Berlin, Germany;Technische Universität Dresden, Dresden, Germany;Technische Universität Dresden, Dresden, Germany;Technische Universtität Berlin and Deutsche Telekom Laboratories, Berlin, Germany

  • Venue:
  • Proceedings of the 1st ACM workshop on Security and privacy in smartphones and mobile devices
  • Year:
  • 2011

Quantified Score

Hi-index 0.00

Visualization

Abstract

Smartphones became many people's primary means of communication. Emerging applications such as Near Field Communication require new levels of security that cannot be enforced by current smartphone operating systems. Therefore vendors resort to hardware extensions that have limitations in flexibility and increase the bill of materials. In this work we present a generic operating system framework that does away with the need for such hardware extensions. We encapsulate the original smartphone operating system in a virtual machine. Our framework allows for highly secure applications to run side-by-side with the virtual machine. It is based on a state-of-the-art microkernel that ensures isolation between the virtual machine and secure applications. We evaluate our framework by sketching how it can be used to solve four problems in current smartphone security.