Enhanced code-signing scheme for smartphone applications

  • Authors:
  • Inkyung Jeun;Kwangwoo Lee;Dongho Won

  • Affiliations:
  • Sungkyunkwan University, Suwon, Gyeonggi-do, Korea;Sungkyunkwan University, Suwon, Gyeonggi-do, Korea;Sungkyunkwan University, Suwon, Gyeonggi-do, Korea

  • Venue:
  • FGIT'11 Proceedings of the Third international conference on Future Generation Information Technology
  • Year:
  • 2011

Quantified Score

Hi-index 0.00

Visualization

Abstract

Recently, the number of incidents by malicious codes designed to suspend services and abuse personal information has grown rapidly, and the installation of applications on smart phones has emerged as one of the most common ways by which such malicious codes are spread. Anti-virus programs can be used to curb the spread of such codes, but these have limitations in terms of speed and efficiency. Accordingly, we need to strengthen the safety of application distribution and verification procedures in order to prevent the spread of malicious codes. To this end, this paper examines the problems of existing application distribution procedures, and suggests an enhanced code-signing scheme using the public key infrastructure (PKI) certificate for an application distribution method. It offers improved reliability and security by using code signing technology to secure the integrity of software and developer authentication functions.