Author Login Editor-in-Chief Peer Review Editor Work Office Work

Computer Engineering ›› 2009, Vol. 35 ›› Issue (2): 148-150. doi: 10.3969/j.issn.1000-3428.2009.02.052

• Security Technology • Previous Articles     Next Articles

Study of Policy Model of Software Secure Loading for Trusted Mobile Platform

LI Jian1, LIU Ji-qiang2, ZHOU Zheng3, SHEN Chang-xiang4, ZHANG Jun3   

  1. (1. Institute of Electronic Technology, PLA Information Engineering University, Zhengzhou 450002; 2. Research Center of Information Secure Architecture, Beijing Jiaotong University, Beijing 100044; 3. College of Electrical and Information Engineering, Naval University of Engineering, Wuhan 430033; 4. Naval Institute of Computing Technology, Beijing 100841)
  • Received:1900-01-01 Revised:1900-01-01 Online:2009-01-20 Published:2009-01-20

可信移动平台软件安全载入策略模型研究

李 建1,刘吉强2,周 正3,沈昌祥4,张 俊3   

  1. (1. 解放军信息工程大学电子技术学院,郑州 450002;2. 北京交通大学信息安全体系结构研究中心,北京 100044; 3. 海军工程大学电气与信息工程学院,武汉 430033;4. 海军计算技术研究所,北京 100841)

Abstract: Aiming at the fact that Xwodi, a kind of Trojan software, is fit in the users handsets by downloading software and threatens the privacy of user deadly. With analyzing security fault and cause in the solution of current software download. This paper puts forward the control policy for mobile equipment for downloading software, sets up politic model, carries out formalized description and analysis, designs implementing scheme of software loading policy from point of view of trusted mobile platform and makes security analysis for the model. Result indicates that the scheme can prevent Xwodi from being intruded effectively.

Key words: mobile platform, trusted computing, security analysis

摘要: 针对手机卧底等木马软件通过软件下载的途径安装到用户手机,使手机用户的隐私受到了巨大的威胁的实际。通过分析目前软件下载方案中存在的安全问题及产生的根源,提出移动终端软件载入的控制策略,建立了策略模型,采用形式化的描述与分析,并从可信移动平台技术的角度,设计软件载入策略的实现方案,对模型和方案进行安全性分析,结果证明,该方案能有效地防范手机卧底等恶意软件的侵入。

关键词: 移动平台, 可信计算, 安全分析

CLC Number: