A Secure Storage System for Sensitive Data Protection Based on Mobile Virtualization

Recently, the development of smart phones has been reported the number of security vulnerabilities. Although these smart phones have a concept of Sandbox for the security, sensitive personal information has been still exposed by internal data exchange or root privilege acquisition. In this paper, we...

Full description

Saved in:
Bibliographic Details
Main Authors: Su-Wan Park, JaeDeok Lim, Jeong Nyeo Kim
Format: Article
Language:English
Published: Wiley 2015-02-01
Series:International Journal of Distributed Sensor Networks
Online Access:https://doi.org/10.1155/2015/929380
Tags: Add Tag
No Tags, Be the first to tag this record!
_version_ 1832555334646890496
author Su-Wan Park
JaeDeok Lim
Jeong Nyeo Kim
author_facet Su-Wan Park
JaeDeok Lim
Jeong Nyeo Kim
author_sort Su-Wan Park
collection DOAJ
description Recently, the development of smart phones has been reported the number of security vulnerabilities. Although these smart phones have a concept of Sandbox for the security, sensitive personal information has been still exposed by internal data exchange or root privilege acquisition. In this paper, we propose a system framework for secure storage of sensitive data in smartphone. The system is divided into general domain (GD) and secure domain (SD) in mobile device utilizing domain separation technique of virtualization, and SD provides a secure execution environment to protect sensitive data and secure services. In addition, our system introduces the secure functions such as authentication/access control, and encryption/key management and secures filesystem to be run in SD and addresses a detailed secure filesystem as a key function for secure storage. Lastly, the experiments are conducted to measure the performance overhead imposed by security features in SD and by overall system with interdomain communication from GD to SD. These experiment results show suitability of our system and suggest applicability of various secure functions which can be applied in our secure storage system.
format Article
id doaj-art-3569a07ede214d789d7031f0f6a5ced4
institution Kabale University
issn 1550-1477
language English
publishDate 2015-02-01
publisher Wiley
record_format Article
series International Journal of Distributed Sensor Networks
spelling doaj-art-3569a07ede214d789d7031f0f6a5ced42025-02-03T05:48:31ZengWileyInternational Journal of Distributed Sensor Networks1550-14772015-02-011110.1155/2015/929380929380A Secure Storage System for Sensitive Data Protection Based on Mobile VirtualizationSu-Wan ParkJaeDeok LimJeong Nyeo KimRecently, the development of smart phones has been reported the number of security vulnerabilities. Although these smart phones have a concept of Sandbox for the security, sensitive personal information has been still exposed by internal data exchange or root privilege acquisition. In this paper, we propose a system framework for secure storage of sensitive data in smartphone. The system is divided into general domain (GD) and secure domain (SD) in mobile device utilizing domain separation technique of virtualization, and SD provides a secure execution environment to protect sensitive data and secure services. In addition, our system introduces the secure functions such as authentication/access control, and encryption/key management and secures filesystem to be run in SD and addresses a detailed secure filesystem as a key function for secure storage. Lastly, the experiments are conducted to measure the performance overhead imposed by security features in SD and by overall system with interdomain communication from GD to SD. These experiment results show suitability of our system and suggest applicability of various secure functions which can be applied in our secure storage system.https://doi.org/10.1155/2015/929380
spellingShingle Su-Wan Park
JaeDeok Lim
Jeong Nyeo Kim
A Secure Storage System for Sensitive Data Protection Based on Mobile Virtualization
International Journal of Distributed Sensor Networks
title A Secure Storage System for Sensitive Data Protection Based on Mobile Virtualization
title_full A Secure Storage System for Sensitive Data Protection Based on Mobile Virtualization
title_fullStr A Secure Storage System for Sensitive Data Protection Based on Mobile Virtualization
title_full_unstemmed A Secure Storage System for Sensitive Data Protection Based on Mobile Virtualization
title_short A Secure Storage System for Sensitive Data Protection Based on Mobile Virtualization
title_sort secure storage system for sensitive data protection based on mobile virtualization
url https://doi.org/10.1155/2015/929380
work_keys_str_mv AT suwanpark asecurestoragesystemforsensitivedataprotectionbasedonmobilevirtualization
AT jaedeoklim asecurestoragesystemforsensitivedataprotectionbasedonmobilevirtualization
AT jeongnyeokim asecurestoragesystemforsensitivedataprotectionbasedonmobilevirtualization
AT suwanpark securestoragesystemforsensitivedataprotectionbasedonmobilevirtualization
AT jaedeoklim securestoragesystemforsensitivedataprotectionbasedonmobilevirtualization
AT jeongnyeokim securestoragesystemforsensitivedataprotectionbasedonmobilevirtualization