A Secure Storage System for Sensitive Data Protection Based on Mobile Virtualization
Recently, the development of smart phones has been reported the number of security vulnerabilities. Although these smart phones have a concept of Sandbox for the security, sensitive personal information has been still exposed by internal data exchange or root privilege acquisition. In this paper, we...
Saved in:
Main Authors: | , , |
---|---|
Format: | Article |
Language: | English |
Published: |
Wiley
2015-02-01
|
Series: | International Journal of Distributed Sensor Networks |
Online Access: | https://doi.org/10.1155/2015/929380 |
Tags: |
Add Tag
No Tags, Be the first to tag this record!
|
_version_ | 1832555334646890496 |
---|---|
author | Su-Wan Park JaeDeok Lim Jeong Nyeo Kim |
author_facet | Su-Wan Park JaeDeok Lim Jeong Nyeo Kim |
author_sort | Su-Wan Park |
collection | DOAJ |
description | Recently, the development of smart phones has been reported the number of security vulnerabilities. Although these smart phones have a concept of Sandbox for the security, sensitive personal information has been still exposed by internal data exchange or root privilege acquisition. In this paper, we propose a system framework for secure storage of sensitive data in smartphone. The system is divided into general domain (GD) and secure domain (SD) in mobile device utilizing domain separation technique of virtualization, and SD provides a secure execution environment to protect sensitive data and secure services. In addition, our system introduces the secure functions such as authentication/access control, and encryption/key management and secures filesystem to be run in SD and addresses a detailed secure filesystem as a key function for secure storage. Lastly, the experiments are conducted to measure the performance overhead imposed by security features in SD and by overall system with interdomain communication from GD to SD. These experiment results show suitability of our system and suggest applicability of various secure functions which can be applied in our secure storage system. |
format | Article |
id | doaj-art-3569a07ede214d789d7031f0f6a5ced4 |
institution | Kabale University |
issn | 1550-1477 |
language | English |
publishDate | 2015-02-01 |
publisher | Wiley |
record_format | Article |
series | International Journal of Distributed Sensor Networks |
spelling | doaj-art-3569a07ede214d789d7031f0f6a5ced42025-02-03T05:48:31ZengWileyInternational Journal of Distributed Sensor Networks1550-14772015-02-011110.1155/2015/929380929380A Secure Storage System for Sensitive Data Protection Based on Mobile VirtualizationSu-Wan ParkJaeDeok LimJeong Nyeo KimRecently, the development of smart phones has been reported the number of security vulnerabilities. Although these smart phones have a concept of Sandbox for the security, sensitive personal information has been still exposed by internal data exchange or root privilege acquisition. In this paper, we propose a system framework for secure storage of sensitive data in smartphone. The system is divided into general domain (GD) and secure domain (SD) in mobile device utilizing domain separation technique of virtualization, and SD provides a secure execution environment to protect sensitive data and secure services. In addition, our system introduces the secure functions such as authentication/access control, and encryption/key management and secures filesystem to be run in SD and addresses a detailed secure filesystem as a key function for secure storage. Lastly, the experiments are conducted to measure the performance overhead imposed by security features in SD and by overall system with interdomain communication from GD to SD. These experiment results show suitability of our system and suggest applicability of various secure functions which can be applied in our secure storage system.https://doi.org/10.1155/2015/929380 |
spellingShingle | Su-Wan Park JaeDeok Lim Jeong Nyeo Kim A Secure Storage System for Sensitive Data Protection Based on Mobile Virtualization International Journal of Distributed Sensor Networks |
title | A Secure Storage System for Sensitive Data Protection Based on Mobile Virtualization |
title_full | A Secure Storage System for Sensitive Data Protection Based on Mobile Virtualization |
title_fullStr | A Secure Storage System for Sensitive Data Protection Based on Mobile Virtualization |
title_full_unstemmed | A Secure Storage System for Sensitive Data Protection Based on Mobile Virtualization |
title_short | A Secure Storage System for Sensitive Data Protection Based on Mobile Virtualization |
title_sort | secure storage system for sensitive data protection based on mobile virtualization |
url | https://doi.org/10.1155/2015/929380 |
work_keys_str_mv | AT suwanpark asecurestoragesystemforsensitivedataprotectionbasedonmobilevirtualization AT jaedeoklim asecurestoragesystemforsensitivedataprotectionbasedonmobilevirtualization AT jeongnyeokim asecurestoragesystemforsensitivedataprotectionbasedonmobilevirtualization AT suwanpark securestoragesystemforsensitivedataprotectionbasedonmobilevirtualization AT jaedeoklim securestoragesystemforsensitivedataprotectionbasedonmobilevirtualization AT jeongnyeokim securestoragesystemforsensitivedataprotectionbasedonmobilevirtualization |