{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2025,10,25]],"date-time":"2025-10-25T14:20:13Z","timestamp":1761402013257,"version":"3.40.3"},"publisher-location":"Cham","reference-count":36,"publisher":"Springer International Publishing","isbn-type":[{"type":"print","value":"9783030121457"},{"type":"electronic","value":"9783030121464"}],"license":[{"start":{"date-parts":[[2019,1,1]],"date-time":"2019-01-01T00:00:00Z","timestamp":1546300800000},"content-version":"tdm","delay-in-days":0,"URL":"http:\/\/www.springer.com\/tdm"}],"content-domain":{"domain":["link.springer.com"],"crossmark-restriction":false},"short-container-title":[],"published-print":{"date-parts":[[2019]]},"DOI":"10.1007\/978-3-030-12146-4_18","type":"book-chapter","created":{"date-parts":[[2019,1,24]],"date-time":"2019-01-24T02:57:09Z","timestamp":1548298629000},"page":"287-303","update-policy":"https:\/\/doi.org\/10.1007\/springer_crossmark_policy","source":"Crossref","is-referenced-by-count":2,"title":["How to Block the Malicious Access to Android External Storage"],"prefix":"10.1007","author":[{"given":"Sisi","family":"Yuan","sequence":"first","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Yuewu","family":"Wang","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Pingjian","family":"Wang","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Lingguang","family":"Lei","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Quan","family":"Zhou","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Jun","family":"Li","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"297","published-online":{"date-parts":[[2019,1,23]]},"reference":[{"key":"18_CR1","unstructured":"A1 sd bench. \n                      http:\/\/a1dev.com\/sd-bench\/"},{"key":"18_CR2","unstructured":"Access control list. \n                      https:\/\/en.wikipedia.org\/wiki\/Access_control_list"},{"key":"18_CR3","unstructured":"Acl open source community. \n                      http:\/\/savannah.nongnu.org\/projects\/acl"},{"key":"18_CR4","unstructured":"Antutu benchmark. \n                      http:\/\/www.antutu.com\/en\/index.htm"},{"key":"18_CR5","unstructured":"Aosp. \n                      https:\/\/source.android.com\/"},{"key":"18_CR6","doi-asserted-by":"publisher","unstructured":"Arena, V., Catania, V., Torre, G.L., Monteleone, S., Ricciato, F.: Securedroid: an android security framework extension for context-aware policy enforcement. In: 2013 International Conference on Privacy and Security in Mobile Systems, PRISMS 2013, Atlantic City, NJ, USA, 24\u201327 June 2013, pp. 1\u20138 (2013). \n                      https:\/\/doi.org\/10.1109\/PRISMS.2013.6927185","DOI":"10.1109\/PRISMS.2013.6927185"},{"key":"18_CR7","doi-asserted-by":"publisher","first-page":"326","DOI":"10.1007\/978-3-642-16161-2_19","volume-title":"Lecture Notes of the Institute for Computer Sciences, Social Informatics and Telecommunications Engineering","author":"Guangdong Bai","year":"2010","unstructured":"Bai, G., Gu, L., Feng, T., Guo, Y., Chen, X.: Context-aware usage control for android. In: Proceedings 6th International ICST Conference Security and Privacy in Communication Networks - SecureComm 2010, Singapore, 7\u20139 September 2010, pp. 326\u2013343 (2010). \n                      https:\/\/doi.org\/10.1007\/978-3-642-16161-2_19"},{"key":"18_CR8","unstructured":"Beware of ransomware and high risks threats on android devices. \n                      https:\/\/www.symantec.com\/connect\/articles\/beware-ransomware-and-high-risks-threats-android-devices"},{"key":"18_CR9","unstructured":"Bugiel, S., Davi, L., Dmitrienko, A., Fischer, T., Sadeghi, A., Shastry, B.: Towards taming privilege-escalation attacks on android. In: 19th Annual Network and Distributed System Security Symposium, NDSS 2012, San Diego, California, USA, 5\u20138 February 2012 (2012). \n                      http:\/\/www.internetsociety.org\/towards-taming-privilege-escalation-attacks-android"},{"key":"18_CR10","doi-asserted-by":"publisher","unstructured":"Bugiel, S., Davi, L., Dmitrienko, A., Heuser, S., Sadeghi, A., Shastry, B.: Practical and lightweight domain isolation on android. In: SPSM 2011, Proceedings of the 1st ACM Workshop Security and Privacy in Smartphones and Mobile Devices, Co-located with CCS 2011, 17 October 2011, Chicago, pp. 51\u201362 (2011). \n                      https:\/\/doi.org\/10.1145\/2046614.2046624","DOI":"10.1145\/2046614.2046624"},{"key":"18_CR11","unstructured":"Bugiel, S., Heuser, S., Sadeghi, A.: Flexible and fine-grained mandatory access control on android for diverse security and privacy policies. In: Proceedings of the 22th USENIX Security Symposium, Washington, DC, USA, 14\u201316 August 2013, pp. 131\u2013146 (2013). \n                      https:\/\/www.usenix.org\/conference\/usenixsecurity13\/technical-sessions\/presentation\/bugiel"},{"key":"18_CR12","doi-asserted-by":"publisher","first-page":"366","DOI":"10.1007\/978-3-319-69659-1_20","volume-title":"Lecture Notes in Computer Science","author":"Xiaohai Cai","year":"2017","unstructured":"Cai, X., Gu, X., Wang, Y., Zhou, Q., Cao, Z.: Enforcing ACL access control on android platform. In: Proceedings 20th International Conference Information Security - ISC 2017, Ho Chi Minh City, Vietnam, 22\u201324 November 2017, pp. 366\u2013383 (2017). \n                      https:\/\/doi.org\/10.1007\/978-3-319-69659-1_20"},{"issue":"5","key":"18_CR13","doi-asserted-by":"publisher","first-page":"1426","DOI":"10.1109\/TIFS.2012.2204249","volume":"7","author":"M Conti","year":"2012","unstructured":"Conti, M., Crispo, B., Fernandes, E., Zhauniarovich, Y.: Cr\u00eape: a system for enforcing fine-grained context-related policies on android. IEEE Trans. Inf. Forensics Secur. 7(5), 1426\u20131438 (2012). \n                      https:\/\/doi.org\/10.1109\/TIFS.2012.2204249","journal-title":"IEEE Trans. Inf. Forensics Secur."},{"key":"18_CR14","doi-asserted-by":"publisher","unstructured":"Do, Q., Martini, B., Choo, K.R.: Enforcing file system permissions on android external storage: android file system permissions (AFP) prototype and owncloud. In: 13th IEEE International Conference on Trust, Security and Privacy in Computing and Communications, TrustCom 2014, Beijing, China, 24\u201326 September 2014, pp. 949\u2013954 (2014). \n                      https:\/\/doi.org\/10.1109\/TrustCom.2014.53","DOI":"10.1109\/TrustCom.2014.53"},{"issue":"3","key":"18_CR15","doi-asserted-by":"publisher","first-page":"99","DOI":"10.1145\/2494522","volume":"57","author":"W Enck","year":"2014","unstructured":"Enck, W., et al.: TaintDroid: an information flow tracking system for real-time privacy monitoring on smartphones. Commun. ACM 57(3), 99\u2013106 (2014). \n                      https:\/\/doi.org\/10.1145\/2494522","journal-title":"Commun. ACM"},{"key":"18_CR16","doi-asserted-by":"publisher","unstructured":"Enck, W., Ongtang, M., McDaniel, P.D.: On lightweight mobile phone application certification. In: Proceedings of the 2009 ACM Conference on Computer and Communications Security, CCS 2009, Chicago, Illinois, USA, 9\u201313 November 2009, pp. 235\u2013245 (2009). \n                      https:\/\/doi.org\/10.1145\/1653662.1653691","DOI":"10.1145\/1653662.1653691"},{"key":"18_CR17","unstructured":"Eset analyzes simplocker. \n                      https:\/\/www.welivesecurity.com\/2014\/06\/04\/simplocker\/"},{"key":"18_CR18","unstructured":"Filesystem in userspace. \n                      https:\/\/en.wikipedia.org\/wiki\/Filesystem_in_Userspace"},{"key":"18_CR19","unstructured":"Geekbench4. \n                      http:\/\/www.geekbench.com"},{"key":"18_CR20","unstructured":"Google play. \n                      https:\/\/play.google.com\/store"},{"key":"18_CR21","unstructured":"Gr\u00fcnbacher, A.: POSIX access control lists on linux. In: Proceedings of the FREENIX Track: 2003 USENIX Annual Technical Conference, San Antonio, Texas, USA, 9\u201314 June 2003, pp. 259\u2013272 (2003). \n                      http:\/\/www.usenix.org\/events\/usenix03\/tech\/freenix03\/gruenbacher.html"},{"key":"18_CR22","doi-asserted-by":"publisher","unstructured":"Huang, F., Wu, W., Yang, M., Luo, J.: A fine-grained permission control mechanism for external storage of android. In: 2016 IEEE International Conference on Systems, Man, and Cybernetics, SMC 2016, Budapest, Hungary, 9\u201312 October 2016, pp. 2911\u20132916 (2016). \n                      https:\/\/doi.org\/10.1109\/SMC.2016.7844682","DOI":"10.1109\/SMC.2016.7844682"},{"key":"18_CR23","doi-asserted-by":"publisher","unstructured":"Jung, C., Feth, D., Seise, C.: Context-aware policy enforcement for android. In: IEEE 7th International Conference on Software Security and Reliability, SERE 2013, Gaithersburg, MD, USA, 18\u201320 June 2013, pp. 40\u201349 (2013). \n                      https:\/\/doi.org\/10.1109\/SERE.2013.15","DOI":"10.1109\/SERE.2013.15"},{"key":"18_CR24","doi-asserted-by":"publisher","first-page":"542","DOI":"10.1007\/978-3-319-18467-8_36","volume-title":"ICT Systems Security and Privacy Protection","author":"Xiangyu Liu","year":"2015","unstructured":"Liu, X., Zhou, Z., Diao, W., Li, Z., Zhang, K.: An empirical study on android for saving non-shared data on public storage. In: Proceedings 30th IFIP TC 11 International Conference, ICT Systems Security and Privacy Protection - SEC 2015, Hamburg, Germany, 26\u201328 May 2015, pp. 542\u2013556 (2015). \n                      https:\/\/doi.org\/10.1007\/978-3-319-18467-8_36"},{"key":"18_CR25","unstructured":"Nakamura, Y., Sameshima, Y.: SELinux for consumer electronics devices. In: 2008 Proceedings of the Linux Symposium OLS, Ottawa, Ontario, Canada, 23\u201326 July 2008, pp. 125\u2013134 (2008)"},{"key":"18_CR26","doi-asserted-by":"publisher","unstructured":"Nauman, M., Khan, S., Zhang, X.: Apex: extending android permission model and enforcement with user-defined runtime constraints. In: Proceedings of the 5th ACM Symposium on Information, Computer and Communications Security, ASIACCS 2010, Beijing, China, 13\u201316 April 2010, pp. 328\u2013332 (2010). \n                      https:\/\/doi.org\/10.1145\/1755688.1755732","DOI":"10.1145\/1755688.1755732"},{"issue":"6","key":"18_CR27","doi-asserted-by":"publisher","first-page":"658","DOI":"10.1002\/sec.360","volume":"5","author":"M Ongtang","year":"2012","unstructured":"Ongtang, M., McLaughlin, S.E., Enck, W., McDaniel, P.D.: Semantically rich application-centric security in android. Secur. Commun. Netw. 5(6), 658\u2013673 (2012). \n                      https:\/\/doi.org\/10.1002\/sec.360","journal-title":"Secur. Commun. Netw."},{"key":"18_CR28","unstructured":"Permissions overview. \n                      https:\/\/developer.android.com\/guide\/topics\/permissions"},{"key":"18_CR29","doi-asserted-by":"publisher","unstructured":"Roesner, F., Kohno, T., Moshchuk, A., Parno, B., Wang, H.J., Cowan, C.: User-driven access control: rethinking permission granting in modern operating systems. In: IEEE Symposium on Security and Privacy, SP 2012, San Francisco, California, USA, 21\u201323 May 2012, pp. 224\u2013238 (2012). \n                      https:\/\/doi.org\/10.1109\/SP.2012.24","DOI":"10.1109\/SP.2012.24"},{"key":"18_CR30","unstructured":"Security-enhanced linux. \n                      http:\/\/www.nsa.gov\/research\/selinux"},{"issue":"3","key":"18_CR31","doi-asserted-by":"publisher","first-page":"36","DOI":"10.1109\/MSP.2009.144","volume":"8","author":"A Shabtai","year":"2010","unstructured":"Shabtai, A., Fledel, Y., Elovici, Y.: Securing android-powered mobile devices using selinux. IEEE Secur. Priv. 8(3), 36\u201344 (2010). \n                      https:\/\/doi.org\/10.1109\/MSP.2009.144","journal-title":"IEEE Secur. Priv."},{"key":"18_CR32","unstructured":"Smalley, S., Craig, R.: Security enhanced (SE) android: bringing flexible MAC to android. In: 20th Annual Network and Distributed System Security Symposium, NDSS 2013, San Diego, California, USA, 24\u201327 February 2013 (2013). \n                      https:\/\/www.ndss-symposium.org\/ndss2013\/"},{"key":"18_CR33","unstructured":"Storage. \n                      https:\/\/source.android.com\/devices\/storage\/"},{"key":"18_CR34","unstructured":"Tomoyo linux home page. \n                      http:\/\/tomoyo.sourceforge.jp\/"},{"key":"18_CR35","doi-asserted-by":"publisher","unstructured":"Wang, Z., Murmuria, R., Stavrou, A.: Implementing and optimizing an encryption filesystem on android. In: 13th IEEE International Conference on Mobile Data Management, MDM 2012, Bengaluru, India, 23\u201326 July 2012, pp. 52\u201362 (2012). \n                      https:\/\/doi.org\/10.1109\/MDM.2012.31","DOI":"10.1109\/MDM.2012.31"},{"key":"18_CR36","doi-asserted-by":"publisher","unstructured":"Wu, L., Du, X., Zhang, H.: An effective access control scheme for preventing permission leak in android. In: International Conference on Computing, Networking and Communications, ICNC 2015, Garden Grove, CA, USA, 16\u201319 February 2015, pp. 57\u201361 (2015). \n                      https:\/\/doi.org\/10.1109\/ICCNC.2015.7069315","DOI":"10.1109\/ICCNC.2015.7069315"}],"container-title":["Lecture Notes in Computer Science","Information Security and Cryptology \u2013 ICISC 2018"],"original-title":[],"language":"en","link":[{"URL":"http:\/\/link.springer.com\/content\/pdf\/10.1007\/978-3-030-12146-4_18","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2019,5,20]],"date-time":"2019-05-20T06:41:08Z","timestamp":1558334468000},"score":1,"resource":{"primary":{"URL":"http:\/\/link.springer.com\/10.1007\/978-3-030-12146-4_18"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2019]]},"ISBN":["9783030121457","9783030121464"],"references-count":36,"URL":"https:\/\/doi.org\/10.1007\/978-3-030-12146-4_18","relation":{},"ISSN":["0302-9743","1611-3349"],"issn-type":[{"type":"print","value":"0302-9743"},{"type":"electronic","value":"1611-3349"}],"subject":[],"published":{"date-parts":[[2019]]},"assertion":[{"value":"23 January 2019","order":1,"name":"first_online","label":"First Online","group":{"name":"ChapterHistory","label":"Chapter History"}},{"value":"ICISC","order":1,"name":"conference_acronym","label":"Conference Acronym","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"International Conference on Information Security and Cryptology","order":2,"name":"conference_name","label":"Conference Name","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"Seoul","order":3,"name":"conference_city","label":"Conference City","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"Korea (Republic of)","order":4,"name":"conference_country","label":"Conference Country","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"2018","order":5,"name":"conference_year","label":"Conference Year","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"28 November 2018","order":7,"name":"conference_start_date","label":"Conference Start Date","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"30 November 2018","order":8,"name":"conference_end_date","label":"Conference End Date","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"21","order":9,"name":"conference_number","label":"Conference Number","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"icisc2018","order":10,"name":"conference_id","label":"Conference ID","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"http:\/\/www.icisc.org\/","order":11,"name":"conference_url","label":"Conference URL","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"Double-blind","order":1,"name":"type","label":"Type","group":{"name":"ConfEventPeerReviewInformation","label":"Peer Review Information"}},{"value":"EasyChair","order":2,"name":"conference_management_system","label":"Conference Management System","group":{"name":"ConfEventPeerReviewInformation","label":"Peer Review Information"}},{"value":"49","order":3,"name":"number_of_submissions_sent_for_review","label":"Number of Submissions Sent for Review","group":{"name":"ConfEventPeerReviewInformation","label":"Peer Review Information"}},{"value":"21","order":4,"name":"number_of_full_papers_accepted","label":"Number of Full Papers Accepted","group":{"name":"ConfEventPeerReviewInformation","label":"Peer Review Information"}},{"value":"0","order":5,"name":"number_of_short_papers_accepted","label":"Number of Short Papers Accepted","group":{"name":"ConfEventPeerReviewInformation","label":"Peer Review Information"}},{"value":"43% - The value is computed by the equation \"Number of Full Papers Accepted \/ Number of Submissions Sent for Review * 100\" and then rounded to a whole number.","order":6,"name":"acceptance_rate_of_full_papers","label":"Acceptance Rate of Full Papers","group":{"name":"ConfEventPeerReviewInformation","label":"Peer Review Information"}},{"value":"3","order":7,"name":"average_number_of_reviews_per_paper","label":"Average Number of Reviews per Paper","group":{"name":"ConfEventPeerReviewInformation","label":"Peer Review Information"}},{"value":"5","order":8,"name":"average_number_of_papers_per_reviewer","label":"Average Number of Papers per Reviewer","group":{"name":"ConfEventPeerReviewInformation","label":"Peer Review Information"}},{"value":"Yes","order":9,"name":"external_reviewers_involved","label":"External Reviewers Involved","group":{"name":"ConfEventPeerReviewInformation","label":"Peer Review Information"}},{"value":"3 papers of invited talks were accepted.","order":10,"name":"additional_info_on_review_process","label":"Additional Info on Review Process","group":{"name":"ConfEventPeerReviewInformation","label":"Peer Review Information"}}]}}