{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2025,11,1]],"date-time":"2025-11-01T09:32:14Z","timestamp":1761989534104,"version":"3.37.3"},"reference-count":35,"publisher":"Wiley","license":[{"start":{"date-parts":[[2020,10,26]],"date-time":"2020-10-26T00:00:00Z","timestamp":1603670400000},"content-version":"unspecified","delay-in-days":0,"URL":"https:\/\/creativecommons.org\/licenses\/by\/4.0\/"}],"funder":[{"name":"National Key Technologies Research and Development Program","award":["2018YFB0803501","61502510","U19A2060"],"award-info":[{"award-number":["2018YFB0803501","61502510","U19A2060"]}]},{"DOI":"10.13039\/501100001809","name":"National Natural Science Foundation of China","doi-asserted-by":"publisher","award":["2018YFB0803501","61502510","U19A2060"],"award-info":[{"award-number":["2018YFB0803501","61502510","U19A2060"]}],"id":[{"id":"10.13039\/501100001809","id-type":"DOI","asserted-by":"publisher"}]}],"content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":["Wireless Communications and Mobile Computing"],"published-print":{"date-parts":[[2020,10,26]]},"abstract":"<jats:p>The root privilege escalation attack is extremely destructive to the security of the Android system. SEAndroid implements mandatory access control to the system through the SELinux security policy at the kernel mode, making the general root privilege escalation attacks unenforceable. However, malicious attackers can exploit the Linux kernel vulnerability of privilege escalation to modify the SELinux security labels of the process arbitrarily to obtain the desired permissions and undermine system security. Therefore, investigating the protection method of the security labels in the SELinux kernel is urgent. And the impact on the existing security configuration of the system must also be reduced. This paper proposes an optimization scheme of the SELinux mechanism based on security label randomization to solve the aforementioned problem. At the system runtime, the system randomizes the mapping of the security labels inside and outside the kernel to protect the privileged security labels of the system from illegal obtainment and tampering by attackers. This method is transparent to users; therefore, users do not need to modify the existing system security configuration. A tamper-proof detection method of SELinux security label is also proposed to further improve the security of the method. It detects and corrects the malicious tampering behaviors of the security label in the critical process of the system timely. The above methods are implemented in the Linux system, and the effectiveness of security defense is proven through theoretical analysis and experimental verification. Numerous experiments show that the effect of this method on system performance is less than 1%, and the success probability of root privilege escalation attack is less than 10\u22129.<\/jats:p>","DOI":"10.1155\/2020\/8866996","type":"journal-article","created":{"date-parts":[[2020,10,26]],"date-time":"2020-10-26T20:35:34Z","timestamp":1603744534000},"page":"1-12","source":"Crossref","is-referenced-by-count":5,"title":["SLR-SELinux: Enhancing the Security Footstone of SEAndroid with Security Label Randomization"],"prefix":"10.1155","volume":"2020","author":[{"given":"Yan","family":"Ding","sequence":"first","affiliation":[{"name":"School of Computer Science, National University of Defence Technology, Changsha 410073, China"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-2890-260X","authenticated-orcid":true,"given":"Pan","family":"Dong","sequence":"additional","affiliation":[{"name":"School of Computer Science, National University of Defence Technology, Changsha 410073, China"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Zhipeng","family":"Li","sequence":"additional","affiliation":[{"name":"School of Computer Science, National University of Defence Technology, Changsha 410073, China"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Yusong","family":"Tan","sequence":"additional","affiliation":[{"name":"School of Computer Science, National University of Defence Technology, Changsha 410073, China"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Chenlin","family":"Huang","sequence":"additional","affiliation":[{"name":"School of Computer Science, National University of Defence Technology, Changsha 410073, China"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Lifeng","family":"Wei","sequence":"additional","affiliation":[{"name":"School of Computer Science, National University of Defence Technology, Changsha 410073, China"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Yudan","family":"Zuo","sequence":"additional","affiliation":[{"name":"School of Computer Science, National University of Defence Technology, Changsha 410073, China"}],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"311","reference":[{"volume-title":"Android challenges Windows as worlds most popular operating system in terms of internet usage","year":"2017","author":"StatCounter","key":"1"},{"key":"2","article-title":"Android and security","volume-title":"Google Mobile Blog","author":"H. Lockheimer","year":"2012"},{"key":"3","doi-asserted-by":"crossref","DOI":"10.1145\/2307636.2307663","article-title":"RiskRanker: scalable and accurate zero-day android malware detection","volume-title":"Procceedings of MobiSys","author":"M. Grace","year":"2012"},{"key":"4","first-page":"351","article-title":"EASEAndroid: automatic policy analysis and refinement for security enhanced android via large-scale semi-supervised learning","volume":"15","author":"R. Wang","year":"2015","journal-title":"USENIX Security"},{"key":"5","doi-asserted-by":"publisher","DOI":"10.1109\/MSP.2009.26"},{"key":"6","doi-asserted-by":"crossref","DOI":"10.1007\/978-3-319-45719-2_16","article-title":"Small changes, big changes: an updated view on the android permission system","volume-title":"Proceedings of the International Symposium on Research in Attacks, Intrusions and Defenses","author":"Y. Zhauniarovich","year":"2016"},{"key":"7","first-page":"340","article-title":"Semantically rich application-centric security in Android","volume-title":"Procceedings of the IEEE Annual Computer Seeurity Applications Conference","author":"M. Ongtang","year":"2009"},{"key":"8","first-page":"71","article-title":"Addroid: Privilege separation for applications and advertisers in Android","volume-title":"Procceedings of the ACM Asia Conference on Computer and Communications Security","author":"P. Pearce","year":"2012"},{"first-page":"627","article-title":"Android permissions demystified","author":"A. P. Felt","key":"9"},{"key":"10","doi-asserted-by":"publisher","DOI":"10.1109\/MSP.2009.144"},{"key":"11","first-page":"20","article-title":"Security enhanced (SE) Android: bringing flexible MAC to Android","volume-title":"Proceedings of the Network and Distributed System Security Symp","author":"S. Smalley","year":"2013"},{"key":"12","doi-asserted-by":"crossref","first-page":"553","DOI":"10.1145\/3134600.3134638","article-title":"Analysis of seandroid policies: combining MAC and DAC in android","volume-title":"Proceedings of the 33rd Annual Computer Security Applications Conference","author":"H. Chen","year":"2017"},{"key":"13","article-title":"Characterizing SE Android policies in the wild","volume":"1510, article 05497","author":"E. Reshetova","year":"2015","journal-title":"CoRR abs"},{"key":"14","first-page":"351","article-title":"EASE android: automatic policy analysis and refinement for security enhanced Android via large-scale semi-supervised learning","volume-title":"Proceedings of the USENIX Conference on Security Symposium, USENIX Association","author":"R. Wang","year":"2015"},{"key":"15","doi-asserted-by":"crossref","first-page":"612","DOI":"10.1145\/3052973.3052991","article-title":"SPOKE: scalable knowledge collection and attack surface analysis of access control policy for security enhanced Android","volume-title":"Proceedings of the 2017 ACM on Asia Conference on Computerand Communications Security","author":"R. Wang","year":"2017"},{"key":"16","doi-asserted-by":"crossref","first-page":"245","DOI":"10.1145\/1368310.1368345","article-title":"Usage control platformization via trustworthy SELinux","volume-title":"Proceedings of the 2008 ACM symposium on Information, computer and communications security","author":"M. Alam","year":"2008"},{"key":"17","doi-asserted-by":"publisher","DOI":"10.1145\/1805974.1805982"},{"key":"18","doi-asserted-by":"crossref","first-page":"105","DOI":"10.1145\/990036.990053","article-title":"Resolvingconstraint conflicts","volume-title":"SACMAT","author":"T. Jaeger","year":"2004"},{"key":"19","doi-asserted-by":"crossref","DOI":"10.1109\/CSFW.2006.22","article-title":"Policy analysis for administrative role based access control","volume-title":"19th IEEE Computer Security Foundations Workshop (CSFW'06)","author":"A. Sasturkar","year":"2006"},{"key":"20","article-title":"Analyzing and comparing the protection quality of security enhanced operating systems","volume-title":"NDSS","author":"H. Chen","year":"2009"},{"key":"21","first-page":"165","article-title":"Visualizationbased policy analysis: case study in SELinux","volume-title":"Proceedings of the ACM Symposium on Accesscontrol models and technologies","author":"W. Xu","year":"2008"},{"key":"22","doi-asserted-by":"crossref","first-page":"19","DOI":"10.1145\/1133058.1133063","article-title":"PRIMA:policy-reduced integrity measurement architecture","volume-title":"SACMAT","author":"T. Jaeger","year":"2006"},{"key":"23","doi-asserted-by":"crossref","first-page":"75","DOI":"10.1145\/2414456.2414500","article-title":"Integrity walls: finding attack surfaces from mandatory access control policies","volume-title":"ASIACCS","author":"H. Vijayakumar","year":"2012"},{"key":"24","first-page":"330","article-title":"Automatic placement of authorization hooks in the Linux security modules framework","volume-title":"Proceedings the ACM conference on Computer and Communications Security","author":"G. Vinod","year":"2005"},{"key":"25","doi-asserted-by":"publisher","DOI":"10.1145\/272991.272995"},{"key":"26","doi-asserted-by":"crossref","DOI":"10.1145\/2666141.2666145","article-title":"Providing root of trust for ARM TrustZone using on-chip SRAM","volume-title":"Proceedings of the 4th Int\u2019l Workshop on Trustworthy Embedded Devices","author":"S. J. Zhao","year":"2014"},{"key":"27","doi-asserted-by":"publisher","DOI":"10.1145\/362686.362692"},{"key":"28","first-page":"357","article-title":"Prevention of buffer overflow attacks using advanced stackguard","volume-title":"Proceedings of the 2010 International Conference on Advances in Communication, Network, and Computing, IEEE Computer Society","author":"P. D. Varma","year":"2010"},{"key":"29","first-page":"149","article-title":"Comparison of publicly available tools for dynamic buffer overflow prevention","volume":"3","author":"J. Wilander","year":"2003","journal-title":"NDSS"},{"key":"30","first-page":"145","article-title":"On the effectiveness of NX, SSP, RenewSSP, and ASLR against stack buffer overflows","volume":"13","author":"H. M. Gisbert","year":"2014","journal-title":"IEEE International Symposium on Network Computing and Applications"},{"issue":"2","key":"31","doi-asserted-by":"crossref","first-page":"147","DOI":"10.7763\/IJFCC.2012.V1.38","article-title":"Misuse for security hardening assessment in application software deployment","volume":"1","author":"K. Limbandit","year":"2012","journal-title":"International Journal of Future Computer and Communication"},{"first-page":"191","article-title":"Practical timing side channel attacks against kernel space ASLR","author":"R. Hund","key":"32"},{"key":"33","article-title":"Related intel security features & technologies"},{"key":"34","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-319-08509-8_12"},{"key":"35","first-page":"1100","article-title":"Kernel rootket defense based on automatic data structure randomization","volume":"5","author":"X. Zhi","year":"2014","journal-title":"Chinese Journal of Computers"}],"container-title":["Wireless Communications and Mobile Computing"],"original-title":[],"language":"en","link":[{"URL":"http:\/\/downloads.hindawi.com\/journals\/wcmc\/2020\/8866996.pdf","content-type":"application\/pdf","content-version":"vor","intended-application":"text-mining"},{"URL":"http:\/\/downloads.hindawi.com\/journals\/wcmc\/2020\/8866996.xml","content-type":"application\/xml","content-version":"vor","intended-application":"text-mining"},{"URL":"http:\/\/downloads.hindawi.com\/journals\/wcmc\/2020\/8866996.pdf","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2023,10,10]],"date-time":"2023-10-10T16:54:52Z","timestamp":1696956892000},"score":1,"resource":{"primary":{"URL":"https:\/\/www.hindawi.com\/journals\/wcmc\/2020\/8866996\/"}},"subtitle":[],"editor":[{"given":"Ashok Kumar","family":"Das","sequence":"additional","affiliation":[],"role":[{"role":"editor","vocabulary":"crossref"}]}],"short-title":[],"issued":{"date-parts":[[2020,10,26]]},"references-count":35,"alternative-id":["8866996","8866996"],"URL":"https:\/\/doi.org\/10.1155\/2020\/8866996","relation":{},"ISSN":["1530-8677","1530-8669"],"issn-type":[{"type":"electronic","value":"1530-8677"},{"type":"print","value":"1530-8669"}],"subject":[],"published":{"date-parts":[[2020,10,26]]}}}