A Secure, Usable, and Transparent Middleware for Permission Managers on Android

@article{Wang2017ASU,
  title={A Secure, Usable, and Transparent Middleware for Permission Managers on Android},
  author={Daibin Wang and Haixia Yao and Yingjiu Li and Hai Jin and Deqing Zou and Robert H. Deng},
  journal={IEEE Transactions on Dependable and Secure Computing},
  year={2017},
  volume={14},
  pages={350-362}
}
Android’s permission system offers an all-or-nothing choice when installing an app. To make it more flexible and fine-grained, users may choose a popular app tool, called permission manager, to selectively grant or revoke an app’s permissions at runtime. A fundamental requirement for such permission manager is that the granted or revoked permissions should be enforced faithfully. However, we discover that none of existing permission managers meet this requirement due to permission leaks, in… CONTINUE READING