Security Blog
The latest news and insights from Google on security and safety on the Internet
The Android Platform Security Model
18 Απριλίου 2019
Posted by Jeff Vander Stoep, Android Security & Privacy Team
Each Android release comes with great new security and privacy features. When it comes to implementing these new features we always look at ways to measure the impact with data that
demonstrates
the
effectiveness
of
these
improvements
. But how do these features map to an overall strategy?
Last week, we released a whitepaper describing
The Android Platform Security Model
. Specifically we discuss:
The security model which has implicitly informed the Android platform’s security design from the beginning, but has not been formally published or described outside of Google.
The context in which this security model must operate, including the scale of the Android ecosystem and its many form factors and use cases.
The complex threat model Android must address.
How Android’s reference implementation in the Android Open Source Project (AOSP) enacts the security model.
How Android’s security systems have evolved over time to address the threat model.
Android is fundamentally based on a multi-party consent
1
model: an action should only happen if the involved parties consent to it. Most importantly, apps are not considered to be fully authorized agents for the user. There are some intentional deviations from the security model and we discuss why these exist and the value that they provide to users. Finally, openness is a fundamental value in Android: from how we develop and publish in open source, to the open access users and developers have in finding or publishing apps, and the open communication mechanisms we provide for inter-app interactions which facilitate innovation within the app ecosystem.
We hope this paper provides useful information and background to all the academic and security researchers dedicated to further strengthening the security of the Android ecosystem. Happy reading!
Acknowledgements: This post leveraged contributions from René Mayrhofer, Chad Brubaker, and Nick Kralevich
Notes
The term ‘consent’ here and in the paper is used to refer to various technical methods of declaring or enforcing a party’s intent, rather than the legal requirement or standard found in many privacy legal regimes around the world.
↩
Δεν υπάρχουν σχόλια :
Δημοσίευση σχολίου
Ετικέτες
#sharethemicincyber
#supplychain #security #opensource
AI Security
android
android security
android tr
app security
big data
biometrics
blackhat
C++
chrome
chrome enterprise
chrome security
connected devices
CTF
diversity
encryption
federated learning
fuzzing
Gboard
google play
google play protect
hacking
interoperability
iot security
kubernetes
linux kernel
memory safety
Open Source
pha family highlights
pixel
privacy
private compute core
Rowhammer
rust
Security
security rewards program
sigstore
spyware
supply chain
targeted spyware
tensor
Titan M2
VDP
vulnerabilities
workshop
Archive
2026
Απρ
Μαρ
Φεβ
Ιαν
2025
Δεκ
Νοε
Οκτ
Σεπ
Αυγ
Ιουλ
Ιουν
Μαΐ
Απρ
Μαρ
Φεβ
Ιαν
2024
Δεκ
Νοε
Οκτ
Σεπ
Αυγ
Ιουλ
Ιουν
Μαΐ
Απρ
Μαρ
Φεβ
Ιαν
2023
Δεκ
Νοε
Οκτ
Σεπ
Αυγ
Ιουλ
Ιουν
Μαΐ
Απρ
Μαρ
Φεβ
Ιαν
2022
Δεκ
Νοε
Οκτ
Σεπ
Αυγ
Ιουλ
Ιουν
Μαΐ
Απρ
Μαρ
Φεβ
Ιαν
2021
Δεκ
Νοε
Οκτ
Σεπ
Αυγ
Ιουλ
Ιουν
Μαΐ
Απρ
Μαρ
Φεβ
Ιαν
2020
Δεκ
Νοε
Οκτ
Σεπ
Αυγ
Ιουλ
Ιουν
Μαΐ
Απρ
Μαρ
Φεβ
Ιαν
2019
Δεκ
Νοε
Οκτ
Σεπ
Αυγ
Ιουλ
Ιουν
Μαΐ
Απρ
Μαρ
Φεβ
Ιαν
2018
Δεκ
Νοε
Οκτ
Σεπ
Αυγ
Ιουλ
Ιουν
Μαΐ
Απρ
Μαρ
Φεβ
Ιαν
2017
Δεκ
Νοε
Οκτ
Σεπ
Ιουλ
Ιουν
Μαΐ
Απρ
Μαρ
Φεβ
Ιαν
2016
Δεκ
Νοε
Οκτ
Σεπ
Αυγ
Ιουλ
Ιουν
Μαΐ
Απρ
Μαρ
Φεβ
Ιαν
2015
Δεκ
Νοε
Οκτ
Σεπ
Αυγ
Ιουλ
Ιουν
Μαΐ
Απρ
Μαρ
Φεβ
Ιαν
2014
Δεκ
Νοε
Οκτ
Σεπ
Αυγ
Ιουλ
Ιουν
Απρ
Μαρ
Φεβ
Ιαν
2013
Δεκ
Νοε
Οκτ
Αυγ
Ιουν
Μαΐ
Απρ
Μαρ
Φεβ
Ιαν
2012
Δεκ
Σεπ
Αυγ
Ιουν
Μαΐ
Απρ
Μαρ
Φεβ
Ιαν
2011
Δεκ
Νοε
Οκτ
Σεπ
Αυγ
Ιουλ
Ιουν
Μαΐ
Απρ
Μαρ
Φεβ
2010
Νοε
Οκτ
Σεπ
Αυγ
Ιουλ
Μαΐ
Απρ
Μαρ
2009
Νοε
Οκτ
Αυγ
Ιουλ
Ιουν
Μαρ
2008
Δεκ
Νοε
Οκτ
Αυγ
Ιουλ
Μαΐ
Φεβ
2007
Νοε
Οκτ
Σεπ
Ιουλ
Ιουν
Μαΐ
Feed
Follow @google
Follow
Give us feedback in our
Product Forums
.
Δεν υπάρχουν σχόλια :
Δημοσίευση σχολίου