Title :
Security enhancement of secure USB debugging in Android system
Author :
Mingzhe Xu ; Weiqing Sun ; Alam, Mansoor
Author_Institution :
Univ. of Toledo, Toledo, OH, USA
Abstract :
The security of Android Debug Bridge (ADB) has attracted much attention from researchers, because it has a high privilege level and a low level of protection. Many attacks on Android systems have taken advantage of the security holes of ADB. Thus, in the updating patch of Android 4.2.2, a security feature secure USB debugging was implemented so that only trusted hosts can use ADB. Our research analyzes its protection effects on ADB based attacks and found that the new feature cannot provide sufficient protection when the host used to connect with Android devices has been compromised. A demonstration attack following this method is given along with an improvement design of the security mechanism of USB Debugging Mode. An implementation of this design and its evaluation are also provided to demonstrate its effectiveness.
Keywords :
Android (operating system); program debugging; security of data; trusted computing; ADB based attacks; Android debug bridge; USB debugging mode; protection effects; security enhancement; trusted hosts; Androids; Debugging; Humanoid robots; Security; Smart phones; Software; Universal Serial Bus; Android Debug Bridge; Android Security; Secure USB Debugging; Smart Phone Security;
Conference_Titel :
Consumer Communications and Networking Conference (CCNC), 2015 12th Annual IEEE
Conference_Location :
Las Vegas, NV
Print_ISBN :
978-1-4799-6389-8
DOI :
10.1109/CCNC.2015.7157959