Mostrar el registro sencillo del ítem

dc.contributor.authorGómez Hernández, José Antonio 
dc.contributor.authorCamacho Páez, José 
dc.contributor.authorHolgado Terriza, Juan Antonio 
dc.contributor.authorGarcía Teodoro, Pedro 
dc.contributor.authorMacía Fernández, Gabriel 
dc.date.accessioned2021-09-22T08:11:47Z
dc.date.available2021-09-22T08:11:47Z
dc.date.issued2021-07-14
dc.identifier.citationJ. A. Gómez-Hernández... [et al.]. "ARANAC: A Bring-Your-Own-Permissions Network Access Control Methodology for Android Devices," in IEEE Access, vol. 9, pp. 101321-101334, 2021, doi: [10.1109/ACCESS.2021.3097152]es_ES
dc.identifier.urihttp://hdl.handle.net/10481/70348
dc.descriptionThis work was supported in part by the Spanish Government-Ministerio de Economia y Competitividad (MINECO), and in part by the European Regional Development Fund (ERDF) under Project TIN2017-83494-R.es_ES
dc.description.abstractIn this paper, we introduce a new methodology for network access control for Android devices based on app risk assessment. Named ARANAC (which stands for Application Risk Assessment based Network Access Control), this methodology is specially tailored for scenarios using the Bring-Your- Own-Device (BYOD) policy, where the adoption of some solutions can lead to problems in security and privacy for both the employees and the business organization. ARANAC mainly relies on the analysis of an aggregate of permissions declared in the manifests of installed applications on users' devices. The access control scheme combines three operational modules: i) a device monitoring tool, ii) a novel permission-based risk model, and iii) an anomaly-based detection machine learning module based on a methodology (called MSNM, from Multivariate Statistical Network Monitoring) that provides both detection and diagnostic capabilities. ARANAC's novelty is in the combination of four features. Firstly, it is privacy-aware, and thus, it does not require detailed information about installed applications but only an aggregate of permissions. Secondly, it builds a normality model by combining expert knowledge with data, capturing the behavior of a complete population of mobile devices. Thirdly, it is dynamic, as permissions are updated in real time, allowing the network to re-assess access control on a continuous basis. Finally, its diagnostic capabilities allow for giving recommendations to nal users so that they are capable of mitigating their risks when accessing networks. We evaluated the approach with more than 80 Android devices at a university campus network and obtained interesting results regarding security risks in the usual deployment of device apps.es_ES
dc.description.sponsorshipSpanish Government-Ministerio de Economia y Competitividad (MINECO)es_ES
dc.description.sponsorshipEuropean Commission TIN2017-83494-Res_ES
dc.language.isoenges_ES
dc.publisherIEEEes_ES
dc.rightsAtribución 3.0 España*
dc.rights.urihttp://creativecommons.org/licenses/by/3.0/es/*
dc.subjectAndroid permissionses_ES
dc.subjectBring-your-own-devicees_ES
dc.subjectMobile securityes_ES
dc.subjectNetwork access controles_ES
dc.subjectRisk assessment es_ES
dc.titleARANAC: A Bring-Your-Own-Permissions Network Access Control Methodology for Android Deviceses_ES
dc.typeinfo:eu-repo/semantics/articlees_ES
dc.rights.accessRightsinfo:eu-repo/semantics/openAccesses_ES
dc.identifier.doi10.1109/ACCESS.2021.3097152
dc.type.hasVersioninfo:eu-repo/semantics/publishedVersiones_ES


Ficheros en el ítem

[PDF]

Este ítem aparece en la(s) siguiente(s) colección(ones)

Mostrar el registro sencillo del ítem

Atribución 3.0 España
Excepto si se señala otra cosa, la licencia del ítem se describe como Atribución 3.0 España