Skip to main navigation Skip to search Skip to main content

Droidsentry: Efficient Code Integrity and Control Flow Verification on TrustZone Devices

  • Stony Brook University

Research output: Chapter in Book/Report/Conference proceedingConference contributionpeer-review

4 Scopus citations

Abstract

The fast evolution of mobile devices has made them the center of attention for not only the research industry, but also malicious actors, as smartphones are used to store, transmit and process sensitive information. The diversity and number of typically installed applications create windows of opportunity for attackers. Attackers can use vulnerable applications to gain control over the device or change the behavior of applications relied on to manage user's finances or store their secret data. Thus, current mobile systems need application execution verification mechanisms. In consequence, we present a framework for current ARM mobile devices that can detect application control flow manipulation attempts by looking at the history of executed control flow altering instructions on the processor. This history examination provides enough information to implement the state-of-the-art fine-grained control policies, without additional binary instrumentation. Moreover, this framework is designed to work with existing hardware and have a minimal impact on performance.

Original languageEnglish
Title of host publicationProceedings - 2017 21st International Conference on Control Systems and Computer, CSCS 2017
EditorsIoan Dumitrache, Adina Magda Florea, Alexandru Dumitrascu, Florin Pop
PublisherInstitute of Electrical and Electronics Engineers Inc.
Pages156-158
Number of pages3
ISBN (Electronic)9781538618394
DOIs
StatePublished - Jul 5 2017
Event21st International Conference on Control Systems and Computer Science, CSCS 2017 - Bucharest, Romania
Duration: May 29 2017May 31 2017

Publication series

NameProceedings - 2017 21st International Conference on Control Systems and Computer, CSCS 2017

Conference

Conference21st International Conference on Control Systems and Computer Science, CSCS 2017
Country/TerritoryRomania
CityBucharest
Period05/29/1705/31/17

Keywords

  • Control flow integrity
  • Program tracing macrocell
  • Return oriented programming
  • TrustZone

Fingerprint

Dive into the research topics of 'Droidsentry: Efficient Code Integrity and Control Flow Verification on TrustZone Devices'. Together they form a unique fingerprint.

Cite this