Users employ smartphones and tablets to manage and store personal information as well as corporate information. However, storing different types of information in the same device may lead to information… Click to show full abstract
Users employ smartphones and tablets to manage and store personal information as well as corporate information. However, storing different types of information in the same device may lead to information leakage. Users need tools to define different confidentiality requirements over their data, and to enforce different access policies according to those requirements. Android is the most used mobile operating system, and although it implements various mechanisms to protect user information, it does not have any tool to meet the mentioned needs. This paper presents AndroidBLP, a tool based on the Bell-LaPadula confidentiality model that implements a predefined mandatory access control policy, enables users to define confidentiality requirements, and enforces a confidentiality policy based on those requirements.
               
Click one of the above tabs to view related content.