2017 47th Annual IEEE/IFIP International Conference on Dependable Systems and Networks (DSN) 2017
DOI: 10.1109/dsn.2017.12
|View full text |Cite
|
Sign up to set email alerts
|

IM-Visor: A Pre-IME Guard to Prevent IME Apps from Stealing Sensitive Keystrokes Using TrustZone

Help me understand this report

Search citation statements

Order By: Relevance

Paper Sections

Select...
2
1

Citation Types

0
3
0

Year Published

2019
2019
2022
2022

Publication Types

Select...
3
2

Relationship

0
5

Authors

Journals

citations
Cited by 6 publications
(3 citation statements)
references
References 15 publications
0
3
0
Order By: Relevance
“…As the decryption key is stored in the TrustZone environment, data-clone attacks cannot copy the decryption key to another device together with encrypted user credential data, and therefore the server will fail to verify the login credentials. The recent papers, TruApp [38] and IM-Visor [39] explore the feasibility of protecting app integrity and sensitive data with TrustZone, and Rubinov et al's work partitions a critical app automatically for TrustZone [40].…”
Section: III Discussionmentioning
confidence: 99%
“…As the decryption key is stored in the TrustZone environment, data-clone attacks cannot copy the decryption key to another device together with encrypted user credential data, and therefore the server will fail to verify the login credentials. The recent papers, TruApp [38] and IM-Visor [39] explore the feasibility of protecting app integrity and sensitive data with TrustZone, and Rubinov et al's work partitions a critical app automatically for TrustZone [40].…”
Section: III Discussionmentioning
confidence: 99%
“…As the decryption key is stored in the Trustzone environment, data-clone attacks cannot copy the decryption key to another device together with the encrypted auto-login depended data, and therefore the server will fail to verify the login credentials. The recent papers, TruApp paper [38] and IM-Visor [39] explore the feasibility of protecting App integrity and sensitive data with TrustZone.…”
Section: Mitigation Discussionmentioning
confidence: 99%
“…TrustPay [35] proposed a mobile payment framework on the Trust-Zone platform to protect the display of the user's payment information. IM-Visor [29] and Li et al [19] protected the users' inputs by capturing the users' sensitive keystrokes inside the secure world. Dmitrienko et al [14] proposed a security architecture for the protection of electronic health records and authentication credentials used to access e-health services.…”
Section: Related Workmentioning
confidence: 99%