Android手机、平板电脑等智能移动终端的快速普及,使得对Android系统安全性能的需求也在不断提高.当前比较普遍的做法是在终端上安装监控软件来检测病毒和恶意软件等,但这种方式并不能保证监控软件不被旁路、欺骗和篡改.针对这个问题,本文设计并实现了基于上下文的Android移动终端可信运行控制系统,通过对Android OS安全启动信任链的构建,保证了系统的安全,同时支持基于地理位置的Android应用程序的完整性远程验证.
The rapid popularization of Android smart mobile terminals makes the security require- ments of Android system increase continuously. The general technique at present is installing monitoring apps to detect virus and malware. However, it cannot prevent these apps from being bypassed, deceived and tampered. Aiming at this problem, this paper designs and implements a context-based Android mobile terminal trusted running control system, which guarantees the sys- tem security via constructing a secure startup chain of trust on Android OS. It also supports GPS- based application integrity measurement remote verification.