4th International Workshop on Pervasive and Context-Aware Middleware

Research Article

A Context-aware Adaptive Security Framework for Mobile Applications

  • @INPROCEEDINGS{10.4108/icst.iccasa.2014.257495,
        author={Yaser Mowafi and Dhiah Abou-Tair and Tareq Al-Aqarbeh and Marat Abilov and Viktor Dmitriyev and Jorge Marx Gomez},
        title={A Context-aware Adaptive Security Framework for Mobile Applications},
        proceedings={4th International Workshop on Pervasive and Context-Aware Middleware},
        publisher={ACM},
        proceedings_a={PERCAM14},
        year={2015},
        month={3},
        keywords={mobile computing context awareness context-aware security ahp decision analysis},
        doi={10.4108/icst.iccasa.2014.257495}
    }
    
  • Yaser Mowafi
    Dhiah Abou-Tair
    Tareq Al-Aqarbeh
    Marat Abilov
    Viktor Dmitriyev
    Jorge Marx Gomez
    Year: 2015
    A Context-aware Adaptive Security Framework for Mobile Applications
    PERCAM14
    ICST
    DOI: 10.4108/icst.iccasa.2014.257495
Yaser Mowafi1,*, Dhiah Abou-Tair1, Tareq Al-Aqarbeh1, Marat Abilov2, Viktor Dmitriyev2, Jorge Marx Gomez2
  • 1: German Jordanian University
  • 2: Carl von Ossietzky University
*Contact email: yaser.mowafi@gju.edu.jo

Abstract

Mobile devices currently offer many value-added applications and services such as messaging, navigation, social networking, finance, and entertainment. As these mobile applications have access to users’ personal information and are capable of gathering and transmitting trust sensitive information, posing security and privacy risks. In this paper, we propose a context-aware adaptive security framework for eliciting users’ context information and adapting this information with mobile applications’ network access control mechanism. The framework enforces the execution of mobile applications inside security incubators to control the communication between mobile applications and mobile device resources. Applications’ access requests are analyzed based on user’s context information collected from the mobile device sensors and the application security configuration.