信息安全研究 ›› 2018, Vol. 4 ›› Issue (8): 689-697.

• 移动安全专题 • 上一篇    下一篇

移动Web操作系统安全综述

杨莹,李威,吴荻   

  1. 中国科学院信息工程研究所
  • 收稿日期:2018-08-29 出版日期:2018-08-15 发布日期:2018-09-01
  • 通讯作者: 杨莹
  • 作者简介:杨莹 博士,主要研究方向为智能终端安全,操作系统安全. 李威 博士研究生,主要研究方向为移动终端安全. 吴荻 博士,助理研究员,主要研究方向为移动互联网安全

Survey on Mobile Web Operating System Security

  • Received:2018-08-29 Online:2018-08-15 Published:2018-09-01

摘要: 随着移动互联网和智能终端的发展,终端操作系统也不断推陈出新,近年来出现了一种基于标准统一的Web语言开发的Web操作系统.这类操作系统提供了较好的跨平台性,并可通过云存储和数据的集中管理作为一种移动政务的解决方案.但是这类操作系统由于新发展起来,仍存在不少安全问题需要解决.通过对开源Web操作系统的体系结构、应用类型、安全机制的研究,分析其各自的安全性,最后讨论安全拓展方案.

关键词: Web操作系统, 体系结构, 系统安全, 访问控制, 权限管理

Abstract: With the development of mobile Internet and smart terminals, the terminal operating system has also been continuously updated. In recent years, the Web operating systems which are developed through Web language with unified standard have emerged. Such operating systems provide better cross-platform performance and can be used as an e-government solution for the centralized management as well as cloud storage. However, these operating systems are new development, there are still many security issues that need to be resolved. This article analyzes the architecture, application types, security mechanisms and the respective security of typical open source Web operating systems. Finally, the discussion on future security methods is given.

Key words: Web operating system, system architecture, system security, access control, permission management