SELint: an SEAndroid policy analysis tool

Elena Reshetova, Filippo Bonazzi, N Asokan

Research output: Working paperProfessional

Abstract

SEAndroid enforcement is now mandatory for Android devices. In order to provide the desired level of security for their products, Android OEMs need to be able to minimize their mistakes in writing SEAndroid policies. However, existing SEAndroid and SELinux tools are not very useful for this purpose. It has been shown that SEAndroid policies found in commercially available devices for multiple manufacturers contain mistakes and redundancies. In this paper we present a new tool, SELint, which aims to help OEMs to produce better SEAndroid policies. SELint is extensible and configurable to suit the needs of different OEMs. It is provided with a default configuration based on the AOSP SEAndroid policy, but can be customized by OEMs.
Original languageEnglish
Place of PublicationarXiv
Number of pages13
Publication statusPublished - 8 Aug 2016
MoE publication typeD4 Published development or research report or study

Publication series

NamearXiv preprints

Fingerprint

Dive into the research topics of 'SELint: an SEAndroid policy analysis tool'. Together they form a unique fingerprint.
  • Characterizing SEAndroid policies in the wild

    Reshetova, E., Bonazzi, F., Nyman, T., Borgaonkar, R. & Asokan, N., 2016, ICISSP 2016 - Proceedings of the 2nd International Conference on Information Systems Security and Privacy. SciTePress, p. 482-489 8 p.

    Research output: Chapter in Book/Report/Conference proceedingConference article in proceedingsScientificpeer-review

    3 Citations (Scopus)

Cite this