Gerade angezeigt 1 - 3 von 3
  • Some of the metrics are blocked by your 
    Item-typ:Veröffentlichung,
    Secure Mobile Business Information Processing
    An ever increasing amount of functionality is incorporated into mobile phones-this trend will continue as new mobile phone platforms are more widely used such as the iPhone or Android. Along with this trend, however, new risks arise, especially for enterprises using mobile phones for security-critical applications such as business intelligence (BI). Although platforms like Android have implemented sophisticated security mechanisms, security holes have been reported. In addition, different stakeholders have access to mobile phones such as different enterprises, service providers, operators, or manufacturers. In order to protect security-critical business applications, a trustworthy mobile phone platform is needed. Starting with typical attack scenarios, we describe a security architecture for Android mobile phones based on the concepts of Trusted Computing. In particular, this architecture allows for a dynamic policy change to reflect the current environment the phone is being used in.
    Konferenzbeitrag
      136
  • Some of the metrics are blocked by your 
    Item-typ:Veröffentlichung,
    Leveraging Trusted Network Connect for Secure Connection of Mobile Devices to Corporate Networks
    The approach described in this paper is part of the German national research project VOGUE. VOGUE leverages trusted network connect concepts as a key to implement/design a holistic and vendor neutral network access system while addressing shortcomings of traditional network access control mechanisms. The rest of the paper is organized as follows: Section 2 provides the motivation that outlines the importance of validating mobile devices state of health before allowing access to the enterprise network and gives a brief overview of the background on Trusted Network Connect (TNC). Furthermore, the section describes the security risks, challenges and requirements that are relevant to interoperable network access control and authorization. Next, we discuss in section 4 existing solutions and other industry standards and specifications that have had an influence on our work. The paper concludes with section 5.
    Wissenschaftlicher Artikel
      142
  • Some of the metrics are blocked by your 
    Item-typ:Veröffentlichung,
    SiWear – Sichere Wearable-Systeme: Verwendung von Sicherheitsstandards im Entwurf von Wearable-Systemen am Beispiel der Benutzungsschnittstelle
    IT-Sicherheit und Benutzbarkeit stehen häufig im Konflikt zueinander. Dies ist verbunden mit der weitgehenden Berücksichtigung von Aspekten der Benutzbarkeit bei gleichzeitig geringer Berücksichtigung der IT-Sicherheit in den Methoden zur Anforderungsanalyse. Im Projekt SiWear1 werden aus Einsatzszenarien die Sicherheitsanforderungen an Wearable-Systeme mit Hilfe des Sicherheitsstandards IT-Grundschutz abgeleitet. Dies ermöglicht eine frühzeitige Koordination von Anforderungen an die IT-Sicherheit sowie an die Benutzbarkeit und fördert somit die Vereinbarkeit von beiden.
    Konferenzbeitrag
      118