There was a simpler time when a telephone was just a phone, and all you could do with it was call people. Nowadays, mobile phones come packed with more processing juice than a small country possessed not so long ago.
“If you go and buy a phone today, you will find it has more computing power than a PC in the late 1980s and even 1990s. But if you look at the third-party software available on the average mobile, it is almost non existent,” explains Fabio Massacci, a professor in security and computer engineering at the University of Trento in Italy.
“This is because the phone and PC markets are very different. Mobile operators are reluctant to allow third-software software on to their devices without certification, which is currently very costly and time-consuming. This discourages many software developers.”
But this is all set to change, if the project Massacci coordinates gains broad industry acceptance. “We have worked to reduce the threshold for certification without compromising security,” he says.Certifiably safe
“The current ‘sandbox’ security model is very simple: you either allow nothing or everything. With security-by-contract, you have more flexibility but also more complexity,” notes Massacci.
In practice, the new system will not prove that complex for end-users, developers and mobile operators. “Users will sign up to certain contractual agreements which specify such things as the number of SMSs an application can send, how many megabytes it can download, and even whether it can work when the power is low.”
Software developers will continue to develop code in the same way, except that they will have to “present an electronic contract and develop a verification process to the mobile operator”, according to Massacci.
This is a vast improvement on the current ‘trusted third-party’ certification which is complex and costly both for developers and operators, pushing it beyond the means of most companies.
“This means that operators will be able to formalise and streamline their third-party contracting process, generating a range of new business streams,” he elaborates.Kaleidoscopic options
“The system allows operators to monitor for applications that violate its policies. It also allows the user to ‘inoculate’ applications that do not have a security policy. In addition, users and application providers can reach their own agreements without the operator.”
The EU-backed project insist that security-by-contract will not replace but enhance today’s security mechanism, and will provide a flexible, simple and scalable security and privacy protection for future mobile systems. The S3MS architecture provides an open platform for the development, loading and run-time execution of downloadable third-party applications on mobile platforms.
The project demonstrated a prototype of the system to some industry players in December 2007 and the final version of the prototype is due out in February 2008.On the horizon
“We are in the process of trademarking ‘security-by-contract,” he says. “We will then discuss what to do after that and what kind of investments and investors we need to take the idea further.”
Christian Nielsen | alfa
Marine Skin dives deeper for better monitoring
23.04.2019 | King Abdullah University of Science & Technology (KAUST)
CubeSats prove their worth for scientific missions
17.04.2019 | American Physical Society
Flexible, organic and printed electronics conquer everyday life. The forecasts for growth promise increasing markets and opportunities for the industry. In Europe, top institutions and companies are engaged in research and further development of these technologies for tomorrow's markets and applications. However, access by SMEs is difficult. The European project SmartEEs - Smart Emerging Electronics Servicing works on the establishment of a European innovation network, which supports both the access to competences as well as the support of the enterprises with the assumption of innovations and the progress up to the commercialization.
It surrounds us and almost unconsciously accompanies us through everyday life - printed electronics. It starts with smart labels or RFID tags in clothing, we...
The human eye is particularly sensitive to green, but less sensitive to blue and red. Chemists led by Hubert Huppertz at the University of Innsbruck have now developed a new red phosphor whose light is well perceived by the eye. This increases the light yield of white LEDs by around one sixth, which can significantly improve the energy efficiency of lighting systems.
Light emitting diodes or LEDs are only able to produce light of a certain colour. However, white light can be created using different colour mixing processes.
Researchers led by Francesca Ferlaino from the University of Innsbruck and the Austrian Academy of Sciences report in Physical Review X on the observation of supersolid behavior in dipolar quantum gases of erbium and dysprosium. In the dysprosium gas these properties are unprecedentedly long-lived. This sets the stage for future investigations into the nature of this exotic phase of matter.
Supersolidity is a paradoxical state where the matter is both crystallized and superfluid. Predicted 50 years ago, such a counter-intuitive phase, featuring...
A stellar flare 10 times more powerful than anything seen on our sun has burst from an ultracool star almost the same size as Jupiter
A localization phenomenon boosts the accuracy of solving quantum many-body problems with quantum computers which are otherwise challenging for conventional computers. This brings such digital quantum simulation within reach on quantum devices available today.
Quantum computers promise to solve certain computational problems exponentially faster than any classical machine. “A particularly promising application is the...
17.04.2019 | Event News
15.04.2019 | Event News
09.04.2019 | Event News
25.04.2019 | Materials Sciences
25.04.2019 | Earth Sciences
25.04.2019 | Life Sciences