The Curious Case of the Curious Case: Detecting touchscreen events using a smartphone protective case

被引:0
作者
Gluck, Tomer [1 ]
Puzis, Rami [1 ]
Oren, Yossi [1 ]
Shabtai, Asaf [1 ]
机构
[1] Ben Gurion Univ Negev, Beer Sheva, Israel
来源
2017 2ND IEEE EUROPEAN SYMPOSIUM ON SECURITY AND PRIVACY WORKSHOPS (EUROS&PW) | 2017年
关键词
touchscreen leak; security; privacy; smartphone;
D O I
10.1109/EuroSPW.2017.58
中图分类号
TM [电工技术]; TN [电子技术、通信技术];
学科分类号
0808 ; 0809 ;
摘要
Security-conscious users are very careful with software they allow their phone to run. They are much less careful with the choices they make regarding accessories such as headphones or chargers and only few, if any, care about cyber security threats coming from the phone's protective case. We show how a malicious smartphone protective case can be used to detect and monitor the victim's interaction with the phone's touchscreen, opening the door to keylogger-like attacks, threatening the user's security and privacy. This feat is achieved by implementing a hidden capacitive sensing mechanism inside the case. Our attack is both sensitive enough to track the user's finger location across the screen, and simple and cheap enough to be mass-produced and deployed en masse. We discuss the theoretical principles behind this attack, present a preliminary proof-of-concept, and discuss potential countermeasures and mitigations.
引用
收藏
页码:99 / 103
页数:5
相关论文
共 9 条
  • [1] Ali K., 2015, P 21 ANN INT C MOB C
  • [2] [Anonymous], 2011, P NDSS
  • [3] Appelbaum J., 2015, SPIEGEL, V1
  • [4] Cai L., 2009, P 1 ACM SIGCOMM WORK
  • [5] Cai L., 2011, 6 USENIX WORKSH HOT
  • [6] Farshteindiker Benyamin, 2016, PHONE HOME SOMEONE E
  • [7] Lashkari A. H., 2009, ABS09120951 CORR
  • [8] Sekiguchi H., 2012, Progress In Electromagnetics Research B, V36, P399, DOI 10.2528/PIERB11101201
  • [9] Stoffregen Paul, 2014, CAPACITIVESENSOR