As Virtual Reality (VR) technology continues to gain widespread adoption, concerns about cybersecurity threats in immersive environments are mounting. Inter-process communication (IPC) is prevalent in operating systems that power VR devices, allowing applications to interact. While facilitating interaction between apps, the IPC presents a significant risk, as malicious apps can exploit it to attack other apps. This vulnerability is rooted in the inherent security architecture and design implementations of these operating systems. This paper addresses IPC security by proposing a fine-grained security model that employs the NIST Next Generation Access Control (NGAC). It focuses on the Android environment to safeguard the IPC and secure the apps’ interaction. This security model strengthens VR systems’ defensive capabilities and ensures the safety of users’ digital experiences. The security model is designed as an NGAC gateway that is adaptable at the kernel level and portable to various operating system architectures. This NGAC gateway fortifies Android-based VR devices and assures the consumer VR market. Such a security model is required for the VR security domain and will be transformative for the VR industry.

错误:搜索内容不能为空,请输入英文关键词
错误:关键词超出字数限制,请精简
高级检索

Securing Virtual Reality Apps Inter-process Communication

  • Oluwatosin Falebita,
  • Mahmoud Abdelgawad,
  • Evan Anspach,
  • Indrakshi Ray

摘要

As Virtual Reality (VR) technology continues to gain widespread adoption, concerns about cybersecurity threats in immersive environments are mounting. Inter-process communication (IPC) is prevalent in operating systems that power VR devices, allowing applications to interact. While facilitating interaction between apps, the IPC presents a significant risk, as malicious apps can exploit it to attack other apps. This vulnerability is rooted in the inherent security architecture and design implementations of these operating systems. This paper addresses IPC security by proposing a fine-grained security model that employs the NIST Next Generation Access Control (NGAC). It focuses on the Android environment to safeguard the IPC and secure the apps’ interaction. This security model strengthens VR systems’ defensive capabilities and ensures the safety of users’ digital experiences. The security model is designed as an NGAC gateway that is adaptable at the kernel level and portable to various operating system architectures. This NGAC gateway fortifies Android-based VR devices and assures the consumer VR market. Such a security model is required for the VR security domain and will be transformative for the VR industry.