SecureSMS
Dongwoo Kim, Jae‐Cheol Ryou · 2014
Damage caused by smishing has been rapidly increased. A major problem resulted from the smishing is to induce overcharging via micropayment service without interaction with a user. The overcharging is based on the interception of SMS that contains one-time password for the micropayments. Almost all the damage has occurred on android platform. Various solutions to prevent the smishing have been launched recently. However, none of them are able to completely protect it against SMS interception. In this paper, we address the limitations of the existing solutions and suggest a method which thoroughly can prevent SMS interception by means of the modified android platform. We demonstrate the proposed method by implementing it and developing an app which is replaced with the native SMS app. In addition, we suggest an additional idea to protect our mechanism against expected threats on the rooted environment.