Edna: Disguising and Revealing User Data in Web Applications

被引:0
|
作者
Tsai, Lillian [1 ]
Gross, Hannah [2 ]
Kaashoek, M. Frans [1 ]
Kohler, Eddie [3 ]
Schwarzkopf, Malte [2 ]
机构
[1] MIT, CSAIL, Cambridge, MA 02139 USA
[2] Brown Univ, Providence, RI 02912 USA
[3] Harvard Univ, Cambridge, MA 02138 USA
关键词
Web Applications; Data Privacy; Anonymization; Data Encryption; GDPR; PII; LANGUAGE;
D O I
10.1145/3600006.3613146
中图分类号
TP3 [计算技术、计算机技术];
学科分类号
0812 ;
摘要
Edna is a system that helps web applications allow users to remove their data without permanently losing their accounts, anonymize their old data, and selectively dissociate personal data from public profiles. Edna helps developers support these features while maintaining application functionality and referential integrity via disguising and revealing transformations. Disguising selectively renders user data inaccessible via encryption, and revealing enables the user to restore their data to the application. Edna's techniques allow transformations to compose in any order, e.g., deleting a previously anonymized user's account, or restoring an account back to an anonymized state. Experiments with Edna that add disguising and revealing transformations to three real-world applications show that Edna enables new privacy features in existing applications with low developer effort, is simpler than alternative approaches, and adds limited overhead to applications.
引用
收藏
页码:434 / 450
页数:17
相关论文
共 50 条
  • [1] Data sharing between web applications based on the request of user
    Li, Ming
    Luo, Nianlong
    2009 ISECS INTERNATIONAL COLLOQUIUM ON COMPUTING, COMMUNICATION, CONTROL, AND MANAGEMENT, VOL III, 2009, : 280 - 282
  • [2] Clustering and Tailoring User Session Data for Testing Web Applications
    Luo, Xingmin
    Ping, Fan
    Chen, Mei-Hwa
    SECOND INTERNATIONAL CONFERENCE ON SOFTWARE TESTING, VERIFICATION, AND VALIDATION, PROCEEDINGS, 2009, : 336 - 345
  • [3] User Intention Modeling in Web Applications Using Data Mining
    Chen Z.
    Lin F.
    Liu H.
    Liu Y.
    Ma W.-Y.
    Wenyin L.
    World Wide Web, 2002, 5 (03) : 181 - 191
  • [4] Home is where the hollow is: Revealing vertebrate tree hollow user biodiversity with eDNA metabarcoding
    Newton, Joshua P.
    Bateman, Philip W.
    Heydenrych, Matthew J.
    Mousavi-Derazmahalleh, Mahsa
    Nevill, Paul
    ENVIRONMENTAL DNA, 2022, 4 (05): : 1078 - 1091
  • [5] Integration of Data Validation and User Interface Concerns in a DSL for Web Applications
    Groenewegen, Danny M.
    Visser, Eelco
    SOFTWARE LANGUAGE ENGINEERING, 2010, 5969 : 164 - 173
  • [6] User Session Data based Web Applications Test with Cluster Analysis
    Li, Jin-hua
    Xing, Dan-dan
    ADVANCED RESEARCH ON COMPUTER SCIENCE AND INFORMATION ENGINEERING, PT I, 2011, 152 : 415 - 421
  • [7] Integration of data validation and user interface concerns in a DSL for web applications
    Groenewegen, Danny M.
    Visser, Eelco
    SOFTWARE AND SYSTEMS MODELING, 2013, 12 (01): : 35 - 52
  • [8] A user-friendly enterprise framework for data intensive web applications
    Garzotto, F
    Proceedings of the 2005 IEEE International Conference on Information Reuse and Integration, 2005, : 415 - 420
  • [9] Integration of data validation and user interface concerns in a DSL for web applications
    Danny M. Groenewegen
    Eelco Visser
    Software & Systems Modeling, 2013, 12 : 35 - 52
  • [10] User preferences in the web of data
    Polo, Luis
    Minguez, Ivan
    Berrueta, Diego
    Ruiz, Carlos
    Manuel Gomez, Jose
    SEMANTIC WEB, 2014, 5 (01) : 67 - 75