Towards Fine-Grained Localization of Privacy Behaviors

被引:2
|
作者
Jain, Vijayanta [1 ]
Ghanavati, Sepideh [1 ]
Peddinti, Sai Teja [2 ]
McMillan, Collin [3 ]
机构
[1] Univ Maine, Orono, ME 04469 USA
[2] Google Inc, Mountain View, CA USA
[3] Univ Notre Dame, Notre Dame, IN 46556 USA
关键词
privacy labels; privacy-behavior; Android applications; machine learning; ANDROID MALWARE DETECTION; MALICIOUS CODE; SYSTEM;
D O I
10.1109/EuroSP57164.2023.00024
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Privacy labels help developers communicate their application's privacy behaviors (i.e., how and why an application uses personal information) to users. But, studies show that developers face several challenges in creating them and the resultant labels are often inconsistent with their application's privacy behaviors. In this paper, we create a novel methodology called fine-grained localization of privacy behaviors to locate individual statements in source code which encode privacy behaviors and predict their privacy labels. We design and develop an attention-based multi-head encoder model which creates individual representations of multiple methods and uses attention to identify relevant statements that implement privacy behaviors. These statements are then used to predict privacy labels for the application's source code and can help developers write privacy statements that can be used as notices. Our quantitative analysis shows that our approach can achieve high accuracy in identifying privacy labels, with the lowest accuracy of 91.41% and the highest of 98.45%. We also evaluate the efficacy of our approach with six software professionals from our university. The results demonstrate that our approach reduces the time and mental effort required by developers to create high-quality privacy statements and can finely localize statements in methods that implement privacy behaviors.
引用
收藏
页码:258 / 277
页数:20
相关论文
共 50 条
  • [21] Sensor selection for fine-grained behavior verification that respects privacy
    Phatak, Rishi
    Shell, Dylan A.
    2023 IEEE/RSJ INTERNATIONAL CONFERENCE ON INTELLIGENT ROBOTS AND SYSTEMS (IROS), 2023, : 8628 - 8635
  • [22] Privacy Image Protection Using Fine-Grained Mosaic Technique
    Chen, Yi-Hui
    Lu, Eric Jui-Lin
    Wang, Chu-Fan
    2013 ASIA-PACIFIC SIGNAL AND INFORMATION PROCESSING ASSOCIATION ANNUAL SUMMIT AND CONFERENCE (APSIPA), 2013,
  • [23] Sensor selection for fine-grained behavior verification that respects privacy
    Phatak, Rishi
    Shell, Dylan A.
    2023 IEEE/RSJ INTERNATIONAL CONFERENCE ON INTELLIGENT ROBOTS AND SYSTEMS (IROS), 2023, : 10117 - 10124
  • [24] A Fine-Grained Privacy Structure for Service-Oriented Architecture
    Allison, David S.
    El Yamany, Hany F.
    Capretz, Miriam A. M.
    2009 IEEE 33RD INTERNATIONAL COMPUTER SOFTWARE AND APPLICATIONS CONFERENCE, VOLS 1 AND 2, 2009, : 628 - 629
  • [25] Evidential fine-grained event localization using Twitter
    Shahraki, Zahra Khodabandeh
    Fatemi, Afsaneh
    Malazi, Hadi Tabatabaee
    INFORMATION PROCESSING & MANAGEMENT, 2019, 56 (06)
  • [26] Hyper columns for Object Segmentation and Fine-grained Localization
    Hariharan, Bharath
    Arbelaez, Pablo
    Girshick, Ross
    Malik, Jitendra
    2015 IEEE CONFERENCE ON COMPUTER VISION AND PATTERN RECOGNITION (CVPR), 2015, : 447 - 456
  • [27] SAH: Fine-grained RFID Localization with Antenna Calibration
    Zhang, Xu
    Liu, Jia
    Chen, Xingyu
    Li, Wenjie
    Chen, Lijun
    IEEE CONFERENCE ON COMPUTER COMMUNICATIONS (IEEE INFOCOM 2022), 2022, : 980 - 988
  • [28] Fine-Grained Image Retrieval via Object Localization
    Wang, Rong
    Zou, Wei
    Wang, Jiajun
    ELECTRONICS, 2023, 12 (10)
  • [29] BlurSense: Dynamic Fine-Grained Access Control for Smartphone Privacy
    Cappos, Justin
    Wang, Lai
    Weiss, Richard
    Yang, Yi
    Zhuang, Yanyan
    2014 IEEE SENSORS APPLICATIONS SYMPOSIUM (SAS), 2014, : 329 - 332
  • [30] Fine-grained k-anonymity for privacy preserving in cloud
    Arava, Karuna
    Lingamgunta, Sumalatha
    INTERNATIONAL JOURNAL OF KNOWLEDGE-BASED AND INTELLIGENT ENGINEERING SYSTEMS, 2019, 23 (04) : 241 - 247