Static Analysis for Android GDPR Compliance Assurance

被引:0
|
作者
Khedkar, Mugdha [1 ]
机构
[1] Paderborn Univ, Heinz Nixdorf Inst, Paderborn, Germany
关键词
static analysis; data protection and privacy; GDPR compliance;
D O I
10.1109/ICSE-COMPANION58688.2023.00054
中图分类号
TP31 [计算机软件];
学科分类号
081202 ; 0835 ;
摘要
Many Android applications collect data from users. When they do, they must protect this collected data according to the current legal frameworks. Such data protection has become even more important since the European Union rolled out the General Data Protection Regulation (GDPR). App developers have limited tool support to reason about data protection throughout their app development process. Although many Android applications state a privacy policy, privacy policy compliance checks are currently manual, expensive, and prone to error. One of the major challenges in privacy audits is the significant gap between legal privacy statements (in English text) and technical measures that Android apps use to protect their user's privacy. In this thesis, we will explore to what extent we can use static analysis to answer important questions regarding data protection. Our main goal is to design a tool based approach that aids app developers and auditors in ensuring data protection in Android applications, based on automated static program analysis.
引用
收藏
页码:197 / 199
页数:3
相关论文
共 50 条
  • [21] On Purpose and by Necessity: Compliance Under the GDPR
    Basin, David
    Debois, Soren
    Hildebrandt, Thomas
    [J]. FINANCIAL CRYPTOGRAPHY AND DATA SECURITY, FC 2018, 2018, 10957 : 20 - 37
  • [22] Queryable Provenance Metadata For GDPR Compliance
    Pandit, Harshvardhan J.
    O'Sullivan, Declan
    Lewis, Dave
    [J]. PROCEEDINGS OF THE 14TH INTERNATIONAL CONFERENCE ON SEMANTIC SYSTEMS, 2018, 137 : 262 - 268
  • [23] Compliance with the GDPR Regulation for a CAD Organisation
    Titu, Mihail Aurel
    Pop, Alina Bianca
    [J]. QUALITY-ACCESS TO SUCCESS, 2019, 20 (170): : 136 - 142
  • [24] Static Analysis of Memory Leak in Android Applications
    Zhou, Di
    Fu, Zhengyu
    [J]. PROCEEDINGS OF THE 4TH INTERNATIONAL CONFERENCE ON MECHATRONICS, MATERIALS, CHEMISTRY AND COMPUTER ENGINEERING 2015 (ICMMCCE 2015), 2015, 39 : 1023 - 1027
  • [25] Kunai: A static analysis framework for Android apps
    Blazquez, Eduardo
    Tapiador, Juan
    [J]. SOFTWAREX, 2023, 22
  • [26] An integrated static detection and analysis framework for android
    Song, Jun
    Han, Chunling
    Wang, Kaixin
    Zhao, Jian
    Ranjan, Rajiv
    Wang, Lizhe
    [J]. PERVASIVE AND MOBILE COMPUTING, 2016, 32 : 15 - 25
  • [27] Static Analysis of Context Leaks in Android Applications
    Toffalini, Flavio
    Sun, Jun
    Ochoa, Martin
    [J]. 2018 IEEE/ACM 40TH INTERNATIONAL CONFERENCE ON SOFTWARE ENGINEERING - SOFTWARE ENGINEERING IN PRACTICE TRACK (ICSE-SEIP 2018), 2018, : 215 - 224
  • [28] AN APP BASED ON STATIC ANALYSIS FOR ANDROID RANSOMWARE
    Kanwal, Meet
    Thakur, Sanjeev
    [J]. 2017 IEEE INTERNATIONAL CONFERENCE ON COMPUTING, COMMUNICATION AND AUTOMATION (ICCCA), 2017, : 813 - 818
  • [29] AN APP BASED ON STATIC ANALYSIS FOR ANDROID RANSOMWARE
    Kanwal, Meet
    Thakur, Sanjeev
    Lashkari, Rishabh
    [J]. 2017 8TH INTERNATIONAL CONFERENCE ON COMPUTING, COMMUNICATION AND NETWORKING TECHNOLOGIES (ICCCNT), 2017,
  • [30] Android Security via Static Program Analysis
    Shen, Feng
    [J]. MOBISYS'17 PHD FORUM: PROCEEDINGS OF THE 2017 WORKSHOP ON MOBISYS 2017 PH.D. FORUM, 2017, : 19 - 20