Anatomization and Protection of Mobile Apps' Location Privacy Threats

被引:0
|
作者
Fawaz, Kassem [1 ]
Feng, Huan [1 ]
Shin, Kang G. [1 ]
机构
[1] Univ Michigan, Ann Arbor, MI 48109 USA
基金
美国国家科学基金会;
关键词
D O I
暂无
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Mobile users are becoming increasingly aware of the privacy threats resulting from apps' access of their location. Few of the solutions proposed thus far to mitigate these threats have been deployed as they require either app or platform modifications. Mobile operating systems (OSes) also provide users with location access controls. In this paper, we analyze the efficacy of these controls in combating the location-privacy threats. For this analysis, we conducted the first location measurement campaign of its kind, analyzing more than 1000 free apps from Google Play and collecting detailed usage of location by more than 400 location-aware apps and 70 Advertisement and Analytics (A&A) libraries from more than 100 participants over a period ranging from 1 week to 1 year. Surprisingly, 70% of the apps and the A&A libraries pose considerable profiling threats even when they sporadically access the user's location. Existing OS controls are found ineffective and inefficient in mitigating these threats, thus calling for a finer-grained location access control. To meet this need, we propose LP-Doctor, a light-weight user-level tool that allows Android users to effectively utilize the OS's location access controls while maintaining the required app's functionality as our user-study (with 227 participants) shows.
引用
收藏
页码:753 / 768
页数:16
相关论文
共 50 条
  • [21] Privacy threats and issues in mobile RFID
    Lee, Hyangjin
    Kim, Jeeyeon
    [J]. First International Conference on Availability, Reliability and Security, Proceedings, 2006, : 510 - 514
  • [22] A platform for the development of location-based mobile applications with privacy protection
    Jorns, Oliver
    Jung, Oliver
    Quirchmayr, Gerald
    [J]. 2008 3RD INTERNATIONAL CONFERENCE ON COMMUNICATION SYSTEM SOFTWARE AND MIDDLEWARE AND WORKSHOPS, VOLS 1 AND 2, 2008, : 120 - +
  • [23] Co-location Privacy Protection Method in Mobile Social Networks
    Li J.
    Xiong D.
    Cao J.
    [J]. Huanan Ligong Daxue Xuebao/Journal of South China University of Technology (Natural Science), 2019, 47 (02): : 92 - 97and105
  • [24] Location Correlated Differential Privacy Protection Based on Mobile Feature Analysis
    Peng, Zhenlong
    An, Jian
    Gui, Xiaolin
    Wang, Zhenxing
    Zhang, Wendong
    Gui, Ruowei
    Xu, Jingxian
    [J]. IEEE ACCESS, 2019, 7 : 54483 - 54496
  • [25] K-anonymous location privacy protection scheme for the mobile terminal
    Song C.
    Jin T.
    Ni S.
    He J.
    Du S.
    [J]. Xi'an Dianzi Keji Daxue Xuebao/Journal of Xidian University, 2021, 48 (03): : 138 - 145
  • [26] Exploiting Proximity-Based Mobile Apps for Large-Scale Location Privacy Probing
    Zhao, Shuang
    Luo, Xiapu
    Ma, Xiaobo
    Bai, Bo
    Zhao, Yankang
    Zou, Wei
    Yang, Zeming
    Au, Man Ho
    Qiu, Xinliang
    [J]. SECURITY AND COMMUNICATION NETWORKS, 2018,
  • [27] The Privacy Calculus: Mobile Apps and User Perceptions of Privacy and Security
    Fife, Elizabeth
    Orjuela, Juan
    [J]. INTERNATIONAL JOURNAL OF ENGINEERING BUSINESS MANAGEMENT, 2012, 4
  • [28] PROVIDING LOCATION PRIVACY PROTECTION USING DYNAMIC GRID SYSTEM FOR MOBILE LOCATION BASED SERVICES
    Saravanan, G.
    Sundaramurthy, G.
    Sanjay, R.
    Geetha, R.
    [J]. 2017 INTERNATIONAL CONFERENCE ON INFORMATION COMMUNICATION AND EMBEDDED SYSTEMS (ICICES), 2017,
  • [29] An Analysis of Mobile Gaming Apps' Privacy Policies
    Wang, Tian
    Hayes, Carol Mullins
    Chen, Chen
    Bashir, Masooda
    [J]. 2022 IEEE GAMES, ENTERTAINMENT, MEDIA CONFERENCE (GEM), 2022,
  • [30] Privacy Policies of Mobile Apps - A Usability Study
    Anikeev, Maxim
    Shulman, Haya
    Simo, Hervais
    [J]. IEEE CONFERENCE ON COMPUTER COMMUNICATIONS WORKSHOPS (IEEE INFOCOM WKSHPS 2021), 2021,