Et tu, Brute? Privacy Analysis of GovernmentWebsites and Mobile Apps

被引:5
|
作者
Samarasinghe, Nayanamana [1 ]
Adhikari, Aashish [1 ]
Mannan, Mohammad [1 ]
Youssef, Amr [1 ]
机构
[1] Concordia Univ, Montreal, PQ, Canada
关键词
Government services; tracking; web; Android; privacy; security;
D O I
10.1145/3485447.3512223
中图分类号
TP3 [计算技术、计算机技术];
学科分类号
0812 ;
摘要
Past privacy measurement studies on web tracking focused on high-ranked commercial websites, as user tracking is extensively used for monetization on those sites. Conversely, governments across the globe now offer services online, which unlike commercial sites, are funded by public money, and do not generally make it to the top million website lists. As such, web tracking on those services has not been comprehensively studied, even though these services deal with privacy and security-sensitive user data, and used by a significant number of users. In this paper, we perform privacy and security measurements on government websites and Android apps: 150,244 unique websites (from 206 countries) and 1166 Android apps (from 71 countries). We found numerous commercial trackers on these services-e.g., 17% of government websites and 37% of government Android apps host Google trackers; 13% of government sites contain YouTube cookies with an expiry date in the year of 9999. 27% of government Android apps leak sensitive information (e.g., user/device identifiers, passwords, API keys) to third parties, or any network attacker (when sent over HTTP). We also found 304 government sites and 40 apps are flagged by VirusTotal as malicious. We hope our findings to help improve privacy and security of online government services, given that governments are now apparently taking Internet privacy/security seriously and imposing strict regulations on commercial sites.
引用
收藏
页码:564 / 575
页数:12
相关论文
共 50 条
  • [1] ET TU BRUTE
    WILLEY, EJB
    [J]. CHEMISTRY IN BRITAIN, 1965, 1 (02) : 82 - &
  • [2] ET TU BRUTE
    NAUS, GM
    [J]. AUTOMOTIVE INDUSTRIES, 1984, 164 (01): : 8 - 8
  • [3] Et tu, Brute? How unfair!
    Tripathi, Sanjeev
    [J]. JOURNAL OF RETAILING AND CONSUMER SERVICES, 2017, 39 : 79 - 92
  • [4] Wire skills for cardiac surgeons—et tu Brute?
    A. G. Jayakrishnan
    [J]. Indian Journal of Thoracic and Cardiovascular Surgery, 2024, 40 : 119 - 120
  • [5] An Analysis of Mobile Gaming Apps' Privacy Policies
    Wang, Tian
    Hayes, Carol Mullins
    Chen, Chen
    Bashir, Masooda
    [J]. 2022 IEEE GAMES, ENTERTAINMENT, MEDIA CONFERENCE (GEM), 2022,
  • [6] Automated Analysis of Privacy Requirements for Mobile Apps
    Zimmeck, Sebastian
    Wang, Ziqi
    Zou, Lieyong
    Iyengar, Roger
    Liu, Bin
    Schaub, Florian
    Wilson, Shomir
    Sadeh, Norman
    Bellovin, Steven M.
    Reidenberg, Joel
    [J]. 24TH ANNUAL NETWORK AND DISTRIBUTED SYSTEM SECURITY SYMPOSIUM (NDSS 2017), 2017,
  • [7] ET TU, BRUTE? The best Latin lines ever
    Herd, Lily
    [J]. TLS-THE TIMES LITERARY SUPPLEMENT, 2022, (6245): : 24 - 24
  • [8] Et Tu Brute?: A Short History of Political Murder
    Moses, Norton H.
    [J]. HISTORIAN, 2009, 71 (03): : 681 - 682
  • [9] Et tu brute? A qualitative analysis of streetwalking prostitutes' interpersonal support networks
    Dalla, RL
    [J]. JOURNAL OF FAMILY ISSUES, 2001, 22 (08) : 1066 - 1085
  • [10] 'Et tu, Brute?' The murder of Caesar and political assassination
    Wiseman, T. P.
    [J]. TLS-THE TIMES LITERARY SUPPLEMENT, 2006, (5382): : 7 - 7