Reducing Permission Requests in Mobile Apps

被引:16
|
作者
Peddinti, Sai Teja [1 ]
Bilogrevic, Igor [1 ]
Taft, Nina [1 ]
Pelikan, Martin [1 ]
Erlingsson, Ulfar [1 ]
Anthonysamy, Pauline [1 ]
Hogben, Giles [1 ]
机构
[1] Google Inc, Mountain View, CA 94043 USA
关键词
Mobile Apps; Permissions;
D O I
10.1145/3355369.3355584
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Users of mobile apps sometimes express discomfort or concerns with what they see as unnecessary or intrusive permission requests by certain apps. However encouraging mobile app developers to request fewer permissions is challenging because there are many reasons why permissions are requested; furthermore, prior work [25] has shown it is hard to disambiguate the purpose of a particular permission with high certainty. In this work we describe a novel, algorithmic mechanism intended to discourage mobile-app developers from asking for unnecessary permissions. Developers are incentivized by an automated alert, or "nudge", shown in the Google Play Console when their apps ask for permissions that are requested by very few functionally-similar apps-in other words, by their competition. Empirically, this incentive is effective, with significant developer response since its deployment. Permissions have been redacted by 59% of apps that were warned, and this attenuation has occurred broadly across both app categories and app popularity levels. Importantly, billions of users' app installs from the Google Play have benefited from these redactions.
引用
收藏
页码:259 / 266
页数:8
相关论文
共 50 条
  • [31] Approach to Scheduling Network Requests in Android Apps
    Cai H.-Q.
    Zhang Y.
    Huang G.
    Mei H.
    Zhang, Ying (zhang.ying@pku.edu.cn), 1600, Chinese Academy of Sciences (28): : 3367 - 3384
  • [32] Towards Speedy Permission-Based Debloating for Android Apps
    Thung, Ferdian
    Liu, Jiakun
    Rattanukul, Pattarakrit
    Maoz, Shahar
    Toch, Eran
    Gao, Debin
    Lo, David
    PROCEEDINGS OF THE 2024 IEEE/ACM 11TH INTERNATIONAL CONFERENCE ON MOBILE SOFTWARE ENGINEERING AND SYSTEMS, MOBILESOFT 2024, 2024, : 84 - 87
  • [33] Permission Use Analysis for Vetting Undesirable Behaviors in Android Apps
    Zhang, Yuan
    Yang, Min
    Yang, Zhemin
    Gu, Guofei
    Ning, Peng
    Zang, Binyu
    IEEE TRANSACTIONS ON INFORMATION FORENSICS AND SECURITY, 2014, 9 (11) : 1828 - 1842
  • [34] Permission Analysis of Health and Fitness Apps in IoT Programming Frameworks
    Nobakht, Mehdi
    Sui, Yulei
    Seneviratne, Aruna
    Hu, Wen
    2018 17TH IEEE INTERNATIONAL CONFERENCE ON TRUST, SECURITY AND PRIVACY IN COMPUTING AND COMMUNICATIONS (IEEE TRUSTCOM) / 12TH IEEE INTERNATIONAL CONFERENCE ON BIG DATA SCIENCE AND ENGINEERING (IEEE BIGDATASE), 2018, : 533 - 538
  • [35] Russian-Language Mobile Apps for Reducing Alcohol Use: Systematic Search and Evaluation
    Bunova, Anna
    Wiemker, Veronika
    Gornyi, Boris
    Ferreira-Borges, Carina
    Neufeld, Maria
    JMIR MHEALTH AND UHEALTH, 2022, 10 (01):
  • [36] Analyzing Excessive Permission Requests in Google Workspace Add-Ons
    Wan, Liuhuo
    Yan, Chuan
    Menge, Mark Huasong
    Wang, Kailong
    Wang, Haoyu
    ENGINEERING OF COMPLEX COMPUTER SYSTEMS, ICECCS 2024, 2025, 14784 : 323 - 345
  • [37] Invasion of the Mobile Apps
    Anthes, Gary
    COMMUNICATIONS OF THE ACM, 2011, 54 (09) : 16 - 18
  • [38] Gastronomy in mobile apps
    Freire, Marcelo
    Martins Pereira, Ana Paula
    CHASQUI-REVISTA LATINOAMERICANA DE COMUNICACION, 2020, (143): : 257 - 272
  • [39] Mobile Apps in Africa
    Murugesan, San
    IT PROFESSIONAL, 2013, 15 (05) : 8 - 11
  • [40] Mobile web apps
    Serrano, N., 1600, IEEE Computer Society (30):