Reducing Permission Requests in Mobile Apps

被引:16
|
作者
Peddinti, Sai Teja [1 ]
Bilogrevic, Igor [1 ]
Taft, Nina [1 ]
Pelikan, Martin [1 ]
Erlingsson, Ulfar [1 ]
Anthonysamy, Pauline [1 ]
Hogben, Giles [1 ]
机构
[1] Google Inc, Mountain View, CA 94043 USA
关键词
Mobile Apps; Permissions;
D O I
10.1145/3355369.3355584
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Users of mobile apps sometimes express discomfort or concerns with what they see as unnecessary or intrusive permission requests by certain apps. However encouraging mobile app developers to request fewer permissions is challenging because there are many reasons why permissions are requested; furthermore, prior work [25] has shown it is hard to disambiguate the purpose of a particular permission with high certainty. In this work we describe a novel, algorithmic mechanism intended to discourage mobile-app developers from asking for unnecessary permissions. Developers are incentivized by an automated alert, or "nudge", shown in the Google Play Console when their apps ask for permissions that are requested by very few functionally-similar apps-in other words, by their competition. Empirically, this incentive is effective, with significant developer response since its deployment. Permissions have been redacted by 59% of apps that were warned, and this attenuation has occurred broadly across both app categories and app popularity levels. Importantly, billions of users' app installs from the Google Play have benefited from these redactions.
引用
收藏
页码:259 / 266
页数:8
相关论文
共 50 条
  • [41] Vetting Mobile Apps
    Quirolgico, Steve
    Voas, Jeffrey
    Kuhn, Rick
    IT PROFESSIONAL, 2011, 13 (04) : 9 - 11
  • [42] On the monetization of mobile apps
    Appel, Gil
    Libai, Barak
    Muller, Eitan
    Shachar, Ron
    INTERNATIONAL JOURNAL OF RESEARCH IN MARKETING, 2020, 37 (01) : 93 - 107
  • [43] Mobile Apps and Neurosurgery
    Kalakoti, Piyush
    Maiti, Tanmoy
    Sharma, Kanika
    Sun, Hai
    Nanda, Anil
    WORLD NEUROSURGERY, 2016, 92 : 571 - 571
  • [44] Mobile Apps for Older Users - The Development of a Mobile Apps Repository for Older People
    Garcia-Penalvo, Francisco J.
    Angel Conde, Miguel
    Matellan-Olivera, Vicente
    LEARNING AND COLLABORATION TECHNOLOGIES: TECHNOLOGY-RICH ENVIRONMENTS FOR LEARNING AND COLLABORATION, PT II, 2014, 8524 : 117 - 126
  • [45] SmartPI: Understanding Permission Implications of Android Apps from User Reviews
    Wang, Run
    Wang, Zhibo
    Tang, Benxiao
    Zhao, Lei
    Wang, Lina
    IEEE TRANSACTIONS ON MOBILE COMPUTING, 2020, 19 (12) : 2933 - 2945
  • [46] 'Lean' Laboratory Requests: A Mobile App for Molecular Test Requests
    Pilson, K.
    Mc Carthy, J.
    Bennett, M. W.
    JOURNAL OF PATHOLOGY, 2015, 237 : S52 - S52
  • [47] DEMO: Starving Permission-Hungry Android Apps Using SecuRank
    Taylor, Vincent F.
    Martinovic, Ivan
    CCS'16: PROCEEDINGS OF THE 2016 ACM SIGSAC CONFERENCE ON COMPUTER AND COMMUNICATIONS SECURITY, 2016, : 1850 - 1852
  • [48] REDUCING APPS TRANSFER ERROR
    SEWELL, ED
    PHOTOGRAMMETRIC ENGINEERING AND REMOTE SENSING, 1976, 42 (06): : 832 - 832
  • [49] Security analysis of permission re-delegation vulnerabilities in Android apps
    Biniam Fisseha Demissie
    Mariano Ceccato
    Lwin Khin Shar
    Empirical Software Engineering, 2020, 25 : 5084 - 5136
  • [50] Security analysis of permission re-delegation vulnerabilities in Android apps
    Demissie, Biniam Fisseha
    Ceccato, Mariano
    Shar, Lwin Khin
    EMPIRICAL SOFTWARE ENGINEERING, 2020, 25 (06) : 5084 - 5136