PrivacyPalisade: Evaluating App Permissions and Building Privacy into Smartphones

被引:0
|
作者
Quattrone, Anthony [1 ]
Kulik, Lars [1 ]
Tanin, Egemen [1 ]
Ramamohanarao, Kotagiri [1 ]
Gu, Tao [2 ]
机构
[1] Univ Melbourne, Dept Comp & Informat Syst, Melbourne, Vic 3010, Australia
[2] RMIT Univ, Sch Comp Sci & IT, Melbourne, Vic, Australia
关键词
D O I
暂无
中图分类号
TM [电工技术]; TN [电子技术、通信技术];
学科分类号
0808 ; 0809 ;
摘要
Privacy has become a key concern for smartphone users as many apps tend to access and share sensitive data. However, it is not easily understandable for users which apps access what type of data and which are the minimal access permissions required to achieve a certain functionality. Although there are apps targeting privacy concerns, they only show which type of data is accessed but not whether it is necessary for an app to achieve its functionality. We propose a model that groups apps together in terms of advertised functionality and assesses an app's privacy intrusiveness based on the requested permissions relative to similar apps. To improve user comprehension of permissions, we implement PrivacyPalisade and demonstrate Android OS level modifications that use visual cues to indicate the privacy intrusiveness of an app. If an app requests a permission that is not common in its cohort, the user is notified and shown visually the permission implications. We demonstrate that the proposed approach is scalable and incurs little performance overhead.
引用
收藏
页数:5
相关论文
共 50 条
  • [1] Privacy, Permissions, and the Health App Ecosystem: A Stack Overflow Exploration
    Tahaei, Mohammad
    Bernd, Julia
    Rashid, Awais
    [J]. 2022 EUROPEAN SYMPOSIUM ON USABLE SECURITY, EUROUSEC 2022, 2022, : 117 - 130
  • [2] Stuck in the Permissions With You: Developer & End-User Perspectives on App Permissions & Their Privacy Ramifications
    Tahaei, Mohammad
    Abu-Salma, Ruba
    Rashid, Awais
    [J]. PROCEEDINGS OF THE 2023 CHI CONFERENCE ON HUMAN FACTORS IN COMPUTING SYSTEMS, CHI 2023, 2023,
  • [3] Permissions and Privacy
    Jakobsson, Markus
    [J]. IEEE SECURITY & PRIVACY, 2020, 18 (02) : 46 - 55
  • [4] Evaluating the Privacy Valuation of Personal Data on Smartphones
    Fan, Lihua
    Zhang, Shuning
    Kong, Yan
    Yi, Xin
    Wang, Yang
    Xu, Xuhai ''Orson''
    Yu, Chun
    Li, Hewu
    Shi, Yuanchun
    [J]. PROCEEDINGS OF THE ACM ON INTERACTIVE MOBILE WEARABLE AND UBIQUITOUS TECHNOLOGIES-IMWUT, 2024, 8 (03):
  • [5] Won't You Think of Others?: Interdependent Privacy in Smartphone App Permissions
    Marsch, Maximilian
    Grossklags, Jens
    Patil, Sameer
    [J]. Proceedings of the ACM on Human-Computer Interaction, 2021, 5 (CSCW2):
  • [6] "I do (not) need that Feature!" - Understanding Users' Awareness and Control of Privacy Permissions on Android Smartphones
    Prange, Sarah
    Knierim, Pascal
    Knoll, Gabriel
    Dietz, Felix
    De Luca, Alexander
    Alt, Florian
    [J]. PROCEEDINGS OF THE TWENTIETH SYMPOSIUM ON USABLE PRIVACY AND SECURITY, SOUPS 2024, 2024, : 453 - 472
  • [7] Reconciling Mobile App Privacy and Usability on Smartphones: Could User Privacy Profiles Help?
    Liu, Bin
    Lin, Jialiu
    Sadeh, Norman
    [J]. WWW'14: PROCEEDINGS OF THE 23RD INTERNATIONAL CONFERENCE ON WORLD WIDE WEB, 2014, : 201 - 211
  • [8] PermPress: Machine Learning-Based Pipeline to Evaluate Permissions in App Privacy Policies
    Rahman, Muhammad Sajidur
    Naghavi, Pirouz
    Kojusner, Blas
    Afroz, Sadia
    Williams, Byron
    Rampazzi, Sara
    Bindschaedler, Vincent
    [J]. IEEE ACCESS, 2022, 10 : 89248 - 89269
  • [9] Personalized app recommendation based on app permissions
    Peng, Min
    Zeng, Guanyin
    Sun, Zhaoyu
    Huang, Jiajia
    Wang, Hua
    Tian, Gang
    [J]. WORLD WIDE WEB-INTERNET AND WEB INFORMATION SYSTEMS, 2018, 21 (01): : 89 - 104
  • [10] How Dangerous Are Your Smartphones? App Usage Recommendation with Privacy Preserving
    Zhu, Konglin
    He, Xiaoman
    Xiang, Bin
    Zhang, Lin
    Pattavina, Achille
    [J]. MOBILE INFORMATION SYSTEMS, 2016, 2016