Interdependent Privacy Issues Are Pervasive Among Third-Party Applications

被引:0
|
作者
Liu, Shuaishuai [1 ]
Herendi, Barbara [1 ]
Biczok, Gergely [1 ]
机构
[1] Budapest Univ Technol & Econ, Dept Networked Syst & Serv, CrySyS Lab, Budapest, Hungary
关键词
Interdependent privacy; Third-party apps; Permissions; Android; Browser extensions; Google Workspace; Risk signal;
D O I
10.1007/978-3-030-93944-1_5
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Third-party applications are popular: they improve and extend the features offered by their respective platforms, whether being mobile OS, browsers or cloud-based tools. Although some privacy concerns regarding these apps have been studied in detail, the phenomenon of interdependent privacy, when a user shares others' data with an app without their knowledge and consent. Through careful analysis of permission models and multiple platform-specific datasets, we show that interdependent privacy risks are enabled by certain permissions in all platforms studied, and actual apps request these permissions instantiating these risks. We also identify potential risk signals, and discuss solutions which could improve transparency and control for users, developers and platform owners.
引用
收藏
页码:70 / 86
页数:17
相关论文
共 50 条
  • [1] A look into user privacy and third-party applications in Facebook
    Seng, Sovantharith
    Al-Ameen, Mahdi Nasrullah
    Wright, Matthew
    [J]. INFORMATION AND COMPUTER SECURITY, 2021, 29 (02) : 283 - 313
  • [2] Preserving User Privacy from Third-party Applications in Online Social Networks
    Cheng, Yuan
    Park, Jaehong
    Sandhu, Ravi
    [J]. PROCEEDINGS OF THE 22ND INTERNATIONAL CONFERENCE ON WORLD WIDE WEB (WWW'13 COMPANION), 2013, : 723 - 728
  • [3] Misinformation in Third-party Voice Applications
    Bispham, Mary
    Sattar, Suliman Kalim
    Zard, Clara
    Ferrer-Aran, Xavier
    Edu, Jide
    Suarez-Tangil, Guillermo
    Such, Jose
    [J]. PROCEEDINGS OF THE 5TH INTERNATIONAL CONFERENCE ON CONVERSATIONAL USER INTERFACES, CUI 2023, 2023,
  • [4] Consumer trust: privacy policies and third-party seals
    Peterson, Dane
    Meinert, David
    Criswell, John, II
    Crossland, Martin
    [J]. JOURNAL OF SMALL BUSINESS AND ENTERPRISE DEVELOPMENT, 2007, 14 (04) : 654 - +
  • [5] Third-Party Apps on Facebook: Privacy and the Illusion of Control
    Wang, Na
    Xu, Heng
    Grossklags, Jens
    [J]. PROCEEDINGS OF THE 5TH ACM SYMPOSIUM ON COMPUTER HUMAN INTERACTION FOR MANAGEMENT OF INFORMATION TECHNOLOGY (CHIMIT 2011), 2011,
  • [6] Visualizations of Third-Party Applications on DCS Systems
    Kujawa, Marcin
    Piotrowski, Robert
    [J]. INTERNATIONAL CONFERENCE ON ELECTRICAL, COMPUTER AND ENERGY TECHNOLOGIES (ICECET 2021), 2021, : 1767 - 1770
  • [7] THIRD-PARTY FUNDING: PRACTICAL, ETHICAL AND PROCEDURAL ISSUES
    Sitkareva, Elena V.
    Artemyeva, Yulia A.
    Mendosa-Molina, Svetlana
    [J]. PROCEEDINGS OF INTCESS 2019- 6TH INTERNATIONAL CONFERENCE ON EDUCATION AND SOCIAL SCIENCES, 2019, : 996 - 1004
  • [8] Ethical Issues in Third-Party Disclosure in Atkins Cases
    Wood, Mary E.
    Brodsky, Stanley L.
    [J]. JOURNAL OF FORENSIC PSYCHOLOGY PRACTICE, 2015, 15 (01) : 80 - 91
  • [9] Demystifying Privacy Policy of Third-Party Libraries in Mobile Apps
    Zhao, Kaifa
    Zhan, Xian
    Yu, Le
    Zhou, Shiyao
    Zhou, Hao
    Luo, Xiapu
    Wang, Haoyu
    Liu, Yepang
    [J]. 2023 IEEE/ACM 45TH INTERNATIONAL CONFERENCE ON SOFTWARE ENGINEERING, ICSE, 2023, : 1583 - 1595
  • [10] Measuring Personal Privacy Breaches Using Third-Party Trackers
    Shuford, Erica
    Kavanaugh, Tara
    Ralph, Brian
    Ceesay, Ebrima
    Watters, Paul A.
    [J]. 2018 17TH IEEE INTERNATIONAL CONFERENCE ON TRUST, SECURITY AND PRIVACY IN COMPUTING AND COMMUNICATIONS (IEEE TRUSTCOM) / 12TH IEEE INTERNATIONAL CONFERENCE ON BIG DATA SCIENCE AND ENGINEERING (IEEE BIGDATASE), 2018, : 1615 - 1618