PPChecker: Towards Accessing the Trustworthiness of Android Apps' Privacy Policies

被引:18
|
作者
Yu, Le [1 ]
Luo, Xiapu [1 ]
Chen, Jiachi [1 ]
Zhou, Hao [1 ]
Zhang, Tao [1 ,2 ]
Chang, Henry [3 ]
Leung, Hareton K. N. [1 ]
机构
[1] Hong Kong Polytech Univ, Dept Comp, Hong Kong, Peoples R China
[2] Harbin Engn Univ, Coll Comp Sci & Technol, Harbin 150001, Peoples R China
[3] Univ Hong Kong, Dept Law, Hong Kong, Peoples R China
基金
中国国家自然科学基金; 中国博士后科学基金;
关键词
Privacy; Google; Natural languages; Mobile handsets; Data protection; Force; Android apps; privacy policy; CLASSIFIER;
D O I
10.1109/TSE.2018.2886875
中图分类号
TP31 [计算机软件];
学科分类号
081202 ; 0835 ;
摘要
Recent years have witnessed a sharp increase of malicious apps that steal users' personal information. To address users' concerns about privacy risks and to comply with data protection laws, more and more apps are supplied with privacy policies written in natural language to help users understand an app's privacy practices. However, little is known whether these privacy policies are trustworthy or not. Questionable privacy policies may be prepared by careless app developers or someone with malicious intention. In this paper, we carry out a systematic study on privacy policy by proposing a novel approach to automatically identify five kinds of problems in privacy policy. After tackling several challenging issues, we implement the approach in a system, named PPChecker, and evaluate it with real apps and their privacy policies. The experimental results show that PPChecker can effectively identify questionable privacy policies with high precision. Applying PPChecker to 2,500 popular apps, we find that 1,850 apps (i.e., 74.0 percent) have at least one kind of problems. This study sheds light on the research of improving and regulating apps' privacy policies.
引用
收藏
页码:221 / 242
页数:22
相关论文
共 50 条
  • [1] On the (Un)Reliability of Privacy Policies in Android Apps
    Verderame, Luca
    Caputo, Davide
    Romdhana, Andrea
    Merlo, Alessio
    [J]. 2020 INTERNATIONAL JOINT CONFERENCE ON NEURAL NETWORKS (IJCNN), 2020,
  • [2] Privacy Policies of Android Diabetes Apps and Sharing of Health Information
    Blenner, Sarah R.
    Koellmer, Melanie
    Rouse, Adam J.
    Daneshvar, Nadia
    Williams, Curry
    Andrews, Lori B.
    [J]. JAMA-JOURNAL OF THE AMERICAN MEDICAL ASSOCIATION, 2016, 315 (10): : 1051 - 1052
  • [3] How Dangerous Permissions are Described in Android Apps' Privacy Policies?
    Baalous, Rawan
    Poet, Ronald
    [J]. 11TH INTERNATIONAL CONFERENCE ON SECURITY OF INFORMATION AND NETWORKS (SIN 2018), 2018,
  • [4] Utilizing Sentence Embedding for Dangerous Permissions Detection in Android Apps' Privacy Policies
    Baalous, Rawan
    Poet, Ronald
    [J]. INTERNATIONAL JOURNAL OF INFORMATION SECURITY AND PRIVACY, 2021, 15 (01) : 173 - 189
  • [5] How Privacy Invasive Android Apps are?
    Kesswani, Nishtha
    Lin, Frank
    [J]. PROCEEDINGS OF THE 10TH INDIACOM - 2016 3RD INTERNATIONAL CONFERENCE ON COMPUTING FOR SUSTAINABLE GLOBAL DEVELOPMENT, 2016, : 3731 - 3734
  • [6] Privacy Assurance for Android Augmented Reality Apps
    Zhang, Xueling
    Slavin, Rocky
    Wang, Xiaoyin
    Niu, Jianwei
    [J]. 2019 IEEE 24TH PACIFIC RIM INTERNATIONAL SYMPOSIUM ON DEPENDABLE COMPUTING (PRDC 2019), 2019, : 114 - 115
  • [7] Enhancement on Privacy Permission Management for Android Apps
    Shinde, Supriya S.
    Sambare, Santosh S.
    [J]. 2015 GLOBAL CONFERENCE ON COMMUNICATION TECHNOLOGIES (GCCT), 2015, : 819 - 823
  • [8] Towards Mutation Analysis of Android Apps
    Deng, Lin
    Mirzaei, Nariman
    Ammann, Paul
    Offutt, Jeff
    [J]. 2015 IEEE EIGHTH INTERNATIONAL CONFERENCE ON SOFTWARE TESTING, VERIFICATION AND VALIDATION WORKSHOPS (ICSTW), 2015,
  • [9] Evaluating the Privacy Policy of Android Apps: A Privacy Policy Compliance Study for Popular Apps in China and Europe
    Liu, Kaijun
    Xu, Guoai
    Zhang, Xiaomei
    Xu, Guosheng
    Zhao, Zhangjie
    [J]. Scientific Programming, 2022, 2022
  • [10] Evaluating the Privacy Policy of Android Apps: A Privacy Policy Compliance Study for Popular Apps in China and Europe
    Liu, Kaijun
    Xu, Guoai
    Zhang, Xiaomei
    Xu, Guosheng
    Zhao, Zhangjie
    [J]. SCIENTIFIC PROGRAMMING, 2022, 2022