Smart Home Personal Assistants: A Security and Privacy Review

被引:75
|
作者
Edu, Jide S. [1 ]
Such, Jose M. [1 ]
Suarez-Tangil, Guillermo [1 ]
机构
[1] Kings Coll London, Dept Informat, Fac Nat & Math Sci, Strand Campus, London, England
关键词
Smart home personal assistants; security and privacy; voice assistants; smart home; Amazon Echo/Alexa; Google Home/assistant; Apple Home Pod/Ski; Microsoft Home Speaker/Cortana; ROBUSTNESS; EVOLUTION; MALWARE; ISSUES; ALEXA;
D O I
10.1145/3412383
中图分类号
TP301 [理论、方法];
学科分类号
081202 ;
摘要
Smart Home Personal Assistants (SPA) are an emerging innovation that is changing the means by which home users interact with technology. However, several elements expose these systems to various risks: (i) the open nature of the voice channel they use, (ii) the complexity of their architecture, (iii) the Al features they rely on, and (iv) their use of a wide range of underlying technologies. This article presents an in-depth review of SPA's security and privacy issues, categorizing the most important attack vectors and their countermeasures. Based on this, we discuss open research challenges that can help steer the community to tackle and address current security and privacy issues in SPA. One of our key findings is that even though the attack surface of SPA is conspicuously broad and there has been a significant amount of recent research efforts in this area, research has so far focused on a small part of the attack surface, particularly on issues related to the interaction between the user and the SPA devices. To the best of our knowledge, this is the first article to conduct such a comprehensive review and characterization of the security and privacy issues and countermeasures of SPA.
引用
收藏
页数:36
相关论文
共 50 条
  • [1] More than Smart Speakers: Security and Privacy Perceptions of Smart Home Personal Assistants
    Abdi, Noura
    Ramokapane, Kopo M.
    Such, Jose M.
    [J]. PROCEEDINGS OF THE FIFTEENTH SYMPOSIUM ON USABLE PRIVACY AND SECURITY (SOUPS 2019), 2019, : 451 - 466
  • [2] Privacy Norms for Smart Home Personal Assistants
    Abdi, Noura
    Zhan, Xiao
    Ramokapane, Kopo M.
    Such, Jose
    [J]. CHI '21: PROCEEDINGS OF THE 2021 CHI CONFERENCE ON HUMAN FACTORS IN COMPUTING SYSTEMS, 2021,
  • [3] GDPR Personal Privacy Security Mechanism for Smart Home System
    Jhuang, Yun-Yun
    Yan, Yu-Hui
    Horng, Gwo-Jiun
    [J]. ELECTRONICS, 2023, 12 (04)
  • [4] Chatbot Security and Privacy in the Age of Personal Assistants
    Ye, Winson
    Li, Qun
    [J]. 2020 IEEE/ACM SYMPOSIUM ON EDGE COMPUTING (SEC 2020), 2020, : 388 - 393
  • [5] Consumer Attitudes Towards Privacy and Security in Home Assistants
    Fruchter, Nathaniel
    Liccardi, Ilaria
    [J]. CHI 2018: EXTENDED ABSTRACTS OF THE 2018 CHI CONFERENCE ON HUMAN FACTORS IN COMPUTING SYSTEMS, 2018,
  • [6] Assessment of Smart Home: Security and Privacy
    Goyal, Akshat
    Kulkarni, Mugdha S.
    [J]. CARDIOMETRY, 2022, (24): : 400 - 409
  • [7] A Privacy-Driven Data Management Model for Smart Personal Assistants
    Nogueira, Danilo M.
    Maciel, Cristiano
    Viterbo, Jose
    Vecchiato, Daniel
    [J]. HUMAN ASPECTS OF INFORMATION SECURITY, PRIVACY AND TRUST (HAS 2017), 2017, 10292 : 722 - 738
  • [8] Retrofitting Security and Privacy Measures to Smart Home Devices
    Ye, Chenghao
    Indra, Praburam Prabhakar
    Aspinall, David
    [J]. 2019 SIXTH INTERNATIONAL CONFERENCE ON INTERNET OF THINGS: SYSTEMS, MANAGEMENT AND SECURITY (IOTSMS), 2019, : 283 - 290
  • [9] IoT Privacy and Security Challenges for Smart Home Environments
    Lin, Huichen
    Bergmann, Neilw.
    [J]. INFORMATION, 2016, 7 (03)
  • [10] Smart IoT Devices in the Home Security and Privacy Implications
    Sivaraman, Vijay
    Gharakheili, Hassan Habibi
    Fernandes, Clinton
    Clark, Narelle
    Karliychuk, Tanya
    [J]. IEEE TECHNOLOGY AND SOCIETY MAGAZINE, 2018, 37 (02) : 71 - 79