A Comprehensive Investigation of User Privacy Leakage to Android Applications - INRIA - Institut National de Recherche en Informatique et en Automatique Accéder directement au contenu
Communication Dans Un Congrès Année : 2016

A Comprehensive Investigation of User Privacy Leakage to Android Applications

Résumé

Smartphones have become an important component of everyday's life. They store a large amount of users' private and sensitive information like contacts, GPS location, messages and interests. Privacy issues are a growing concern for the phone users. However, despite an existing rich literature in privacy leakage on mobile network measurement, our empirical knowledge of users' private leakage is relatively limited. In this work, we present a large scale and comprehensive investigation spanning over 9 months of users' private information leakage that consisted of monitoring 180K popular apps coming from 50+ Chinese AppStores. In order to do this, we used a customized platform that can monitor the execution of applications running over Android system to observe in vivo privacy leakage of applications. Our key findings are that: (1) Accessing users' private information is very common among mobile apps, i.e. over 90% of apps accesses some kind of user private information, and to our surprise, almost 95% apps claimed access to private information without concretely accessing them (2) We analyzed different category of Apps and observed slight differences in the pattern of access to private information among different categories (3) Downloading apps from big Appstores does not necessarily mean safer and more private apps. We observe that local Chinese shop and Google Play generate similar observations.
Fichier non déposé

Dates et versions

hal-01377991 , version 1 (08-10-2016)

Identifiants

Citer

Ge Yuming, Deng Bo, Sun Yi, Tang Libo, Sheng Dajiang, et al.. A Comprehensive Investigation of User Privacy Leakage to Android Applications. ICCN 2016 - 25th International Conference on Computer Communication and Networks, IEEE, Aug 2016, Hawai, United States. pp.1-6, ⟨10.1109/ICCCN.2016.7568475⟩. ⟨hal-01377991⟩
191 Consultations
0 Téléchargements

Altmetric

Partager

Gmail Facebook X LinkedIn More