An open framework for flexible plug-in privacy mechanisms in crowdsensing applications

作者: Manos Katsomallos , Spyros Lalis , Thanasis Papaioannou , George Theodorakopoulos

DOI: 10.1109/PERCOMW.2017.7917564

关键词: Information privacyPlug-inPrivacy softwareParticipatory sensingData modelingComputer scienceAndroid (operating system)Computer securityMobile deviceServer

摘要: Preserving user privacy is crucial for the wide adoption of crowdsensing and participatory sensing applications that rely on personal devices. Currently, each application comes with its own hardwired possibly undocumented support (if any), while horizontal protection mechanisms provided by operating runtime systems operate at a low level can significantly harm utility, or even render an useless. To achieve greater flexibility, we propose framework decouples mechanism from logic so it be developed another, perhaps more trusted party, which allows dynamic binding different to same running user's mobile device. We describe proof-of-concept implementation proposed Android, where are independently as separate plug-in components. Based simple but powerful API, possible implement range standard approaches, including collaborative schemes involve data exchanges among multiple

参考文章(13)
Ross Anderson, Hassen Saïdi, Rubin Xu, Aurasium: practical policy enforcement for Android applications usenix security symposium. pp. 27- 27 ,(2012)
Mauro Conti, Vu Thien Nga Nguyen, Bruno Crispo, CRePE: context-related policy enforcement for android international conference on information security. ,vol. 6531, pp. 331- 345 ,(2010) , 10.1007/978-3-642-18178-8_29
William Enck, Patrick McDaniel, Jaeyeon Jung, Byung-Gon Chun, Peter Gilbert, Anmol N. Sheth, Landon P. Cox, TaintDroid: an information-flow tracking system for realtime privacy monitoring on smartphones operating systems design and implementation. pp. 393- 407 ,(2010) , 10.5555/1924943.1924971
Tathagata Das, Prashanth Mohan, Venkata N. Padmanabhan, Ramachandran Ramjee, Asankhaya Sharma, PRISM: platform for remote sensing using smartphones international conference on mobile systems, applications, and services. pp. 63- 76 ,(2010) , 10.1145/1814433.1814442
Justin Cappos, Lai Wang, Richard Weiss, Yi Yang, Yanyan Zhuang, BlurSense: Dynamic fine-grained access control for smartphone privacy static analysis symposium. pp. 329- 332 ,(2014) , 10.1109/SAS.2014.6798970
Emiliano De Cristofaro, Claudio Soriente, Short paper: PEPSI---privacy-enhanced participatory sensing infrastructure wireless network security. pp. 23- 28 ,(2011) , 10.1145/1998412.1998418
Tao Guo, Puhan Zhang, Hongliang Liang, Shuai Shao, Enforcing Multiple Security Policies for Android System international symposium on computer, communication, control and automation. pp. 165- 169 ,(2013) , 10.2991/3CA-13.2013.42
William Enck, Peter Gilbert, Seungyeop Han, Vasant Tendulkar, Byung-Gon Chun, Landon P. Cox, Jaeyeon Jung, Patrick McDaniel, Anmol N. Sheth, TaintDroid: An Information-Flow Tracking System for Realtime Privacy Monitoring on Smartphones ACM Transactions on Computer Systems. ,vol. 32, pp. 5- ,(2014) , 10.1145/2619091
Manos Katsomallos, Spyros Lalis, EasyHarvest: Supporting the deployment and management of sensing applications on smartphones international conference on pervasive computing. pp. 80- 85 ,(2014) , 10.1109/PERCOMW.2014.6815169
Zhi Xu, Sencun Zhu, SemaDroid: A Privacy-Aware Sensor Management Framework for Smartphones conference on data and application security and privacy. pp. 61- 72 ,(2015) , 10.1145/2699026.2699114