向左滑动即可面临身份盗窃:基于位置的约会应用用户数据隐私风险分析.pdf

编号:981599 PDF 36页 4.86MB 下载积分:VIP专享
下载报告请您先登录!

1、Swipe Left for Identity TheftAn Analysis of User Data Privacy Risks on Location-based Dating AppsKarel Dhondt,Victor Le Pochat,Yana Dimova,Wouter Joosen,Stijn Volckaert234TINDER100MBADOO100MPOF50MMEETME50MTAGGED50MGRINDR50MTANTAN50MJAUMO50MLOVOO50MHAPPN10MBUMBLE10MHINGE10MHILY10MOKCUPID10MMEETIC10M5

2、1.438LBD apps elicit peculiar privacy behavior Users willingly share highly personal and sensitive data(including exact locations)Users expect others to share data Users share data with strangers6Sufficient(self-)disclosure Maintaining privacy 7What are the privacy risks in sharing personal data wit

3、h other users?Social privacy(institutional privacy)Our adversary focuses on collecting personal dataabout one or more other users of the LBD appusing only client-side interactions as a regular user8Adversary Intentions910What is the extent ofdata exposure&leaks in LBD apps?Data exposure&leaksUI Expo

4、surereadily visiblein the UI11Intended sharingData exposure&leaksUI Exposurereadily visiblein the UITraffic leakautomatically sent in API network trafficExfiltration leaksent after alteringtraffic or behavior12Intended sharingInadvertent sharingPrivate Data Leaks Three modes of data exposure&leaksUI

5、 Exposure:readily visible in the UITraffic Leak:automatically sent in API network trafficExfiltration Leak:sent after altering traffic or behavior14Personal dataSensitive data(GDPR art.9)App usage data15APIs leak data for all apps99 leaks in totalPersonal Data Leaks16Tinder:leak of non-binary gender

6、Sensitive Data Leaks17All apps:data reciprocity nearly always fails(hidden attributes)App Usage Data Leaks18Badoo,Bumble:exfiltration leaks of activity,filtersAll except OkCupid:fetch multiple profiles at onceAll apps:data reciprocity nearly always fails(hidden profiles)Location Data Leaks19Trilater

友情提示

1、下载报告失败解决办法
2、PDF文件下载后,可能会被浏览器默认打开,此种情况可以点击浏览器菜单,保存网页到桌面,就可以正常下载了。
3、本站不支持迅雷下载,请使用电脑自带的IE浏览器,或者360浏览器、谷歌浏览器下载即可。
4、本站报告下载后的文档和图纸-无水印,预览文档经过压缩,下载后原文更清晰。

本文(向左滑动即可面临身份盗窃:基于位置的约会应用用户数据隐私风险分析.pdf)为本站 (竿头日上) 主动上传,三个皮匠报告文库仅提供信息存储空间,仅对用户上传内容的表现方式做保护处理,对上载内容本身不做任何修改或编辑。 若此文所含内容侵犯了您的版权或隐私,请立即通知三个皮匠报告文库(点击联系客服),我们立即给予删除!

温馨提示:如果因为网速或其他原因下载失败请重新下载,重复下载不扣分。
客服
商务合作
小程序
服务号
折叠