Title
Taming information-stealing smartphone applications (on Android)
Abstract
Smartphones have been becoming ubiquitous and mobile users are increasingly relying on them to store and handle personal information. However, recent studies also reveal the disturbing fact that users' personal information is put at risk by (rogue) smartphone applications. Existing solutions exhibit limitations in their capabilities in taming these privacy-violating smartphone applications. In this paper, we argue for the need of a new privacy mode in smartphones. The privacy mode can empower users to flexibly control in a fine-grained manner what kinds of personal information will be accessible to an application. Also, the granted access can be dynamically adjusted at runtime in a fine-grained manner to better suit a user's needs in various scenarios (e.g., in a different time or location). We have developed a system called TISSA that implements such a privacy mode on Android. The evaluation with more than a dozen of information-leaking Android applications demonstrates its effectiveness and practicality. Furthermore, our evaluation shows that TISSA introduces negligible performance overhead.
Year
DOI
Venue
2011
10.1007/978-3-642-21599-5_7
TRUST
Keywords
Field
DocType
smartphone application,information-leaking android application,new privacy mode,better suit,privacy mode,personal information,information-stealing smartphone application,different time,fine-grained manner,disturbing fact,privacy-violating smartphone application,android
World Wide Web,Internet privacy,Android (operating system),Computer science,Computer security,Personally identifiable information
Conference
Volume
ISSN
Citations 
6740
0302-9743
107
PageRank 
References 
Authors
9.27
10
4
Search Limit
100107
Name
Order
Citations
PageRank
Yajin Zhou12382127.03
Xinwen Zhang269746.90
Xuxian Jiang35610280.25
Vincent W. Freeh41617109.63