Making Smartphone Application Permissions Meaningful for the Average User

06/26/2019
by   Amer Chamseddine, et al.
0

Smartphones hold important private information, yet users routinely expose this information to questionable applications written by developers they know nothing about. Users may be tempted to think of smartphones as old-style dumb phones, not as powerful network-connected computers, and this opens a gap between the permissions-based security paradigm (offered by platforms like Android) and what users expect. This makes it easy to fool users into installing applications that steal their information. Not surprisingly, Android is now a more favored target for hackers than Windows. We propose an approach for closing this gap, based on the observation that the current permissions system--rooted in good ol' UNIX-style thinking--is both too coarse and too fine grained, because it uses the wrong axes for defining the permissions space. We argue for replacing the paradigm in which "an app accesses device resources" (which is foreign to most non-geeks) with a paradigm in which "an app accesses user-tangible services." By using a simple piece of middleware, we can wrap this view of application control around today's permission system, and, by doing so, no conceptual refactoring of applications is required.

READ FULL TEXT
research
11/09/2022

It's TEEtime: Bringing User Sovereignty to Smartphones

The majority of smartphones either run iOS or Android operating systems....
research
09/25/2021

Unblind the charts: Towards Making Interactive Charts Accessible in Android Applications

Smartphones are a crucial aspect of routine life in the modern world, an...
research
10/02/2018

PhotoSafer: Content-Based and Context-Aware Private Photo Protection for Smartphones

Nowadays many people store photos in smartphones. Many of the photos con...
research
07/02/2021

Sub-millisecond Video Synchronization of Multiple Android Smartphones

This paper addresses the problem of building an affordable easy-to-setup...
research
02/04/2021

Sovereign Smartphone: To Enjoy Freedom We Have to Control Our Phones

The majority of smartphones either run iOS or Android operating systems....
research
04/22/2021

A Systematic Survey on Android API Usage for Data-Driven Analytics with Smartphones

Recently, there has been an increase in industrial and academic research...
research
07/25/2023

A Pairwise Dataset for GUI Conversion and Retrieval between Android Phones and Tablets

With the popularity of smartphones and tablets, users have become accust...

Please sign up or login with your details

Forgot password? Click here to reset