3P framework: Customizable permission architecture for mobile applications

Sujit Biswas, Kashif Sharif*, Fan Li, Yang Liu

*Corresponding author for this work

Research output: Chapter in Book/Report/Conference proceedingConference contributionpeer-review

10 Citations (Scopus)

Abstract

Mobile applications & smart devices have drastically changed our routine tasks, and have become an integral part of modern society. Along with the numerous benefits we get, major challenges like privacy and safety have become complicated than before. The permission based system for mobile applications is designed to empower the user to decide which resources and information they want the application to access. Most of these permissions are granted during installation of application, but our study shows that the users make weak decisions in protecting their information. Majority of the users, even with technical backgrounds, blindly grant all permissions requested by the application even if they are not necessary for the application to run. In order to give more control to the user, and to enable them to make informed decisions regarding permission, we have proposed a Privacy Permission Policy Framework in this paper. This framework enables the user to have greater control over the permission granting while installing the mobile applications. The implementation and testing of the framework also enabled us to run forensic analysis and understand the scope of permissions requested, based on which this framework can advise the user to select minimum required permissions for the application to work. This makes the users’ privacy more secure, and grants full control over the process.

Original languageEnglish
Title of host publicationWireless Algorithms, Systems, and Applications - 12th International Conference, WASA 2017, Proceedings
EditorsYan Zhang, Abdallah Khreishah, Mingyuan Yan, Liran Ma
PublisherSpringer Verlag
Pages445-456
Number of pages12
ISBN (Print)9783319600321
DOIs
Publication statusPublished - 2017
Event12th International Conference on Wireless Algorithms, Systems, and Applications, WASA 2017 - Guilin, China
Duration: 19 Jun 201721 Jun 2017

Publication series

NameLecture Notes in Computer Science (including subseries Lecture Notes in Artificial Intelligence and Lecture Notes in Bioinformatics)
Volume10251 LNCS
ISSN (Print)0302-9743
ISSN (Electronic)1611-3349

Conference

Conference12th International Conference on Wireless Algorithms, Systems, and Applications, WASA 2017
Country/TerritoryChina
CityGuilin
Period19/06/1721/06/17

Keywords

  • Android security
  • Mobile app privacy
  • Privacy behaviors
  • Users privacy consciousness

Fingerprint

Dive into the research topics of '3P framework: Customizable permission architecture for mobile applications'. Together they form a unique fingerprint.

Cite this