Context-Specific Access Control: Conforming Permissions With User Expectations

Context-Specific Access Control: Conforming Permissions With User Expectations
复制标题

上下文特定的访问控制:使权限符合用户期望

DOI:
10.1145/2808117.2808121
复制
发表时间:
2015
期刊:
Proceedings of the 5th Annual ACM CCS Workshop on Security and Privacy in Smartphones and Mobile Devices
影响因子:
--
通讯作者:
H. Madhyastha
H. Madhyastha
中科院分区:
--
文献类型:
--
作者:
Amir Rahmati;H. Madhyastha

文献摘要

被引文献

相似文献

当前的移动平台在为应用程序分配权限时采取一种“全有或全无”的方法。一旦用户授予应用程序访问特定资源的权限,该应用程序在之后的任何执行时刻都可以使用该权限。这使得应用程序即使在执行预期功能不需要某些隐私敏感资源时也能够访问它们。在本文中,我们引入“特定情境访问控制”(CSAC)作为一种实施最小权限原则的设计方法。CSAC的目标是使用户能够确保在任何时刻,应用程序只能访问她认为当前与之交互的应用组件所需要的那些资源。我们研究了谷歌应用商店的100个热门应用,发现现有应用适合采用CSAC,因为大多数应用对隐私敏感资源的使用仅限于少数情境。此外,通过对这100个应用的动态分析以及一项小规模的用户研究,我们发现CSAC并不会过度增加用户需要做出的访问控制决策的数量。
Current mobile platforms take an all-or-nothing approach to assigning permissions to applications. Once a user grants an application permission to access a particular resource, the application can use that permission whenever it executes thereafter. This enables an application to access privacy sensitive resources even when they are not needed for it to perform its expected functions. In this paper, we introduce "Context-Specific Access Control" (CSAC) as a design approach towards enforcing the principle of least privilege. CSAC's goal is to enable a user to ensure that, at any point in time, an application has access to those resources which she expects are needed by the application component with which she is currently interacting. We study 100 popular applications from Google Play store and find that existing applications are amenable to CSAC as most applications' use of privacy sensitive resources is limited to a small number of contexts. Furthermore, via dynamic analysis of the 100 applications and a small-scale user study, we find that CSAC does not prohibitively increase the number of access control decisions that users need to make.