Conference paper Open Access

A Multilateral Privacy Impact Analysis Method for Android Apps

Hatamian, Majid; Momen, Nurul; Fritsch, Lothar; Rannenberg, Kai

Smartphone apps have the power to monitor most of people’s private lives. Apps can permeate private spaces, access and map social relationships, monitor whereabouts and chart people’s activities in digital and/or real world. We are therefore interested in how much information a particular app can and intends to retrieve in a smartphone. Privacy-friendliness of smartphone apps is typically measured based on single-source analyses, which in turn, does not provide a comprehensive measurement regarding the actual privacy risks of apps. This paper presents a multi-source method for privacy analysis and data extraction transparency of Android apps. We describe how we generate several data sets derived from privacy policies, app manifestos, user reviews and actual app profiling at run time. To evaluate our method, we present results from a case study carried out on ten popular fitness and exercise apps. Our results revealed interesting differences concerning the potential privacy impact of apps, with some of the apps in the test set violating critical privacy principles. The result of the case study shows large differences that can help make relevant app choices.

Files (946.5 kB)
Name Size
Hatamian-apf2019.pdf
md5:c823fd25b6dd3c99cb4a673e01825097
946.5 kB Download
61
53
views
downloads
Views 61
Downloads 53
Data volume 50.2 MB
Unique views 56
Unique downloads 47

Share

Cite as