Communication publiée dans un ouvrage (Colloques, congrès, conférences scientifiques et actes)
An (Un)Necessary Evil - Users’ (Un)Certainty about Smartphone App Permissions and Implications for Privacy Engineering
BONGARD, Kerstin; Sterckx, Jean-Louis; ROSSI, Arianna et al.
2022In 2022 7th IEEE European Symposium on Security and Privacy Workshops (EuroSPW)
Peer reviewed
 

Documents


Texte intégral
An (Un)Necessary Evil - Users' (Un)Certainty About Smartphone App Permissions and Implications for P.pdf
Postprint Auteur (122.29 kB)
Télécharger

© 2022, Kerstin Bongard-Blanchy. Under license to IEEE. DOI 10.1109/EuroS&PW55150.2022.00023


Tous les documents dans ORBilu sont protégés par une licence d'utilisation.

Envoyer vers



Détails



Mots-clés :
human computer interaction; user interface design; security evaluation
Résumé :
[en] App permission requests are a control mechanism meant to help users oversee and safeguard access to data and resources on their smartphones. To decide whether to accept or deny such requests and make this consent valid, users need to understand the underlying reasons and judge the relevance of disclosing data in line with their own use of an app. This study investigates people’s certainty about app permission requests via an online survey with 400 representative participants of the UK population. The results demonstrate that users are uncertain about the necessity of granting app permissions for about half of the tested permission requests. This implies substantial privacy risks, which are discussed in the paper, resulting in a call for user-protecting interventions by privacy engineers.
Disciplines :
Sciences informatiques
Auteur, co-auteur :
BONGARD, Kerstin ;  University of Luxembourg > Faculty of Humanities, Education and Social Sciences (FHSE) > Department of Behavioural and Cognitive Sciences (DBCS)
Sterckx, Jean-Louis;  University of Luxembourg > Department of Behavioural and Cognitive Sciences
ROSSI, Arianna ;  University of Luxembourg > Interdisciplinary Centre for Security, Reliability and Trust (SNT) > IRiSC
DISTLER, Verena ;  University of Luxembourg > Faculty of Humanities, Education and Social Sciences (FHSE) > Department of Behavioural and Cognitive Sciences (DBCS)
RIVAS, Salvador  ;  University of Luxembourg > Faculty of Humanities, Education and Social Sciences (FHSE) > LUCET
KOENIG, Vincent ;  University of Luxembourg > Faculty of Humanities, Education and Social Sciences (FHSE) > Department of Behavioural and Cognitive Sciences (DBCS)
Co-auteurs externes :
no
Langue du document :
Anglais
Titre :
An (Un)Necessary Evil - Users’ (Un)Certainty about Smartphone App Permissions and Implications for Privacy Engineering
Date de publication/diffusion :
2022
Nom de la manifestation :
2022 International Workshop on Privacy Engineering – IWPE'22 CO-LOCATED WITH 7TH IEEE EUROPEAN SYMPOSIUM ON SECURITY AND PRIVACY
Organisateur de la manifestation :
IEEE EuroS&P
Lieu de la manifestation :
Genoa, Italie
Date de la manifestation :
6 June 2022
Manifestation à portée :
International
Titre de l'ouvrage principal :
2022 7th IEEE European Symposium on Security and Privacy Workshops (EuroSPW)
Maison d'édition :
IEEE
Peer reviewed :
Peer reviewed
Projet FnR :
FNR14717072 - Deceptive Patterns Online, 2020 (01/06/2021-31/05/2024) - Gabriele Lenzini
Organisme subsidiant :
FNR - Fonds National de la Recherche
Disponible sur ORBilu :
depuis le 09 juillet 2022

Statistiques


Nombre de vues
284 (dont 27 Unilu)
Nombre de téléchargements
236 (dont 14 Unilu)

citations Scopus®
 
5
citations Scopus®
sans auto-citations
4

Bibliographie


Publications similaires



Contacter ORBilu