Securacy: An empirical investigation of android applications' network usage, privacy and security

  • Denzil Ferreira
  • , Vassilis Kostakos
  • , Alastair R. Beresford
  • , Janne Lindqvist
  • , Anind K. Dey

Research output: Chapter in Book/Report/Conference proceedingConference contribution

Abstract

Smartphone users do not fully know what their apps do. For example, an applications' network usage and underlying security configuration is invisible to users. In this paper we introduce Securacy, a mobile app that explores users' privacy and security concerns with Android apps. Securacy takes a reactive, personalized approach, highlighting app permission settings that the user has previously stated are concerning, and provides feedback on the use of secure and insecure network communication for each app. We began our design of Securacy by conducting a literature review and in-depth interviews with 30 participants to understand their concerns. We used this knowledge to build Securacy and evaluated its use by another set of 218 anonymous participants who installed the application from the Google Play store. Our results show that access to address book information is by far the biggest privacy concern. Over half (56.4%) of the connections made by apps are insecure, and the destination of the majority of network traffic is North America, regardless of the location of the user. Our app provides unprecedented insight into Android applications' communications behavior globally, indicating that the majority of apps currently use insecure network connections.

Original languageEnglish (US)
Title of host publicationProceedings of the 8th ACM Conference on Security and Privacy in Wireless and Mobile Networks, WiSec 2015
PublisherAssociation for Computing Machinery, Inc
ISBN (Electronic)9781450336239
DOIs
StatePublished - Jun 22 2015
Event8th ACM Conference on Security and Privacy in Wireless and Mobile Networks, WiSec 2015 - New York, United States
Duration: Jun 22 2015Jun 26 2015

Publication series

NameProceedings of the 8th ACM Conference on Security and Privacy in Wireless and Mobile Networks, WiSec 2015

Other

Other8th ACM Conference on Security and Privacy in Wireless and Mobile Networks, WiSec 2015
Country/TerritoryUnited States
CityNew York
Period6/22/156/26/15

All Science Journal Classification (ASJC) codes

  • Safety, Risk, Reliability and Quality
  • Computer Networks and Communications

Keywords

  • Applications
  • Context
  • Experience sampling
  • Network
  • Privacy

Fingerprint

Dive into the research topics of 'Securacy: An empirical investigation of android applications' network usage, privacy and security'. Together they form a unique fingerprint.

Cite this