Title :
Abused Android Permissions by Advertising Networks
Author :
Ogul, Murat ; Baktir, Selcuk ; Tatli, Emin Islam
Author_Institution :
Comput. Eng. Dept., Bahcesehir Univ., Istanbul, Turkey
Abstract :
Android is the leading mobile operating system for smart phone and mobile tablet platforms. Since these mobile devices contain personal and sensitive data, security is a big challenge for them. Even though various security features are supported by Android, its permission model is quite problematic from usability and privacy aspects. When users want to install an application, they must grant all requested permissions. Since manually checking dozens of permissions is cumbersome, users ignore it and accept permissions without reading them. In Google Play Store, there exist thousands of applications that request more permissions than they actually need. Applications with unnecessary permissions can misuse their permissions and endanger their users´ security and privacy. Especially, advertising network libraries, integrated within applications, request many unnecessary permissions and get unauthorized access to users´ personal data. In this paper, we explain the results of our study which analyzes several advertising networks, their permission requests and behavior for accessing critical resources.
Keywords :
Android (operating system); advertising data processing; data privacy; mobile computing; Android permissions abuse; advertising networks; mobile operating system; permission model; privacy; usability; Advertising; Androids; Humanoid robots; Libraries; Mobile communication; Security; Smart phones;
Conference_Titel :
IT Convergence and Security (ICITCS), 2014 International Conference on
Conference_Location :
Beijing
DOI :
10.1109/ICITCS.2014.7021726