Chinese Journal of Network and Information Security ›› 2016, Vol. 2 ›› Issue (4): 73-79.doi: 10.11959/j.issn.2096-109x.2016.00043

• Papers • Previous Articles    

Research on multi-dimensional iOS privacy disclosure evaluation model

Yue-xiu XING1,Ai-qun HU1,Yong-jian WANG2,Ran ZHAO1   

  1. 1 Information Security Research Center,Southeast University,Nanjing 210096,China
    2 The Third Research Institute of Ministry of Public Security,Shanghai 200031,China
  • Revised:2016-03-08 Online:2016-04-01 Published:2016-05-25
  • Supported by:
    The National Basic Research Program of China (973 Program)(2013CB338003)

Abstract:

The existing iOS platform is lacking ofsystematic assessment methods of privacy leak detection.To solve this problem,a multi-dimensional iOSprivacy disclosure evaluation model was presented.This model combined static analysis,dynamic analysis and network data analysis method to extract the features of the application’s pri-vacy disclosure behavior and evaluate it form multiple dimensions way.The model on 30 different types of apps from the iOS App Store and found out that more than 50% of all investigated apps aretracking users’ locations were evaluated,almost 40% of all send data to a server without the user’s consent.The model makes up for the limitations of single static analysis or dynamic analysis methods,solves the quantization problem of privacy disclosure effectively.

Key words: iOS, privacy disclosure, static analysis, dynamic analysis, network data analysis

CLC Number: 

No Suggested Reading articles found!