论文标题

首次查看COVID-19的隐私分析联系人跟踪移动应用程序

A First Look at Privacy Analysis of COVID-19 Contact Tracing Mobile Applications

论文作者

Azad, Muhammad Ajmal, Arshad, Junaid, Akmal, Ali, Riaz, Farhan, Abdullah, Sidrah, Imran, Muhammad, Ahmad, Farhan

论文摘要

当今的智能手机配备了大量强大的增值传感器和功能,例如低功率蓝牙传感器,功能强大的嵌入式传感器,例如数字指南针,加速度计,GPS传感器,Wi-Fi功能,麦克风功能,麦克风,湿度,湿度传感器,健康跟踪传感器和相机等。在大型制造单元中的员工移动以及监视环境等。这些嵌入式传感器也可以用于大规模的个人,团体和社区传感应用程序,尤其是追踪某些疾病的传播。政府和监管机构正在转向使用这些特征来追踪人们认为患有某些疾病或病毒症状的人们,例如新冠肺炎。 2019年12月,Covid-19的爆发已经看到了向追踪,跟踪和隔离表现出COVID-19症状的人的移动应用程序激增,以限制疾病传播给更大的社区。使用嵌入式传感器可以披露用户的私人信息,从而有可能对用户的隐私和安全造成威胁。在本文中,我们分析了一系列智能手机应用程序,这些应用程序旨在遏制Covid-19病毒的传播,并使人们恢复正常生活。具体来说,我们已经分析了这些智能手机应用所需的哪些类型的许可,这些权限是否对轨道和跟踪是必需的,如何将用户设备的数据运输到分析中心,并分析这些应用程序已部署的安全性测量,以确保用户的隐私和安全性。

Today's smartphones are equipped with a large number of powerful value-added sensors and features such as a low power Bluetooth sensor, powerful embedded sensors such as the digital compass, accelerometer, GPS sensors, Wi-Fi capabilities, microphone, humidity sensors, health tracking sensors, and a camera, etc. These value-added sensors have revolutionized the lives of the human being in many ways such, as tracking the health of the patients and movement of doctors, tracking employees movement in large manufacturing units, and monitoring the environment, etc. These embedded sensors could also be used for large-scale personal, group, and community sensing applications especially tracing the spread of certain diseases. Governments and regulators are turning to use these features to trace the people thought to have symptoms of certain diseases or virus e.g. COVID-19. The outbreak of COVID-19 in December 2019, has seen a surge of the mobile applications for tracing, tracking and isolating the persons showing COVID-19 symptoms to limit the spread of disease to the larger community. The use of embedded sensors could disclose private information of the users thus potentially bring threat to the privacy and security of users. In this paper, we analyzed a large set of smartphone applications that have been designed to contain the spread of the COVID-19 virus and bring the people back to normal life. Specifically, we have analyzed what type of permission these smartphone apps require, whether these permissions are necessary for the track and trace, how data from the user devices is transported to the analytic center, and analyzing the security measures these apps have deployed to ensure the privacy and security of users.

扫码加入交流群

加入微信交流群

微信交流群二维码

扫码加入学术交流群,获取更多资源