PerRec: A permission configuration recommender system for mobile apps

Yanxiao Cheng, Zheng Yan*

*Corresponding author for this work

    Research output: Chapter in Book/Report/Conference proceedingConference article in proceedingsScientificpeer-review

    2 Citations (Scopus)

    Abstract

    Android operating system uses a security mechanism based on permissions to restrict mobile apps to access sensitive device resources. However, because of such disadvantages as coarse-granularity of permission management and vague permission description, the current permission-based security mechanism of Android is not sufficiently effective in practice. In addition, only a small number of users realize the importance of permission settings and mostly they cannot make a proper decision on permission settings due to lack of runtime information and professional knowledge. In this paper, we propose PerRec, a permission configuration recommender system based on trust management, which assists the mobile users to set permissions in order to enhance user privacy and device security. It is designed based on our pre-developed reputation system named TruBeRepec [1] to get the trust and reputation values of an app and further offer recommendations on how to set permissions. Based on system implementation, we evaluate the accuracy and safety of PerRec by comparing PerRec’s recommendations with the Android system default permission settings. The result shows that PerRec can provide effective permission recommendations to prevent potential security threats. We further conduct a small-scale user study to demonstrate its user acceptance.

    Original languageEnglish
    Title of host publicationAlgorithms and Architectures for Parallel Processing - 17th International Conference, ICA3PP 2017, Proceedings
    PublisherSpringer
    Pages476-485
    Number of pages10
    Volume10393 LNCS
    ISBN (Print)9783319654812
    DOIs
    Publication statusPublished - 2017
    MoE publication typeA4 Conference publication
    EventInternational Conference on Algorithms and Architectures for Parallel Processing - Helsinki, Finland
    Duration: 21 Aug 201723 Aug 2017
    Conference number: 17

    Publication series

    NameLecture Notes in Computer Science (including subseries Lecture Notes in Artificial Intelligence and Lecture Notes in Bioinformatics)
    Volume10393 LNCS
    ISSN (Print)03029743
    ISSN (Electronic)16113349

    Conference

    ConferenceInternational Conference on Algorithms and Architectures for Parallel Processing
    Abbreviated titleICA3PP
    Country/TerritoryFinland
    CityHelsinki
    Period21/08/201723/08/2017

    Keywords

    • Android platform
    • Mobile application
    • Permission configuration
    • Recommender system
    • Trust management

    Fingerprint

    Dive into the research topics of 'PerRec: A permission configuration recommender system for mobile apps'. Together they form a unique fingerprint.

    Cite this