During the last few years, smartphones have seen a marked increase in popularity, due to its many attractive features such as GPS functionality and apps such as e-mail clients, address book, and many more. The world’s most popular mobile Operating System is Android, consequently Android devices are at the center of much research which discuss their points of strengths and weaknesses. An important tool of Android smartphones is Application Programming Interface (API); it is a combination of benefits, meaning they allow to create user services, and risks, especially for user privacy. Taking advantage of the API, it is possible to make data travel from our device and third parties via network and vice versa. This thesis analyzes the data flow on smartphones with Android Operating System. We present, through the APIs and the network, how the user's information leaves the mobile device, putting the user's privacy at risk and how the information invades the device influencing user behavior. We deal with various techniques to create useful services for citizens through user profiling and how similar procedures can be used to create attack scenarios to steal personal data, highlighting users misunderstandings about the use of their data by applications. Moreover advanced tools were presented to guide the user in using the mobile device and understanding the behavior of apps installed on the device, protecting their security and avoiding the loss of sensitive information. Each proposed solution has been tested with multiple real datasets containing data taken from mobile devices, demonstrating the potential of methods proposed.

Identification of Privacy Risks for Android Users and Effective Protection Mechanisms / Verga, Gabriella. - (2020 Feb 17).

Identification of Privacy Risks for Android Users and Effective Protection Mechanisms

VERGA, GABRIELLA
2020-02-17

Abstract

During the last few years, smartphones have seen a marked increase in popularity, due to its many attractive features such as GPS functionality and apps such as e-mail clients, address book, and many more. The world’s most popular mobile Operating System is Android, consequently Android devices are at the center of much research which discuss their points of strengths and weaknesses. An important tool of Android smartphones is Application Programming Interface (API); it is a combination of benefits, meaning they allow to create user services, and risks, especially for user privacy. Taking advantage of the API, it is possible to make data travel from our device and third parties via network and vice versa. This thesis analyzes the data flow on smartphones with Android Operating System. We present, through the APIs and the network, how the user's information leaves the mobile device, putting the user's privacy at risk and how the information invades the device influencing user behavior. We deal with various techniques to create useful services for citizens through user profiling and how similar procedures can be used to create attack scenarios to steal personal data, highlighting users misunderstandings about the use of their data by applications. Moreover advanced tools were presented to guide the user in using the mobile device and understanding the behavior of apps installed on the device, protecting their security and avoiding the loss of sensitive information. Each proposed solution has been tested with multiple real datasets containing data taken from mobile devices, demonstrating the potential of methods proposed.
17-feb-2020
Android, Malware, Network, Security, Permissions, Privacy, GPS data, Big data, Protection
Identification of Privacy Risks for Android Users and Effective Protection Mechanisms / Verga, Gabriella. - (2020 Feb 17).
File in questo prodotto:
File Dimensione Formato  
Tesi di dottorato - VERGA GABRIELLA 20191130115319.pdf

accesso aperto

Tipologia: Tesi di dottorato
Licenza: PUBBLICO - Pubblico con Copyright
Dimensione 8.23 MB
Formato Adobe PDF
8.23 MB Adobe PDF Visualizza/Apri

I documenti in IRIS sono protetti da copyright e tutti i diritti sono riservati, salvo diversa indicazione.

Utilizza questo identificativo per citare o creare un link a questo documento: https://hdl.handle.net/20.500.11769/581299
Citazioni
  • ???jsp.display-item.citation.pmc??? ND
  • Scopus ND
  • ???jsp.display-item.citation.isi??? ND
social impact