Ranking Apps on Privacy

The last thing you want to do when installing a new, free app on your phone is to scroll through pages of information on what kind of access to your personal information it requires. App builders count on this, and their intrusive apps harvest data that they can then sell. That is why University of Groningen computer scientist Fadi Mohsen, together with colleagues from the University of Michigan-Flint (US) and the Palestinian An-Najah National University, has developed an algorithm that ranks similar apps on privacy scores. A description of the system was published in the journal Concurrency and Computation: Practice and Experience on 2 September.

When you are installing an app, it has to tell you which information it will access. ‘However, users don’t pay much attention to this as a rule,’ says Mohsen. ‘They are, generally speaking, the weakest link in privacy protection. That is why we wanted to develop a system to mitigate intrusive apps that reduces the reliance on the attention and understanding of the users.’ Functionality

Mohsen and his colleagues collected data on more than one million apps from the Google Play Store to use them in demo systems and experiments. ‘We rely on features that we extracted from the metadata of these apps and their configuration/manifest files. Additionally, we built a web-based interface to collect the privacy preferences of users.’ Their method is based on scoring applications on these features and on users’ preferences. The score reflects the intrusiveness behaviour of each application relative to other apps in the same category, and is used to rank the applications.

Next, the scientists built a trial search engine to find new apps, which incorporates their methodology. The apps that are shown on the top of the list are the least intrusive. Mohsen: ‘A normal search will rank the apps by their functionality. Our engine compares apps with similar functionalities on their privacy score.’ So the app at the top of the list will respect your privacy the most. Advertising

The ranking algorithm takes two scores into consideration: the score for permission, and that for listeners. The former determines how much access each application is granted on the user’s phone, such as reading SMS messages, use your default calendar and even deleting pictures. The latter gives the apps the ability to keep track of the occurrences on the user’s phone, such as whether the user is present or a new SMS message has arrived. ‘The information that is gathered by these free apps can be sold, for example to companies who produce targeted advertising,’ Mohsen explains. The system that he and his colleagues have devised could help users to avoid the most intrusive apps without having to read all of the privacy information.

The website and search engine were tested by a group of test subjects. ‘The results show that they found the system for setting up their permission preferences easy to use. They also said that they would value it if app stores took their preferences into account when recommending certain apps,’ says Mohsen. This shows that the approach is useful and would be effective in helping users to choose apps that respect their privacy. Google

Ideally, companies like Google could use this system in the search engine for their app store. However, another option is to create a website like the one built for this study, where users can express their preferences on privacy issues and then look for apps via the website’s search engine. Mohsen: ‘Such dedicated websites are quite normal these days, so the approach is viable.’

In the meantime, Mohsen is looking at other privacy issues. ‘We are developing a system that monitors apps after installation. In some cases, updates can require extra permissions from the users.’ In the end, the systems that he creates should give privacy-respecting apps an advantage over the more intrusive ones. ‘Our aim is to help app developers who respect the privacy of their users.’

Fadi Mohsen, Hamed Abdelhaq, Halil Bisgin:
Security-Centric Ranking Algorithm and Two Privacy Scores To Mitigate Intrusive Apps. Concurrency and Computation: Practice and Experience, 2021. doi: 10.1002/cpe.6571

Most Popular Now

Philips and Medtronic Advocacy Partnersh…

Royal Philips (NYSE: PHG, AEX: PHIA), a global leader in health technology, and Medtronic Neurovascular, a leading innovator in neurovascular therapies, today announced a strategic advocacy partnership. Delivering timely stroke...

New AI Tool Predicts Protein-Protein Int…

Scientists from Cleveland Clinic and Cornell University have designed a publicly-available software and web database to break down barriers to identifying key protein-protein interactions to treat with medication. The computational tool...

AI for Real-Rime, Patient-Focused Insigh…

A picture may be worth a thousand words, but still... they both have a lot of work to do to catch up to BiomedGPT. Covered recently in the prestigious journal Nature...

New Research Shows Promise and Limitatio…

Published in JAMA Network Open, a collaborative team of researchers from the University of Minnesota Medical School, Stanford University, Beth Israel Deaconess Medical Center and the University of Virginia studied...

G-Cloud 14 Makes it Easier for NHS to Bu…

NHS organisations will be able to save valuable time and resource in the procurement of technologies that can make a significant difference to patient experience, in the latest iteration of...

Start-Ups will Once Again Have a Starrin…

11 - 14 November 2024, Düsseldorf, Germany. The finalists in the 16th Healthcare Innovation World Cup and the 13th MEDICA START-UP COMPETITION have advanced from around 550 candidates based in 62...

Hampshire Emergency Departments Digitise…

Emergency departments in three hospitals across Hampshire Hospitals NHS Foundation Trust have deployed Alcidion's Miya Emergency, digitising paper processes, saving clinical teams time, automating tasks, and providing trust-wide visibility of...

MEDICA HEALTH IT FORUM: Success in Maste…

11 - 14 November 2024, Düsseldorf, Germany. How can innovations help to master the great challenges and demands with which healthcare is confronted across international borders? This central question will be...

A "Chemical ChatGPT" for New M…

Researchers from the University of Bonn have trained an AI process to predict potential active ingredients with special properties. Therefore, they derived a chemical language model - a kind of...

Siemens Healthineers co-leads EU Project…

Siemens Healthineers is joining forces with more than 20 industry and public partners, including seven leading stroke hospitals, to improve stroke management for patients all over Europe. With a total...

MEDICA and COMPAMED 2024: Shining a Ligh…

11 - 14 November 2024, Düsseldorf, Germany. Christian Grosser, Director Health & Medical Technologies, is looking forward to events getting under way: "From next Monday to Thursday, we will once again...

In 10 Seconds, an AI Model Detects Cance…

Researchers have developed an AI powered model that - in 10 seconds - can determine during surgery if any part of a cancerous brain tumor that could be removed remains...