【24h】

Privacy Impacts of IoT Devices: A SmartTV Case Study

机译:物联网设备的隐私影响:SmartTV案例研究

获取原文
获取原文并翻译 | 示例

摘要

The Internet of Things (IoT) enables the passive collection of personal data at an unprecedented scale by ubiquitous devices built into our daily lives. However, IoT devices neither provide notice or collect consent as recommended by the U. S. Federal Trade Commission (FTC) fair information practice principles. IoT devices may, based on their physical limitation, not even be capable of compliance. Requirements engineers need concrete methodologies to identify, understand, and limit risks to customer privacy posed by IoT devices. We conducted an exploratory case study of the privacy policy for an archetypical IoT device, a SmartTV. We employed the Goal-Based Requirements Analysis Method to extract goals from applicable Samsung U. S. privacy policy documents and classified the resulting goals with the Antón-Earp privacy goal taxonomy. The goal of this research is to characterize the privacy protections and vulnerabilities posed by this example IoT device and its associated policies. In particular, we seek to assess whether data collection is apparent to the average user and evaluate the extent to which a SmartTV exposes users to cloud computing's privacy vulnerabilities. Our results suggest that: (1) users face increased risk of privacy harms from SmartTVs, (2) most data collection by SmartTVs is not apparent to the average user, and (3) many SmartTV goals further compromise user privacy by requiring connection to manufacturer backend servers.
机译:物联网(IoT)通过内置在我们日常生活中的无处不在的设备实现了前所未有的规模的被动数据收集。但是,物联网设备既不提供通知,也未征得美国联邦贸易委员会(FTC)公平信息实践原则的建议。物联网设备可能由于其物理限制而无法兼容。需求工程师需要具体的方法来识别,理解和限制由物联网设备带来的客户隐私风险。我们对原型物联网设备SmartTV的隐私政策进行了探索性案例研究。我们采用了基于目标的需求分析方法,从适用的三星美国隐私政策文档中提取目标,并使用Antón-Earp隐私目标分类法对最终目标进行了分类。这项研究的目的是表征此示例物联网设备及其相关策略带来的隐私保护和漏洞。特别是,我们试图评估数据收集对普通用户是否显而易见,并评估SmartTV将用户暴露给云计算的隐私漏洞的程度。我们的结果表明:(1)用户面临SmartTV带来的隐私损害风险增加的风险;(2)SmartTV收集的大多数数据对于普通用户而言并不明显;(3)许多SmartTV目标通过要求与制造商的连接进一步损害了用户隐私后端服务器。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号