首页> 外文会议>Annual IEEE/IFIP International Conference on Dependable Systems and Networks >Private Browsing Mode Not Really That Private: Dealing with Privacy Breach Caused by Browser Extensions
【24h】

Private Browsing Mode Not Really That Private: Dealing with Privacy Breach Caused by Browser Extensions

机译:私人浏览模式并不是私人:处理浏览器扩展造成的隐私漏洞

获取原文

摘要

Private Browsing Mode (PBM) is widely supported by all major commodity web browsers. However, browser extensions can greatly undermine PBM. In this paper, we propose an approach to comprehensively identify and stop privacy breaches under PBM caused by browser extensions. Our approach is primarily based on run-time behavior tracking. We combine dynamic analysis and symbolic execution to represent extensions' behavior to identify privacy breaches in PBM caused by extensions. Our analysis shows that many extensions have not fulfilled PBM's guidelines on handling private browsing data. To the best of our knowledge, our approach also provides the first work to stop privacy breaches through instrumentation. We implemented a prototype SoPB on top of Firefox and evaluated it with 1,912 extensions. The results show that our approach can effectively identify and stop privacy breaches under PBM caused by extensions, with almost negligible performance impact.
机译:所有主要商品Web浏览器都广泛支持私人浏览模式(PBM)。但是,浏览器扩展可以大量破坏PBM。在本文中,我们提出了一种在浏览器扩展造成的PBM下全面识别和停止隐私违规的方法。我们的方法主要基于运行时行为跟踪。我们将动态分析和符号执行组合以表示扩展的行为,以识别由扩展引起的PBM中的隐私漏洞。我们的分析表明,许多扩展尚未满足PBM在处理私人浏览数据方面的指导方针。据我们所知,我们的方法还通过仪器提供了第一份停止隐私漏洞的工作。我们在Firefox上实现了一个原型SOPB,并用1,912个扩展评估它。结果表明,我们的方法可以有效地识别和停止延伸造成的PBM下的隐私违规,几乎可以忽略不计的性能影响。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号