首页> 外文会议>IEEE Security and Privacy Workshops >Compliance Monitoring of Third-Party Applications in Online Social Networks
【24h】

Compliance Monitoring of Third-Party Applications in Online Social Networks

机译:在线社交网络中第三方应用程序的合规性监视

获取原文
获取外文期刊封面目录资料

摘要

With the widespread adoption of Online Social Networks (OSNs), users increasingly also use corresponding third-party applications (TPAs), such as social games and applications for collaboration. To improve their social experience, TPAs access users' personal data via an API provided by the OSN. Applications are then expected to comply with certain security and privacy policies when handling the users' data. However, in practice, they might store, use, and distribute that data in all kinds of unapproved ways. We present an approach that transparently enforces security and privacy policies on TPAs that integrate with OSNs. To this end, we integrate concepts and implementations from the research areas of data usage control and information flow control. We instantiate these results in the context of TPAs in OSNs in order to enforce compliance with security and privacy policies that are provided by the OSN operator. We perform a preliminary evaluation of our approach on the basis of a TPA that integrates with the Facebook API.
机译:随着在线社交网络(OSN)的广泛采用,用户也越来越多地使用相应的第三方应用程序(TPA),例如社交游戏和用于协作的应用程序。为了改善他们的社交体验,TPA通过OSN提供的API访问用户的个人数据。然后,在处理用户数据时,应用程序应遵守某些安全和隐私策略。但是,实际上,它们可能以各种未经批准的方式存储,使用和分发该数据。我们提出了一种方法,可以在与OSN集成的TPA上透明地强制实施安全和隐私策略。为此,我们集成了数据使用控制和信息流控制研究领域的概念和实现。我们在OSN中的TPA上下文中实例化这些结果,以强制遵守OSN运营商提供的安全性和隐私策略。我们基于与Facebook API集成的TPA对我们的方法进行了初步评估。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号