...
首页> 外文期刊>Computer Communications >PoX: Protecting users from malicious Facebook applications
【24h】

PoX: Protecting users from malicious Facebook applications

机译:PoX:保护用户免受恶意Facebook应用程序的攻击

获取原文
获取原文并翻译 | 示例
   

获取外文期刊封面封底 >>

       

摘要

Online social networks such as Facebook, MySpace, and Orkut store large amounts of sensitive user data. While a user can legitimately assume that a social network provider adheres to strict privacy standards, we argue that it is unwise to trust third-party applications on these platforms in the same way. Although the social network provider would be in the best position to implement fine-grained access control for third party applications directly into the platform, such mechanisms are still missing. Furthermore, recent press releases do not indicate that such mechanisms will be put in place in the near future. Therefore, we introduce PoX, an extension for Facebook that makes requests for private data explicit to the user and allows her to exert fine-grained access control over what profile data can be accessed by individual applications. By leveraging a client-side proxy that executes in the user's web browser, data requests can be relayed to Facebook without forcing the user to trust additional third parties. Of course, the presented system is backwards compatible and transparently falls back to the original behavior if a client does not support our system. Thus, we consider PoX to be a readily available alternative for privacy-aware users that do not want to wait for improvements implemented by Facebook itself.
机译:在线社交网络(例如Facebook,MySpace和Orkut)存储大量敏感的用户数据。尽管用户可以合理地假设社交网络提供商遵循严格的隐私标准,但我们认为以同样的方式信任这些平台上的第三方应用程序是不明智的。尽管社交网络提供商最有可能直接将第三方应用程序的细粒度访问控制实现到平台中,但仍缺少这种机制。此外,最近的新闻稿并未表明这种机制将在不久的将来到位。因此,我们引入了PoX,它是Facebook的扩展程序,它可以向用户明确显示对私人数据的请求,并允许她对各个应用程序可以访问哪些配置文件数据进行细粒度的访问控制。通过利用在用户的Web浏览器中执行的客户端代理,可以将数据请求中继到Facebook,而无需强迫用户信任其他第三方。当然,如果客户端不支持我们的系统,那么所提供的系统是向后兼容的,并且透明地退回到原始行为。因此,我们认为PoX对于不想等待Facebook本身实现的改进的具有隐私意识的用户来说,是一种随时可用的替代方法。

著录项

  • 来源
    《Computer Communications》 |2012年第12期|p.1507-1515|共9页
  • 作者单位

    University of California, Santa Barbara, Harold Frank Hall, Santa Barbara, CA 93)06, USA;

    Vienna University of Technology, Treitlstrasse 1, 1040 Vienna, Austria;

    University of California, Santa Barbara, Harold Frank Hall, Santa Barbara, CA 93)06, USA;

    Northeastern University, 440 Huntington Avenue, 202 West Village H, Boston, MA 02115, USA;

  • 收录信息 美国《科学引文索引》(SCI);美国《工程索引》(EI);
  • 原文格式 PDF
  • 正文语种 eng
  • 中图分类
  • 关键词

    social networks; facebook application; privacy;

    机译:社交网络;Facebook应用程序;隐私;

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号