A Closer Look at Access Control in Multi-User Voice Systems

被引:0
|
作者
Shafei, Hassan A. [1 ,2 ]
Tan, Chiu C. [1 ]
机构
[1] Temple Univ, Dept Comp & Informat Sci, Philadelphia, PA 19122 USA
[2] Jazan Univ, Dept Comp Sci & Informat Technol, Jazan 45142, Saudi Arabia
来源
IEEE ACCESS | 2024年 / 12卷
关键词
Smart speakers; virtual personal assistants; voice interface; smart home assistant; access control; private information; privacy; multi-user; shopping data; SMART HOME; EMBARRASSMENT;
D O I
10.1109/ACCESS.2024.3379141
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Voice-controlled systems have revolutionized user interactions, making technology more accessible and intuitive across various settings. In multi-user environments, such as households, voice assistants like Amazon Alexa are favored as they enable seamless interaction with devices and services. However, the convenience these systems offer comes with challenges, especially concerning privacy and security. In environments where multiple users interact with the same voice assistant, the need for sophisticated access control mechanisms becomes apparent to prevent unauthorized access to sensitive information. This study assesses the effectiveness of voice access control mechanisms within these multi-user contexts, shedding light on the inherent privacy risks associated with shared voice-controlled systems. First, the study demonstrates vulnerabilities in the current access control mechanisms concerning users' private data. Second, a framework for automated testing is developed to explore the access control weaknesses and determine whether the accessible data is of consequence, as not all information may be equally sensitive or vital to users. Third, two flaws within the access control mechanisms offered by the voice system are identified, highlighting the susceptibility of existing access controls to unauthorized access. Finally, the study reveals that operations on the system are protected, whereas other operations that are not protected still reveal user's private information. These findings underscore the need for enhanced privacy safeguards and improved access control systems in multi-user environments. Recommendations are offered to mitigate risks associated with unauthorized access, focusing on securing the user's private data on the voice assistant.
引用
收藏
页码:40933 / 40946
页数:14
相关论文
共 50 条
  • [1] Access control for adaptive reservations on multi-user systems
    Cucinotta, Tommaso
    PROCEEDINGS OF THE 14TH IEEE REAL-TIME AND EMBEDDED TECHNOLOGY AND APPLICATIONS SYMPOSIUM, 2008, : 387 - 396
  • [2] A new look at multi-user power control games
    Su, Yi
    van der Schaar, Mihaela
    2008 IEEE INTERNATIONAL CONFERENCE ON COMMUNICATIONS, PROCEEDINGS, VOLS 1-13, 2008, : 1072 - 1076
  • [3] Concurrent access control for multi-user and multi-processor systems based on trust relationships
    Agudo, Isaac
    Fernandez-Gago, Carmen
    Lopez, Javier
    CONCURRENCY AND COMPUTATION-PRACTICE & EXPERIENCE, 2009, 21 (10): : 1389 - 1403
  • [4] SAAC: Secure Access Control Management Framework for Multi-User Smart Home Systems
    Hashmi, Iram Fatima
    Iqbal, Zafar
    Munir, Eman
    Kryvinska, Natalia
    Ivanochko, Iryna
    Sampedro, Gabriel Avelino
    IEEE ACCESS, 2024, 12 : 133339 - 133355
  • [5] The frequency offset algorithm of the multi-user access for OFDM systems
    Ma, ZY
    Kim, YI
    VTC2004-FALL: 2004 IEEE 60TH VEHICULAR TECHNOLOGY CONFERENCE, VOLS 1-7: WIRELESS TECHNOLOGIES FOR GLOBAL SECURITY, 2004, : 3364 - 3367
  • [6] Dynamic security for multi-user access control in distributed environment
    Prakash, S. Jaya
    Kumar, K. Varada Raj
    Nedunuri, Deepak
    INTERNATIONAL CONFERENCE ON COMPUTER VISION AND MACHINE LEARNING, 2019, 1228
  • [7] A Multi-User Quantum Access Network
    Froehlich, B.
    Dynes, J. F.
    Lucamarini, M.
    Sharpe, A. W.
    Yuan, Z. L.
    Shields, A. J.
    2013 CONFERENCE ON LASERS AND ELECTRO-OPTICS (CLEO), 2013,
  • [8] Turbo multi-user receiver for asynchronous multi-user OFDM systems
    Jung, HJ
    Zoltowski, MD
    2005 IEEE INTERNATIONAL CONFERENCE ON ACOUSTICS, SPEECH, AND SIGNAL PROCESSING, VOLS 1-5: SPEECH PROCESSING, 2005, : 693 - 696
  • [9] Full duplex random access for multi-user OFDMA communication systems
    Wang, Xudong
    Tang, Aimin
    Huang, Pengfei
    AD HOC NETWORKS, 2015, 24 : 200 - 213
  • [10] Collision Resolution Algorithm for Multi-user NOMA Random Access Systems
    Gao Zhanyang
    Hu Jin
    11TH INTERNATIONAL CONFERENCE ON ICT CONVERGENCE: DATA, NETWORK, AND AI IN THE AGE OF UNTACT (ICTC 2020), 2020, : 1121 - 1123