A Closer Look at Access Control in Multi-User Voice Systems

被引:0
|
作者
Shafei, Hassan A. [1 ,2 ]
Tan, Chiu C. [1 ]
机构
[1] Temple Univ, Dept Comp & Informat Sci, Philadelphia, PA 19122 USA
[2] Jazan Univ, Dept Comp Sci & Informat Technol, Jazan 45142, Saudi Arabia
来源
IEEE ACCESS | 2024年 / 12卷
关键词
Smart speakers; virtual personal assistants; voice interface; smart home assistant; access control; private information; privacy; multi-user; shopping data; SMART HOME; EMBARRASSMENT;
D O I
10.1109/ACCESS.2024.3379141
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Voice-controlled systems have revolutionized user interactions, making technology more accessible and intuitive across various settings. In multi-user environments, such as households, voice assistants like Amazon Alexa are favored as they enable seamless interaction with devices and services. However, the convenience these systems offer comes with challenges, especially concerning privacy and security. In environments where multiple users interact with the same voice assistant, the need for sophisticated access control mechanisms becomes apparent to prevent unauthorized access to sensitive information. This study assesses the effectiveness of voice access control mechanisms within these multi-user contexts, shedding light on the inherent privacy risks associated with shared voice-controlled systems. First, the study demonstrates vulnerabilities in the current access control mechanisms concerning users' private data. Second, a framework for automated testing is developed to explore the access control weaknesses and determine whether the accessible data is of consequence, as not all information may be equally sensitive or vital to users. Third, two flaws within the access control mechanisms offered by the voice system are identified, highlighting the susceptibility of existing access controls to unauthorized access. Finally, the study reveals that operations on the system are protected, whereas other operations that are not protected still reveal user's private information. These findings underscore the need for enhanced privacy safeguards and improved access control systems in multi-user environments. Recommendations are offered to mitigate risks associated with unauthorized access, focusing on securing the user's private data on the voice assistant.
引用
收藏
页码:40933 / 40946
页数:14
相关论文
共 50 条
  • [21] Research on Multi-user Access Control Scheme for Private Cloud in Space Control Center
    Liang, Min
    Zhang, Hui
    Gao, Fei
    Wang, Hao
    Wei, Jun
    Huang, Ming
    2019 IEEE 11TH INTERNATIONAL CONFERENCE ON COMMUNICATION SOFTWARE AND NETWORKS (ICCSN 2019), 2019, : 558 - 564
  • [22] Multi-User Shared Access for Internet of Things
    Yuan, Zhifeng
    Yu, Guanghui
    Li, Weimin
    Yuan, Yifei
    Wang, Xinhui
    Xu, Jun
    2016 IEEE 83RD VEHICULAR TECHNOLOGY CONFERENCE (VTC SPRING), 2016,
  • [23] A new efficient chirp modulation technique for multi-user access communications systems
    Ju, Y
    Barkat, B
    2004 IEEE INTERNATIONAL CONFERENCE ON ACOUSTICS, SPEECH, AND SIGNAL PROCESSING, VOL IV, PROCEEDINGS: AUDIO AND ELECTROACOUSTICS SIGNAL PROCESSING FOR COMMUNICATIONS, 2004, : 937 - 940
  • [24] An Access Control Method Supporting Multi-User Collaborative Edit in Cloud Storage
    Shi J.
    Huang C.
    He K.
    Shen X.
    Hua C.
    Jisuanji Yanjiu yu Fazhan/Computer Research and Development, 2017, 54 (07): : 1603 - 1616
  • [25] Fast Multi-User Searchable Encryption with Forward and Backward Private Access Control
    Bulbul, Salim Sabah
    Abduljabbar, Zaid Ameen
    Najem, Duaa Fadhel
    Nyangaresi, Vincent Omollo
    Ma, Junchao
    Aldarwish, Abdulla J. Y.
    JOURNAL OF SENSOR AND ACTUATOR NETWORKS, 2024, 13 (01)
  • [26] EncFS goes Multi-User: Adding Access Control to an Encrypted File System
    Leibenger, Dominik
    Fortmann, Jonas
    Sorge, Christoph
    2016 IEEE CONFERENCE ON COMMUNICATIONS AND NETWORK SECURITY (CNS), 2016, : 525 - 533
  • [27] A Multi-User Collaborative Access Control Scheme Based on New Hash Chain
    Wang, Zetian
    Li, Yunfa
    Liu, Guanxu
    Zhang, Di
    ELECTRONICS, 2023, 12 (08)
  • [28] A DESIGN OF THE FULL-DUPLEX VOICE MIXER FOR MULTI-USER VOICE OVER SENSOR NETWORKS (VOSN) SYSTEMS
    Kim, Jisoo
    Yoo, Ji Hoon
    Lee, Jae Hyong
    Cho, Sung Ho
    PROCEEDINGS OF THE 3RD IEEE INTERNATIONAL CONFERENCE ON NETWORK INFRASTRUCTURE AND DIGITAL CONTENT (IEEE IC-NIDC 2012), 2012, : 102 - 105
  • [29] Anonymous Bandits for Multi-User Systems
    Esfandiari, Hossein
    Mirrokni, Vahab
    Schneider, Jon
    ADVANCES IN NEURAL INFORMATION PROCESSING SYSTEMS 35, NEURIPS 2022, 2022,
  • [30] User oriented IP accounting in multi-user systems
    Ge, Z
    Reuther, B
    Mueller, P
    INTEGRATED NETWORK MANAGEMENT VIII: MANAGING IT ALL, 2003, 118 : 59 - 72