Privacy leakage on the Web: Diffusion and countermeasures

被引:22
|
作者
Malandrino, Delfina [1 ]
Scarano, Vittorio [1 ]
机构
[1] Univ Salerno, Dipartimento Informat, ISISLab, I-84084 Fisciano, SA, Italy
关键词
Online privacy leakage and threats; Privacy enhancing technologies; Web navigation; INTERNET USERS;
D O I
10.1016/j.comnet.2013.06.013
中图分类号
TP3 [计算技术、计算机技术];
学科分类号
0812 ;
摘要
Protecting privacy on the Web is becoming increasingly complicated because of the considerable amount of personal and sensitive information left by users in many locations during their Web browsing and the silent actions of third party sites that collect data, aggregate information and build personal profiles of Internet users in order to provide free and personalized services. On the other hand, most of people are unaware that their information may be collected online, and that, after their aggregation from multiple sources, could be used for secondary purposes, such as linked to allow identification, without user's notice. We present, in this paper, an empirical data study in order to describe how users' privacy can be undermined because of a variety of potential privacy threats on the Web, mainly perpetrated by third party entities against unaware users, and to quantify the penetration of these third party domain servers into their online activities. Moreover, we discuss our methods and findings to protect the individuals against invasions of their privacy and to limit the diffusion of personal and sensitive information during Web browsing. Specifically, we present a supportive, comprehensive and improved approach for privacy protection to allow users to be aware of the risks of their navigation and to give them full control on feasible actions to address the risk of several privacy threats. We envisioned a comprehensive approach to face privacy leakage by adding to the traditional URL-based filtering mechanism a new filtering method which allows to address privacy threats unprecedentedly not dealt with. Our approach is validated by a Firefox extension, named NoTrace, that brings together several existing techniques in this field but also implements new improved techniques that ensure better privacy protection. We used NoTrace to broadly analyze the Web in order to inspect the potential threats contained in the most popular Web sites and inform online users about both their risk and extent. This data set was also used to test the efficiency of NoTrace for effectiveness and performances which allows us to mark a definite improvement on privacy protection for users while navigating the Web. (C) 2013 Elsevier B.V. All rights reserved.
引用
收藏
页码:2833 / 2855
页数:23
相关论文
共 50 条
  • [41] Privacy Security Status and Countermeasures in the Era of Big Data
    Huang, Yuanpeng
    2021 THE 3RD INTERNATIONAL CONFERENCE ON BIG DATA ENGINEERING AND TECHNOLOGY, BDET 2021, 2021, : 50 - 53
  • [42] Privacy-Preserving Biometric Authentication: Cryptanalysis and Countermeasures
    Zhang, Hui
    Li, Xuejun
    Tan, Syh-Yuan
    Lee, Ming Jie
    Jin, Zhe
    IEEE TRANSACTIONS ON DEPENDABLE AND SECURE COMPUTING, 2023, 20 (06) : 5056 - 5069
  • [43] Privacy attacks against deep learning models and their countermeasures
    Shafee, Ahmed
    Awaad, Tasneem A.
    JOURNAL OF SYSTEMS ARCHITECTURE, 2021, 114
  • [44] Risk assessing and privacy-preserving scheme for privacy leakage in APP
    Wang X.
    Niu B.
    Li F.
    He K.
    Tongxin Xuebao/Journal on Communications, 2019, 40 (05): : 13 - 23
  • [45] Privacy Leakage Vulnerability Detection for Privacy-Preserving Computation Services
    Zhang, Su
    Zhang, Ying
    2022 IEEE INTERNATIONAL CONFERENCE ON WEB SERVICES (IEEE ICWS 2022), 2022, : 219 - 228
  • [46] A Privacy Controller Approach for Privacy Protection in Web Services
    Yee, George O. M.
    SWS'07: PROCEEDINGS OF THE 2007 ACM WORKSHOP ON SECURE WEB SERVICES, 2007, : 44 - 51
  • [47] Evaluating privacy - determining user privacy expectations on the web
    Pilton, Callum
    Faily, Shamal
    Henriksen-Bulmer, Jane
    Computers and Security, 2021, 105
  • [48] A survey of attacks on web services: Classification and countermeasures
    Jensen, Meiko
    Gruschka, Nils
    Herkenhoener, Ralph
    COMPUTER SCIENCE-RESEARCH AND DEVELOPMENT, 2009, 24 (04): : 185 - 197
  • [49] Mechanism and Countermeasures of Structural Cracks and Leakage in Urban Rail Transit
    Dai, Zhiren
    Wang, Jun
    Hu, Ruiqing
    Journal of Railway Engineering Society, 2021, 38 (02): : 103 - 108
  • [50] Leakage of. onion at the DNS Root: Measurements, Causes, and Countermeasures
    Mohaisen, Aziz
    Ren, Kui
    IEEE-ACM TRANSACTIONS ON NETWORKING, 2017, 25 (05) : 3059 - 3072