Privacy Issues in Voice Assistant Ecosystems

被引:5
|
作者
Germanos, Georgios [1 ]
Kavallieros, Dimitris [1 ,2 ]
Kolokotronis, Nicholas [1 ]
Georgiou, Nikolaos [2 ]
机构
[1] Univ Peloponnese, Tripolis 22131, Greece
[2] Ctr Secur Studies KEMEA, Athens 10177, Greece
关键词
Forensics; Internet of things; Privacy; Security; Voice assistants; ALEXA; CORTANA;
D O I
10.1109/SERVICES48979.2020.00050
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Voice assistants have become quite popular lately while in parallel they are an important part of smart-home systems. Through their voice assistants, users can perform various tasks, control other devices and enjoy third party services. The assistants are part of a wider "ecosystem". Their function relies on the users' voice commands, received through original voice assistant devices or companion applications for smart-phones and tablets, which are then sent through the internet to the vendor's cloud services and are translated into commands. These commands are then transferred to other applications and services. As this huge volume of data, and mainly personal data of the user, moves around the voice assistant ecosystem, there are several places where personal data is temporarily or permanently stored and thus it is easy for a cyber attacker to tamper with this data, bringing forward major privacy issues. In our work we present the types and location of such personal data artifacts within the ecosystems of three popular voice assistants, after having set up our own testbed, and using IoT forensic procedures. Our privacy evaluation includes the companion apps of the assistants, as we also compare the permissions they require before their installation on an Android device.
引用
收藏
页码:205 / 212
页数:8
相关论文
共 50 条
  • [1] Problematic Privacy Policies of Voice Assistant Applications
    Liao, Song
    Wilson, Christin
    Long, Cheng
    Hu, Hongxin
    Deng, Huixing
    IEEE SECURITY & PRIVACY, 2021, 19 (06) : 66 - 73
  • [2] Security and privacy problems in voice assistant applications: A survey
    Li, Jingjin
    Chen, Chao
    Azghadi, Mostafa Rahimi
    Ghodosi, Hossein
    Pan, Lei
    Zhang, Jun
    COMPUTERS & SECURITY, 2023, 134
  • [3] Personal Voice Assistant Security and Privacy-A Survey
    Cheng, Peng
    Roedig, Utz
    PROCEEDINGS OF THE IEEE, 2022, 110 (04) : 476 - 507
  • [4] Measuring the Effectiveness of Privacy Policies for Voice Assistant Applications
    Liao, Song
    Wilson, Christin
    Cheng, Long
    Hu, Hongxin
    Deng, Huixing
    36TH ANNUAL COMPUTER SECURITY APPLICATIONS CONFERENCE (ACSAC 2020), 2020, : 856 - 869
  • [5] VPASS: Voice Privacy Assistant System for Monitoring In-home Voice Commands
    Tran, Bang
    Kona, Sai Harshavardhan Reddy
    Liang, Xiaohui
    Ghinita, Gabriel
    Summerour, Caroline
    Batsis, John A.
    2023 20TH ANNUAL INTERNATIONAL CONFERENCE ON PRIVACY, SECURITY AND TRUST, PST, 2023, : 415 - 424
  • [6] Jaco: An Offline Running Privacy-aware Voice Assistant
    Bermuth, Daniel
    Poeppel, Alexander
    Reif, Wolfgang
    PROCEEDINGS OF THE 2022 17TH ACM/IEEE INTERNATIONAL CONFERENCE ON HUMAN-ROBOT INTERACTION (HRI '22), 2022, : 618 - 622
  • [7] Jaco: An Offline Running Privacy-aware Voice Assistant
    Bermuth, Daniel
    Poeppel, Alexander
    Reif, Wolfgang
    ACM/IEEE International Conference on Human-Robot Interaction, 2022, 2022-March : 618 - 622
  • [8] Poster: A First Look at the Privacy Risks of Voice Assistant Apps
    Natatsuka, Atsuko
    Iijima, Ryo
    Watanabe, Takuya
    Akiyama, Mitsuaki
    Sakai, Tetsuya
    Mori, Tatsuya
    PROCEEDINGS OF THE 2019 ACM SIGSAC CONFERENCE ON COMPUTER AND COMMUNICATIONS SECURITY (CCS'19), 2019, : 2633 - 2635
  • [9] Privacy concerns of older adults using voice assistant systems
    Spangler, Hillary B.
    Driesse, Tiffany M.
    Lynch, David H.
    Liang, Xiaohui
    Roth, Robert M.
    Kotz, David
    Fortuna, Karen
    Batsis, John A.
    JOURNAL OF THE AMERICAN GERIATRICS SOCIETY, 2022, 70 (12) : 3643 - 3647
  • [10] Privacy Concerns for Use of Voice Activated Personal Assistant in the Public Space
    Moorthy, Aarthi Easwara
    Vu, Kim-Phuong L.
    INTERNATIONAL JOURNAL OF HUMAN-COMPUTER INTERACTION, 2015, 31 (04) : 307 - 335