Privacy Scoring of Social Network User Profiles through Risk Analysis

Sourya Joyee De 1 Abdessamad Imine 1
1 PESTO - Proof techniques for security protocols
Inria Nancy - Grand Est, LORIA - FM - Department of Formal Methods
Abstract : The social benefit derived from online social networks (OSNs) can lure users to reveal unprecedented volumes of personal data to a social graph that is much less trustworthy than the offline social circle. Although OSNs provide users privacy configuration settings to protect their data, these settings are not sufficient to prevent all situations of sensitive information disclosure. Indeed, users can become the victims of harms such as identity theft, stalking or discrimination. In this work, we design a privacy scoring mechanism inspired by privacy risk analysis (PRA) to guide users to understand the various privacy problems they may face. Concepts, derived from existing works in PRA, such as privacy harms, risk sources and harm trees are adapted in our mechanism to compute privacy scores. However, unlike existing PRA methodologies, our mechanism is user-centric. More precisely, it analyzes only OSN user profiles taking into account the choices made by the user and his vicinity regarding the visibility of their profile attributes to potential risk sources within their social graphs. To our best knowledge, our work is the first effort in adopting PRA approach for user-centric analysis of OSN privacy risks.
Complete list of metadatas

Cited literature [22 references]  Display  Hide  Download

https://hal.inria.fr/hal-01651476
Contributor : Abdessamad Imine <>
Submitted on : Tuesday, January 16, 2018 - 9:13:53 AM
Last modification on : Tuesday, December 18, 2018 - 4:38:25 PM
Long-term archiving on : Monday, May 7, 2018 - 8:04:40 PM

File

paper_26(1).pdf
Files produced by the author(s)

Identifiers

  • HAL Id : hal-01651476, version 1

Citation

Sourya Joyee De, Abdessamad Imine. Privacy Scoring of Social Network User Profiles through Risk Analysis. CRiSIS 2017 - The 12th International Conference on Risks and Security of Internet and Systems, Sep 2017, Dinard, France. ⟨hal-01651476⟩

Share

Metrics

Record views

319

Files downloads

246