mopri - An Analysis Framework for Unveiling Privacy Violations in Mobile Apps
Cornell Ziepel, Stephan Escher, Sebastian Rehms, Stefan K\"opsell

TL;DR
The paper introduces mopri, a modular analysis framework combining static and dynamic methods to detect privacy violations in mobile apps, aiding compliance verification and user privacy protection.
Contribution
It presents a novel, adaptable framework that integrates various analysis tools into a unified pipeline for comprehensive mobile app privacy analysis.
Findings
Prototype effectively extracts permissions and tracking libraries.
Employs robust dynamic traffic recording and decryption methods.
Enhances analysis clarity with result enrichment and reporting features.
Abstract
Everyday services of society increasingly rely on mobile applications, resulting in a conflicting situation between the possibility of participation on the one side and user privacy and digital freedom on the other. In order to protect users' rights to informational self-determination, regulatory approaches for the collection and processing of personal data have been developed, such as the EU's GDPR. However, inspecting the compliance of mobile apps with privacy regulations remains difficult. Thus, in order to enable end users and enforcement bodies to verify and enforce data protection compliance, we propose mopri, a conceptual framework designed for analyzing the behavior of mobile apps through a comprehensive, adaptable, and user-centered approach. Recognizing the gaps in existing frameworks, mopri serves as a foundation for integrating various analysis tools into a streamlined,…
Peer Reviews
No public reviews on file for this paper yet. If you reviewed it on a platform where reviews are public (OpenReview, ICLR, NeurIPS, ICML), you can paste yours below so the community can read it here.
Videos
No videos yet. Explain this paper in a talk, walkthrough, or lecture? Add one.
Taxonomy
TopicsAdvanced Malware Detection Techniques · Privacy, Security, and Data Protection · User Authentication and Security Systems
