Visual analytics and visualization for android security risk

Sangbong Yoo, Hong Ryeol Ryu, Hanbyul Yeon, Taekyoung Kwon, Yun Jang

Research output: Contribution to journalArticle

Abstract

Nowadays, smart devices enable most of the personal tasks such as banking, mailing, and paperwork that people do on their personal computers (PCs). For this reason, personal information on smart devices has become a good target for malware. Especially, Malware targeted at personal information stored on mobile are hard to detect and risks from usage patterns are even more difficult. The security risk tends to be underestimated by device users and causes critical problems especially on personal information leakage and costing money unconsciously. Malware is also often activated unsuspectedly. Therefore, a means for easy recognition of the problems and the smartphone usage is necessary. In this paper, we present a visual analytics system (VA) for Android security risk lifelog using app permissions to recognize the risk. Our system stores the security-related personal information on the smartphone device and utilizes it to analyze the security risk lifelog. For the risk analysis, we define security risk scores based on the app and permission statistics. Then, several linked visualizations are designed to present the risk lifelog. We have collected the security lifelog data from eight Android smartphone users and analyzed their security matters. Our PVA system enables Android smartphone users to observe, mitigate the security risk, and eventually understand how Android security risk affects their lives. Moreover, we present a user study to evaluate the PVA system with user feedback.

Original languageEnglish
Pages (from-to)9-21
Number of pages13
JournalJournal of Computer Languages
Volume53
DOIs
Publication statusPublished - 2019 Aug 1

Fingerprint

Visualization
Smartphones
Application programs
Risk analysis
Personal computers
Statistics
Feedback
Android (operating system)
Malware

All Science Journal Classification (ASJC) codes

  • Software
  • Human-Computer Interaction
  • Computer Networks and Communications

Cite this

Yoo, Sangbong ; Ryu, Hong Ryeol ; Yeon, Hanbyul ; Kwon, Taekyoung ; Jang, Yun. / Visual analytics and visualization for android security risk. In: Journal of Computer Languages. 2019 ; Vol. 53. pp. 9-21.
@article{325138a83eeb478cacebbf3939ca3c16,
title = "Visual analytics and visualization for android security risk",
abstract = "Nowadays, smart devices enable most of the personal tasks such as banking, mailing, and paperwork that people do on their personal computers (PCs). For this reason, personal information on smart devices has become a good target for malware. Especially, Malware targeted at personal information stored on mobile are hard to detect and risks from usage patterns are even more difficult. The security risk tends to be underestimated by device users and causes critical problems especially on personal information leakage and costing money unconsciously. Malware is also often activated unsuspectedly. Therefore, a means for easy recognition of the problems and the smartphone usage is necessary. In this paper, we present a visual analytics system (VA) for Android security risk lifelog using app permissions to recognize the risk. Our system stores the security-related personal information on the smartphone device and utilizes it to analyze the security risk lifelog. For the risk analysis, we define security risk scores based on the app and permission statistics. Then, several linked visualizations are designed to present the risk lifelog. We have collected the security lifelog data from eight Android smartphone users and analyzed their security matters. Our PVA system enables Android smartphone users to observe, mitigate the security risk, and eventually understand how Android security risk affects their lives. Moreover, we present a user study to evaluate the PVA system with user feedback.",
author = "Sangbong Yoo and Ryu, {Hong Ryeol} and Hanbyul Yeon and Taekyoung Kwon and Yun Jang",
year = "2019",
month = "8",
day = "1",
doi = "10.1016/j.cola.2019.03.004",
language = "English",
volume = "53",
pages = "9--21",
journal = "Journal of Computer Languages",
issn = "2665-9182",
publisher = "Elsevier Ltd",

}

Visual analytics and visualization for android security risk. / Yoo, Sangbong; Ryu, Hong Ryeol; Yeon, Hanbyul; Kwon, Taekyoung; Jang, Yun.

In: Journal of Computer Languages, Vol. 53, 01.08.2019, p. 9-21.

Research output: Contribution to journalArticle

TY - JOUR

T1 - Visual analytics and visualization for android security risk

AU - Yoo, Sangbong

AU - Ryu, Hong Ryeol

AU - Yeon, Hanbyul

AU - Kwon, Taekyoung

AU - Jang, Yun

PY - 2019/8/1

Y1 - 2019/8/1

N2 - Nowadays, smart devices enable most of the personal tasks such as banking, mailing, and paperwork that people do on their personal computers (PCs). For this reason, personal information on smart devices has become a good target for malware. Especially, Malware targeted at personal information stored on mobile are hard to detect and risks from usage patterns are even more difficult. The security risk tends to be underestimated by device users and causes critical problems especially on personal information leakage and costing money unconsciously. Malware is also often activated unsuspectedly. Therefore, a means for easy recognition of the problems and the smartphone usage is necessary. In this paper, we present a visual analytics system (VA) for Android security risk lifelog using app permissions to recognize the risk. Our system stores the security-related personal information on the smartphone device and utilizes it to analyze the security risk lifelog. For the risk analysis, we define security risk scores based on the app and permission statistics. Then, several linked visualizations are designed to present the risk lifelog. We have collected the security lifelog data from eight Android smartphone users and analyzed their security matters. Our PVA system enables Android smartphone users to observe, mitigate the security risk, and eventually understand how Android security risk affects their lives. Moreover, we present a user study to evaluate the PVA system with user feedback.

AB - Nowadays, smart devices enable most of the personal tasks such as banking, mailing, and paperwork that people do on their personal computers (PCs). For this reason, personal information on smart devices has become a good target for malware. Especially, Malware targeted at personal information stored on mobile are hard to detect and risks from usage patterns are even more difficult. The security risk tends to be underestimated by device users and causes critical problems especially on personal information leakage and costing money unconsciously. Malware is also often activated unsuspectedly. Therefore, a means for easy recognition of the problems and the smartphone usage is necessary. In this paper, we present a visual analytics system (VA) for Android security risk lifelog using app permissions to recognize the risk. Our system stores the security-related personal information on the smartphone device and utilizes it to analyze the security risk lifelog. For the risk analysis, we define security risk scores based on the app and permission statistics. Then, several linked visualizations are designed to present the risk lifelog. We have collected the security lifelog data from eight Android smartphone users and analyzed their security matters. Our PVA system enables Android smartphone users to observe, mitigate the security risk, and eventually understand how Android security risk affects their lives. Moreover, we present a user study to evaluate the PVA system with user feedback.

UR - http://www.scopus.com/inward/record.url?scp=85065414559&partnerID=8YFLogxK

UR - http://www.scopus.com/inward/citedby.url?scp=85065414559&partnerID=8YFLogxK

U2 - 10.1016/j.cola.2019.03.004

DO - 10.1016/j.cola.2019.03.004

M3 - Article

VL - 53

SP - 9

EP - 21

JO - Journal of Computer Languages

JF - Journal of Computer Languages

SN - 2665-9182

ER -