loading
Papers Papers/2022 Papers Papers/2022

Research.Publish.Connect.

Paper

Paper Unlock

Authors: Vittoria Cozza 1 ; Zisis Tsiatsikas 2 ; Mauro Conti 3 and Georgios Kambourakis 2

Affiliations: 1 Polytechnic University of Bari, Italy ; 2 University of the Aegean, Greece ; 3 University of Padua, Italy

Keyword(s): Privacy, Offensive Security, Attack, Web-services, Flaws.

Abstract: Over the last decade online services have penetrated the market and for many of us became an integral part of our software portfolio. On the one hand online services offer flexibility in every sector of the social web, but on the other hand these pros do not come without a cost in terms of privacy. This work focuses on online services, and in particular on the possible inherent design errors which make these services an easy target for privacy invaders. We demonstrate the previous fact using a handful of real-world cases pertaining to popular online web services. More specifically, we show that despite the progress made in raising security/privacy awareness amongst all the stakeholders (developers, admins, users) and the existence of mature security/privacy standards and practices, there still exist a plethora of poor implementations that may put user’s privacy at risk. We particularly concentrate on cases where a breach can happen even if the aggressor has limited knowledge about th eir target and/or the attack can be completed with limited resources. In this context, the main contribution of the paper at hand revolves around the demonstration of effortlessly exploiting privacy leaks existing in widely-known online services due to software development errors. (More)

CC BY-NC-ND 4.0

Sign In Guest: Register as new SciTePress user now for free.

Sign In SciTePress user: please login.

PDF ImageMy Papers

You are not signed in, therefore limits apply to your IP address 3.145.110.99

In the current month:
Recent papers: 100 available of 100 total
2+ years older papers: 200 available of 200 total

Paper citation in several formats:
Cozza, V.; Tsiatsikas, Z.; Conti, M. and Kambourakis, G. (2017). Why Snoopy Loves Online Services: An Analysis of (Lack of) Privacy in Online Services. In Proceedings of the 3rd International Conference on Information Systems Security and Privacy - ICISSP; ISBN 978-989-758-209-7; ISSN 2184-4356, SciTePress, pages 431-438. DOI: 10.5220/0006207204310438

@conference{icissp17,
author={Vittoria Cozza. and Zisis Tsiatsikas. and Mauro Conti. and Georgios Kambourakis.},
title={Why Snoopy Loves Online Services: An Analysis of (Lack of) Privacy in Online Services},
booktitle={Proceedings of the 3rd International Conference on Information Systems Security and Privacy - ICISSP},
year={2017},
pages={431-438},
publisher={SciTePress},
organization={INSTICC},
doi={10.5220/0006207204310438},
isbn={978-989-758-209-7},
issn={2184-4356},
}

TY - CONF

JO - Proceedings of the 3rd International Conference on Information Systems Security and Privacy - ICISSP
TI - Why Snoopy Loves Online Services: An Analysis of (Lack of) Privacy in Online Services
SN - 978-989-758-209-7
IS - 2184-4356
AU - Cozza, V.
AU - Tsiatsikas, Z.
AU - Conti, M.
AU - Kambourakis, G.
PY - 2017
SP - 431
EP - 438
DO - 10.5220/0006207204310438
PB - SciTePress