Project Details
Analysis of Software Privacy Leakage (A03)
Subject Area
Software Engineering and Programming Languages
Term
from 2016 to 2019
Project identifier
Deutsche Forschungsgemeinschaft (DFG) - Project number 272573906
Third-party applications, on mobile phones and in Web services, often share private data liberally. We aim to provide software analysis tools that put users in a position to understand how their data is being shared. As a key concept, we introduce privacy patterns, which identify sources and sinks of sensitive data in an abstract form communicable to users and are amenable to further analyses. Abstracting over multiple related apps will allow us to detect "abnormal" behavior. To tackle third-party, multi-language, binary distributed, obfuscated, and even adverse software, we will couple static and dynamic analysis with novel test generation techniques that are robust, scalable, and target the flows and patterns of interest.
DFG Programme
Collaborative Research Centres
International Connection
Luxembourg
Applicant Institution
Universität des Saarlandes
Co-Applicant Institution
Université du Luxembourg