NDSS 2024 - Don't Interrupt Me - A Large-Scale Study of On-Device Permission Prompt Quieting in Chro

Sdílet
Vložit
  • čas přidán 7. 09. 2024
  • SESSION 9B-3 Don't Interrupt Me - A Large-Scale Study of On-Device Permission Prompt Quieting in Chrome
    A recent large-scale experiment conducted by Chrome has demonstrated that a "quieter" web permission prompt can reduce unwanted interruptions while only marginally affecting grant rates. However, the experiment and the partial roll-out were missing two important elements: (1) an effective and context-aware activation mechanism for such a quieter prompt, and (2) an analysis of user attitudes and sentiment towards such an intervention. In this paper, we address these two limitations by means of a novel ML-based activation mechanism -- and its real-world on-device deployment in Chrome -- and a large-scale user study with 13.1k participants from 156 countries. First, the telemetry-based results, computed on more than 20 million samples from Chrome users in-the-wild, indicate that the novel on-device ML-based approach is both extremely precise (greater than 99% post-hoc precision) and has very high coverage (96% recall for notifications permission). Second, our large-scale, in-context user study shows that quieting is often perceived as helpful and does not cause high levels of unease for most respondents.
    PAPER
    www.ndss-sympo...
    AUTHORS
    Marian Harbach (Google), Igor Bilogrevic (Google), Enrico Bacis (Google), Serena Chen (Google), Ravjit Uppal (Google), Andy Paicu (Google), Elias Klim (Google), Meggyn Watkins (Google), Balazs Engedy (Google)
    Network and Distributed System Security (NDSS) Symposium 2024, 26 February - 1 March 2024 in San Diego, California.
    ABOUT NDSS
    The Network and Distributed System Security Symposium (NDSS) fosters information exchange among researchers and practitioners of network and distributed system security. The target audience includes those interested in practical aspects of network and distributed system security, with a focus on actual system design and implementation. A major goal is to encourage and enable the Internet community to apply, deploy, and advance the state of available security technologies.
    www.ndss-sympo...
    #NDSS #NDSS24 #NDSS2024 #InternetSecurity

Komentáře •