Featured Research

from universities, journals, and other organizations

New interface could help Facebook members limit security leaks

Date:
December 8, 2011
Source:
Penn State
Summary:
A sign-up interface for Facebook apps could help members prevent personal information -- and their friends' information -- from leaking out through third-party games and apps to hackers and identity thieves.

A sign-up interface created by Penn State researchers for Facebook apps could help members prevent personal information -- and their friends' information -- from leaking out through third-party games and apps to hackers and identity thieves.

Related Articles


When Facebook members sign up for apps developed by third-party companies, they may not know that these apps are sometimes overriding their global settings on privacy preferences and information sharing, said Heng Xu, assistant professor of information sciences and technology.

"One illusion is that people think that they have set global privacy settings, so it's secure," said Xu. "But the broken element is in the third-party applications that people use to play games and interact in different ways with each other on Facebook."

Members who sign up for an app must agree to new terms of information disclosure that are often different from their main Facebook privacy settings when they sign up for an app, Xu said. The sign-up screen currently is a general agreement that shows information third-party developers are requesting. If the member does not agree, the member cannot use the app.

The screen designed by the researchers allows members to decide what types of information they are comfortable sharing and with whom they want to share it. Xu, who worked with Na Wang, doctoral candidate, and Jens Grossklags, assistant professor, both of information sciences and technology, designed two alternative third-party privacy agreement screens to clearly show members what data and privacy details they agree to share with the developer.

The researchers, who presented their findings on Dec. 4 at the Association for Computer Machinery Symposium on Computer Human Interaction for Management of Information Technology in Boston, asked a group of Facebook members to try two app sign-up page designs, a single-color scheme and one that used three colors -- green, yellow and red -- to designate critical information. The design also features three boxes to offer members the option to share their app activity history with all the members of their network, just specific people, or keep all of the information private.

Of the 11 participants, all said that improving the security and privacy of the sign-up pages is important. Six of the testers preferred the multiple-colored scheme to the monochromatic version.

Privacy settings allow members to determine how much information the member wants to display or share with their members of their network and Facebook. This data can include birthdate, hometown and current city, as well as pictures the members uploaded to their pages.

Members may not consider data such as hometown or birthdates vital information, but Xu said hackers can use such information to guess social security numbers.

Xu said people may not even know that they may expose their friends' personal data if they use apps. A calendar app, for example, could allow developers to access the member's birthdate, as well as the birthdate of friends who are part of the member's network.

"Some people may know that they are allowing these companies to access their data," Xu said. "However, they might not know that their info will be leaked through their friends, use of games and other applications on Facebook."

According to Xu, many Facebook app developers try to make money from their games and tools by selling or sharing the data with advertisers and other companies.

"The only way to find out how the information is going to be used is to go to each app's website and review the terms of use," Xu said. "And many people won't do that."

The National Science Foundation supported their work.


Story Source:

The above story is based on materials provided by Penn State. Note: Materials may be edited for content and length.


Cite This Page:

Penn State. "New interface could help Facebook members limit security leaks." ScienceDaily. ScienceDaily, 8 December 2011. <www.sciencedaily.com/releases/2011/12/111205082301.htm>.
Penn State. (2011, December 8). New interface could help Facebook members limit security leaks. ScienceDaily. Retrieved January 27, 2015 from www.sciencedaily.com/releases/2011/12/111205082301.htm
Penn State. "New interface could help Facebook members limit security leaks." ScienceDaily. www.sciencedaily.com/releases/2011/12/111205082301.htm (accessed January 27, 2015).

Share This


More From ScienceDaily



More Computers & Math News

Tuesday, January 27, 2015

Featured Research

from universities, journals, and other organizations


Featured Videos

from AP, Reuters, AFP, and other news services

Cablevision Enters Wi-Fi Phone Fray

Cablevision Enters Wi-Fi Phone Fray

Reuters - Business Video Online (Jan. 26, 2015) The entry by Cablevision and Google could intensify the already heated price wars for mobile phone service. Fred Katayama reports. Video provided by Reuters
Powered by NewsLook.com
Hector the Robot Mimics a Giant Stick Insect

Hector the Robot Mimics a Giant Stick Insect

Reuters - Innovations Video Online (Jan. 26, 2015) A robot based on a stick insect can navigate difficult terrain autonomously and adapt to its surroundings. Tara Cleary reports. Video provided by Reuters
Powered by NewsLook.com
Scientists Model Flying, Walking Drone After Vampire Bats

Scientists Model Flying, Walking Drone After Vampire Bats

Buzz60 (Jan. 26, 2015) Swiss scientists build a new drone that can both fly and walk, modeling it after the movements of common vampire bats. Jen Markham (@jenmarkham) has the story. Video provided by Buzz60
Powered by NewsLook.com
Malaysia Airlines Hack: Lizard Squad, ISIS Involved?

Malaysia Airlines Hack: Lizard Squad, ISIS Involved?

Newsy (Jan. 26, 2015) Malaysia Airlines on Sunday experienced website outages and what appeared to be an attack by hacker group Lizard Squad. Video provided by Newsy
Powered by NewsLook.com

Search ScienceDaily

Number of stories in archives: 140,361

Find with keyword(s):
Enter a keyword or phrase to search ScienceDaily for related topics and research stories.

Save/Print:
Share:

Breaking News:

Strange & Offbeat Stories


Space & Time

Matter & Energy

Computers & Math

In Other News

... from NewsDaily.com

Science News

Health News

Environment News

Technology News



Save/Print:
Share:

Free Subscriptions


Get the latest science news with ScienceDaily's free email newsletters, updated daily and weekly. Or view hourly updated newsfeeds in your RSS reader:

Get Social & Mobile


Keep up to date with the latest news from ScienceDaily via social networks and mobile apps:

Have Feedback?


Tell us what you think of ScienceDaily -- we welcome both positive and negative comments. Have any problems using the site? Questions?
Mobile: iPhone Android Web
Follow: Facebook Twitter Google+
Subscribe: RSS Feeds Email Newsletters
Latest Headlines Health & Medicine Mind & Brain Space & Time Matter & Energy Computers & Math Plants & Animals Earth & Climate Fossils & Ruins