她知道的太多了——语音命令设备和隐私

Eoghan Furey, Juanita Blue
{"title":"她知道的太多了——语音命令设备和隐私","authors":"Eoghan Furey, Juanita Blue","doi":"10.1109/ISSC.2018.8585380","DOIUrl":null,"url":null,"abstract":"Voice controlled Internet of Things (IoT) devices have become ubiquitous in homes and offer individuals many convenient and entertaining features. The Amazon Echo and its intelligent personal assistant, \"Alexa\", is a leading innovation in this area. This novel research examines aspects of privacy relating to personal use of the Echo. It aims to ascertain the types of data that may be vocally extracted from a selection of the multitude of applications that may be linked to the Echo.In the era of IoT, Big Data and Artificial Intelligence, privacy concerns are paramount for the individual. Personal data has never been more valuable, both to large reputable corporations and to criminals groups. The European Union’s General Data Protection Regulations (GDPR) will come into force in May 2018, aiming to protect the personal data of EU citizens. This has further highlighted the emergent risks stemming from this technological medium.This paper demonstrates that a typically configured Echo device can prove to be a vulnerable channel by which personal information may be accessed. Where no safeguards are implemented, a plethora of data including personal identifiable information and personal health information is available from the device. Data exposure by simple vocal request leaves the system vulnerable to inquisition by any unauthorized individual who is within \"ear shot\" of the device. The research explores the extent to which these risks can be reduced or mitigated, offering a set of recommendations aimed at preserving user privacy, while still enabling functionality of the device. Adherence to these recommendations will empower individuals to guard against privacy breaches from local sources.","PeriodicalId":174854,"journal":{"name":"2018 29th Irish Signals and Systems Conference (ISSC)","volume":"103 1","pages":"0"},"PeriodicalIF":0.0000,"publicationDate":"2018-06-01","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":"11","resultStr":"{\"title\":\"She Knows Too Much – Voice Command Devices and Privacy\",\"authors\":\"Eoghan Furey, Juanita Blue\",\"doi\":\"10.1109/ISSC.2018.8585380\",\"DOIUrl\":null,\"url\":null,\"abstract\":\"Voice controlled Internet of Things (IoT) devices have become ubiquitous in homes and offer individuals many convenient and entertaining features. The Amazon Echo and its intelligent personal assistant, \\\"Alexa\\\", is a leading innovation in this area. This novel research examines aspects of privacy relating to personal use of the Echo. It aims to ascertain the types of data that may be vocally extracted from a selection of the multitude of applications that may be linked to the Echo.In the era of IoT, Big Data and Artificial Intelligence, privacy concerns are paramount for the individual. Personal data has never been more valuable, both to large reputable corporations and to criminals groups. The European Union’s General Data Protection Regulations (GDPR) will come into force in May 2018, aiming to protect the personal data of EU citizens. This has further highlighted the emergent risks stemming from this technological medium.This paper demonstrates that a typically configured Echo device can prove to be a vulnerable channel by which personal information may be accessed. Where no safeguards are implemented, a plethora of data including personal identifiable information and personal health information is available from the device. Data exposure by simple vocal request leaves the system vulnerable to inquisition by any unauthorized individual who is within \\\"ear shot\\\" of the device. The research explores the extent to which these risks can be reduced or mitigated, offering a set of recommendations aimed at preserving user privacy, while still enabling functionality of the device. Adherence to these recommendations will empower individuals to guard against privacy breaches from local sources.\",\"PeriodicalId\":174854,\"journal\":{\"name\":\"2018 29th Irish Signals and Systems Conference (ISSC)\",\"volume\":\"103 1\",\"pages\":\"0\"},\"PeriodicalIF\":0.0000,\"publicationDate\":\"2018-06-01\",\"publicationTypes\":\"Journal Article\",\"fieldsOfStudy\":null,\"isOpenAccess\":false,\"openAccessPdf\":\"\",\"citationCount\":\"11\",\"resultStr\":null,\"platform\":\"Semanticscholar\",\"paperid\":null,\"PeriodicalName\":\"2018 29th Irish Signals and Systems Conference (ISSC)\",\"FirstCategoryId\":\"1085\",\"ListUrlMain\":\"https://doi.org/10.1109/ISSC.2018.8585380\",\"RegionNum\":0,\"RegionCategory\":null,\"ArticlePicture\":[],\"TitleCN\":null,\"AbstractTextCN\":null,\"PMCID\":null,\"EPubDate\":\"\",\"PubModel\":\"\",\"JCR\":\"\",\"JCRName\":\"\",\"Score\":null,\"Total\":0}","platform":"Semanticscholar","paperid":null,"PeriodicalName":"2018 29th Irish Signals and Systems Conference (ISSC)","FirstCategoryId":"1085","ListUrlMain":"https://doi.org/10.1109/ISSC.2018.8585380","RegionNum":0,"RegionCategory":null,"ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":null,"EPubDate":"","PubModel":"","JCR":"","JCRName":"","Score":null,"Total":0}
引用次数: 11

摘要

语音控制的物联网(IoT)设备在家庭中无处不在,为个人提供了许多方便和娱乐的功能。亚马逊Echo及其智能个人助理“Alexa”是这一领域的领先创新。这项新颖的研究考察了与个人使用Echo有关的隐私方面。它的目的是确定可能从众多应用程序中提取的声音数据类型,这些应用程序可能与Echo相连。在物联网、大数据和人工智能时代,隐私问题对个人来说至关重要。无论是对声誉良好的大公司还是对犯罪集团来说,个人数据从未像现在这样有价值。欧盟的《通用数据保护条例》(GDPR)将于2018年5月生效,旨在保护欧盟公民的个人数据。这进一步突出了这种技术媒介所产生的新风险。本文证明了典型配置的Echo设备可以被证明是一个易受攻击的通道,通过该通道可以访问个人信息。在没有实施保障措施的情况下,从设备中可以获得大量数据,包括个人身份信息和个人健康信息。通过简单的声音请求暴露数据使系统容易受到任何未经授权的个人的调查,这些人在设备的“耳朵范围内”。该研究探讨了这些风险可以减少或缓解的程度,提供了一组旨在保护用户隐私的建议,同时仍然启用设备的功能。遵守这些建议将使个人能够防范来自当地来源的隐私侵犯。
本文章由计算机程序翻译,如有差异,请以英文原文为准。
She Knows Too Much – Voice Command Devices and Privacy
Voice controlled Internet of Things (IoT) devices have become ubiquitous in homes and offer individuals many convenient and entertaining features. The Amazon Echo and its intelligent personal assistant, "Alexa", is a leading innovation in this area. This novel research examines aspects of privacy relating to personal use of the Echo. It aims to ascertain the types of data that may be vocally extracted from a selection of the multitude of applications that may be linked to the Echo.In the era of IoT, Big Data and Artificial Intelligence, privacy concerns are paramount for the individual. Personal data has never been more valuable, both to large reputable corporations and to criminals groups. The European Union’s General Data Protection Regulations (GDPR) will come into force in May 2018, aiming to protect the personal data of EU citizens. This has further highlighted the emergent risks stemming from this technological medium.This paper demonstrates that a typically configured Echo device can prove to be a vulnerable channel by which personal information may be accessed. Where no safeguards are implemented, a plethora of data including personal identifiable information and personal health information is available from the device. Data exposure by simple vocal request leaves the system vulnerable to inquisition by any unauthorized individual who is within "ear shot" of the device. The research explores the extent to which these risks can be reduced or mitigated, offering a set of recommendations aimed at preserving user privacy, while still enabling functionality of the device. Adherence to these recommendations will empower individuals to guard against privacy breaches from local sources.
求助全文
通过发布文献求助,成功后即可免费获取论文全文。 去求助
来源期刊
自引率
0.00%
发文量
0
×
引用
GB/T 7714-2015
复制
MLA
复制
APA
复制
导出至
BibTeX EndNote RefMan NoteFirst NoteExpress
×
提示
您的信息不完整,为了账户安全,请先补充。
现在去补充
×
提示
您因"违规操作"
具体请查看互助需知
我知道了
×
提示
确定
请完成安全验证×
copy
已复制链接
快去分享给好友吧!
我知道了
右上角分享
点击右上角分享
0
联系我们:info@booksci.cn Book学术提供免费学术资源搜索服务,方便国内外学者检索中英文文献。致力于提供最便捷和优质的服务体验。 Copyright © 2023 布克学术 All rights reserved.
京ICP备2023020795号-1
ghs 京公网安备 11010802042870号
Book学术文献互助
Book学术文献互助群
群 号:604180095
Book学术官方微信