PRIVIUM:一种用于用户安全和元空间安全的差异化隐私-特权模型

IF 5.4 2区 计算机科学 Q1 COMPUTER SCIENCE, INFORMATION SYSTEMS
Saurabh Sharma , Jaiteg Singh , Ankur Gupta , Farman Ali , Sukhjit Singh Sehra
{"title":"PRIVIUM:一种用于用户安全和元空间安全的差异化隐私-特权模型","authors":"Saurabh Sharma ,&nbsp;Jaiteg Singh ,&nbsp;Ankur Gupta ,&nbsp;Farman Ali ,&nbsp;Sukhjit Singh Sehra","doi":"10.1016/j.cose.2025.104658","DOIUrl":null,"url":null,"abstract":"<div><div>The vision of the Metaverse enables exciting new application domains through immersive experiences. However, the immersive nature of the metaverse, enjoyed through anonymous avatars, also poses significant risks to the safety and security of individual users. Already, the early iterations of the metaverse have reported incidents around user safety and the subsequent inability of the platform to fix accountability. Metaverse adoption, without addressing genuine concerns around user safety, therefore seems far-fetched. This paper presents PRIVIUM (Privacy and Privilege Integrated User Model), a novel Differentiated Privacy-Privilege based framework, designed to address the privacy-privilege-accountability paradox within the Metaverse. The model establishes a tiered privilege structure, allowing users to actively select their desired level of anonymity in exchange for corresponding privileges, through a dynamic two-stage AI model pipeline. The proposed model is dynamic, amenable to diverse use-case scenarios for the average user within the metaverse, while delicately balancing the trade-off between the user’s need for complete privacy and the platform’s responsibility to ensure safety and enforce accountability. This approach empowers users with granular control over their privacy to meet their navigation and application-specific consumption needs within the metaverse while allowing the platform to ensure safe experiences within the metaverse. Simulation results are presented, demonstrating feasibility, potential challenges in implementing PRIVIUM in the real-world discussed, and future evolution imagined.</div></div>","PeriodicalId":51004,"journal":{"name":"Computers & Security","volume":"159 ","pages":"Article 104658"},"PeriodicalIF":5.4000,"publicationDate":"2025-09-19","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":"0","resultStr":"{\"title\":\"PRIVIUM: A differentiated privacy-privilege model for user security and safety in the metaverse\",\"authors\":\"Saurabh Sharma ,&nbsp;Jaiteg Singh ,&nbsp;Ankur Gupta ,&nbsp;Farman Ali ,&nbsp;Sukhjit Singh Sehra\",\"doi\":\"10.1016/j.cose.2025.104658\",\"DOIUrl\":null,\"url\":null,\"abstract\":\"<div><div>The vision of the Metaverse enables exciting new application domains through immersive experiences. However, the immersive nature of the metaverse, enjoyed through anonymous avatars, also poses significant risks to the safety and security of individual users. Already, the early iterations of the metaverse have reported incidents around user safety and the subsequent inability of the platform to fix accountability. Metaverse adoption, without addressing genuine concerns around user safety, therefore seems far-fetched. This paper presents PRIVIUM (Privacy and Privilege Integrated User Model), a novel Differentiated Privacy-Privilege based framework, designed to address the privacy-privilege-accountability paradox within the Metaverse. The model establishes a tiered privilege structure, allowing users to actively select their desired level of anonymity in exchange for corresponding privileges, through a dynamic two-stage AI model pipeline. The proposed model is dynamic, amenable to diverse use-case scenarios for the average user within the metaverse, while delicately balancing the trade-off between the user’s need for complete privacy and the platform’s responsibility to ensure safety and enforce accountability. This approach empowers users with granular control over their privacy to meet their navigation and application-specific consumption needs within the metaverse while allowing the platform to ensure safe experiences within the metaverse. Simulation results are presented, demonstrating feasibility, potential challenges in implementing PRIVIUM in the real-world discussed, and future evolution imagined.</div></div>\",\"PeriodicalId\":51004,\"journal\":{\"name\":\"Computers & Security\",\"volume\":\"159 \",\"pages\":\"Article 104658\"},\"PeriodicalIF\":5.4000,\"publicationDate\":\"2025-09-19\",\"publicationTypes\":\"Journal Article\",\"fieldsOfStudy\":null,\"isOpenAccess\":false,\"openAccessPdf\":\"\",\"citationCount\":\"0\",\"resultStr\":null,\"platform\":\"Semanticscholar\",\"paperid\":null,\"PeriodicalName\":\"Computers & Security\",\"FirstCategoryId\":\"94\",\"ListUrlMain\":\"https://www.sciencedirect.com/science/article/pii/S0167404825003475\",\"RegionNum\":2,\"RegionCategory\":\"计算机科学\",\"ArticlePicture\":[],\"TitleCN\":null,\"AbstractTextCN\":null,\"PMCID\":null,\"EPubDate\":\"\",\"PubModel\":\"\",\"JCR\":\"Q1\",\"JCRName\":\"COMPUTER SCIENCE, INFORMATION SYSTEMS\",\"Score\":null,\"Total\":0}","platform":"Semanticscholar","paperid":null,"PeriodicalName":"Computers & Security","FirstCategoryId":"94","ListUrlMain":"https://www.sciencedirect.com/science/article/pii/S0167404825003475","RegionNum":2,"RegionCategory":"计算机科学","ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":null,"EPubDate":"","PubModel":"","JCR":"Q1","JCRName":"COMPUTER SCIENCE, INFORMATION SYSTEMS","Score":null,"Total":0}
引用次数: 0

摘要

Metaverse的愿景通过沉浸式体验实现了令人兴奋的新应用领域。然而,虚拟世界的沉浸性,通过匿名化身享受,也给个人用户的安全带来了重大风险。在早期的迭代中,已经报告了围绕用户安全的事件,以及随后平台无法解决责任问题。因此,如果不解决用户安全的真正问题,采用虚拟世界似乎是遥不可及的。本文提出了PRIVIUM(隐私和特权集成用户模型),这是一种新颖的基于差异化隐私-特权的框架,旨在解决虚拟世界中的隐私-特权-责任悖论。该模型建立了一个分层的特权结构,允许用户通过动态的两阶段人工智能模型管道,主动选择他们想要的匿名级别,以换取相应的特权。所建议的模型是动态的,适用于元环境中普通用户的各种用例场景,同时在用户对完全隐私的需求和平台确保安全和执行问责制的责任之间微妙地平衡。这种方法使用户能够对他们的隐私进行细粒度控制,以满足他们在元空间中的导航和特定于应用程序的消费需求,同时允许平台确保在元空间中的安全体验。给出了仿真结果,展示了在现实世界中实现PRIVIUM的可行性,讨论了潜在的挑战,并对未来的发展进行了想象。
本文章由计算机程序翻译,如有差异,请以英文原文为准。
PRIVIUM: A differentiated privacy-privilege model for user security and safety in the metaverse
The vision of the Metaverse enables exciting new application domains through immersive experiences. However, the immersive nature of the metaverse, enjoyed through anonymous avatars, also poses significant risks to the safety and security of individual users. Already, the early iterations of the metaverse have reported incidents around user safety and the subsequent inability of the platform to fix accountability. Metaverse adoption, without addressing genuine concerns around user safety, therefore seems far-fetched. This paper presents PRIVIUM (Privacy and Privilege Integrated User Model), a novel Differentiated Privacy-Privilege based framework, designed to address the privacy-privilege-accountability paradox within the Metaverse. The model establishes a tiered privilege structure, allowing users to actively select their desired level of anonymity in exchange for corresponding privileges, through a dynamic two-stage AI model pipeline. The proposed model is dynamic, amenable to diverse use-case scenarios for the average user within the metaverse, while delicately balancing the trade-off between the user’s need for complete privacy and the platform’s responsibility to ensure safety and enforce accountability. This approach empowers users with granular control over their privacy to meet their navigation and application-specific consumption needs within the metaverse while allowing the platform to ensure safe experiences within the metaverse. Simulation results are presented, demonstrating feasibility, potential challenges in implementing PRIVIUM in the real-world discussed, and future evolution imagined.
求助全文
通过发布文献求助,成功后即可免费获取论文全文。 去求助
来源期刊
Computers & Security
Computers & Security 工程技术-计算机:信息系统
CiteScore
12.40
自引率
7.10%
发文量
365
审稿时长
10.7 months
期刊介绍: Computers & Security is the most respected technical journal in the IT security field. With its high-profile editorial board and informative regular features and columns, the journal is essential reading for IT security professionals around the world. Computers & Security provides you with a unique blend of leading edge research and sound practical management advice. It is aimed at the professional involved with computer security, audit, control and data integrity in all sectors - industry, commerce and academia. Recognized worldwide as THE primary source of reference for applied research and technical expertise it is your first step to fully secure systems.
×
引用
GB/T 7714-2015
复制
MLA
复制
APA
复制
导出至
BibTeX EndNote RefMan NoteFirst NoteExpress
×
提示
您的信息不完整,为了账户安全,请先补充。
现在去补充
×
提示
您因"违规操作"
具体请查看互助需知
我知道了
×
提示
确定
请完成安全验证×
copy
已复制链接
快去分享给好友吧!
我知道了
右上角分享
点击右上角分享
0
联系我们:info@booksci.cn Book学术提供免费学术资源搜索服务,方便国内外学者检索中英文文献。致力于提供最便捷和优质的服务体验。 Copyright © 2023 布克学术 All rights reserved.
京ICP备2023020795号-1
ghs 京公网安备 11010802042870号
Book学术文献互助
Book学术文献互助群
群 号:604180095
Book学术官方微信