{"title":"PRIVIUM:一种用于用户安全和元空间安全的差异化隐私-特权模型","authors":"Saurabh Sharma , Jaiteg Singh , Ankur Gupta , Farman Ali , Sukhjit Singh Sehra","doi":"10.1016/j.cose.2025.104658","DOIUrl":null,"url":null,"abstract":"<div><div>The vision of the Metaverse enables exciting new application domains through immersive experiences. However, the immersive nature of the metaverse, enjoyed through anonymous avatars, also poses significant risks to the safety and security of individual users. Already, the early iterations of the metaverse have reported incidents around user safety and the subsequent inability of the platform to fix accountability. Metaverse adoption, without addressing genuine concerns around user safety, therefore seems far-fetched. This paper presents PRIVIUM (Privacy and Privilege Integrated User Model), a novel Differentiated Privacy-Privilege based framework, designed to address the privacy-privilege-accountability paradox within the Metaverse. The model establishes a tiered privilege structure, allowing users to actively select their desired level of anonymity in exchange for corresponding privileges, through a dynamic two-stage AI model pipeline. The proposed model is dynamic, amenable to diverse use-case scenarios for the average user within the metaverse, while delicately balancing the trade-off between the user’s need for complete privacy and the platform’s responsibility to ensure safety and enforce accountability. This approach empowers users with granular control over their privacy to meet their navigation and application-specific consumption needs within the metaverse while allowing the platform to ensure safe experiences within the metaverse. Simulation results are presented, demonstrating feasibility, potential challenges in implementing PRIVIUM in the real-world discussed, and future evolution imagined.</div></div>","PeriodicalId":51004,"journal":{"name":"Computers & Security","volume":"159 ","pages":"Article 104658"},"PeriodicalIF":5.4000,"publicationDate":"2025-09-19","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":"0","resultStr":"{\"title\":\"PRIVIUM: A differentiated privacy-privilege model for user security and safety in the metaverse\",\"authors\":\"Saurabh Sharma , Jaiteg Singh , Ankur Gupta , Farman Ali , Sukhjit Singh Sehra\",\"doi\":\"10.1016/j.cose.2025.104658\",\"DOIUrl\":null,\"url\":null,\"abstract\":\"<div><div>The vision of the Metaverse enables exciting new application domains through immersive experiences. However, the immersive nature of the metaverse, enjoyed through anonymous avatars, also poses significant risks to the safety and security of individual users. Already, the early iterations of the metaverse have reported incidents around user safety and the subsequent inability of the platform to fix accountability. Metaverse adoption, without addressing genuine concerns around user safety, therefore seems far-fetched. This paper presents PRIVIUM (Privacy and Privilege Integrated User Model), a novel Differentiated Privacy-Privilege based framework, designed to address the privacy-privilege-accountability paradox within the Metaverse. The model establishes a tiered privilege structure, allowing users to actively select their desired level of anonymity in exchange for corresponding privileges, through a dynamic two-stage AI model pipeline. The proposed model is dynamic, amenable to diverse use-case scenarios for the average user within the metaverse, while delicately balancing the trade-off between the user’s need for complete privacy and the platform’s responsibility to ensure safety and enforce accountability. This approach empowers users with granular control over their privacy to meet their navigation and application-specific consumption needs within the metaverse while allowing the platform to ensure safe experiences within the metaverse. Simulation results are presented, demonstrating feasibility, potential challenges in implementing PRIVIUM in the real-world discussed, and future evolution imagined.</div></div>\",\"PeriodicalId\":51004,\"journal\":{\"name\":\"Computers & Security\",\"volume\":\"159 \",\"pages\":\"Article 104658\"},\"PeriodicalIF\":5.4000,\"publicationDate\":\"2025-09-19\",\"publicationTypes\":\"Journal Article\",\"fieldsOfStudy\":null,\"isOpenAccess\":false,\"openAccessPdf\":\"\",\"citationCount\":\"0\",\"resultStr\":null,\"platform\":\"Semanticscholar\",\"paperid\":null,\"PeriodicalName\":\"Computers & Security\",\"FirstCategoryId\":\"94\",\"ListUrlMain\":\"https://www.sciencedirect.com/science/article/pii/S0167404825003475\",\"RegionNum\":2,\"RegionCategory\":\"计算机科学\",\"ArticlePicture\":[],\"TitleCN\":null,\"AbstractTextCN\":null,\"PMCID\":null,\"EPubDate\":\"\",\"PubModel\":\"\",\"JCR\":\"Q1\",\"JCRName\":\"COMPUTER SCIENCE, INFORMATION SYSTEMS\",\"Score\":null,\"Total\":0}","platform":"Semanticscholar","paperid":null,"PeriodicalName":"Computers & Security","FirstCategoryId":"94","ListUrlMain":"https://www.sciencedirect.com/science/article/pii/S0167404825003475","RegionNum":2,"RegionCategory":"计算机科学","ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":null,"EPubDate":"","PubModel":"","JCR":"Q1","JCRName":"COMPUTER SCIENCE, INFORMATION SYSTEMS","Score":null,"Total":0}
PRIVIUM: A differentiated privacy-privilege model for user security and safety in the metaverse
The vision of the Metaverse enables exciting new application domains through immersive experiences. However, the immersive nature of the metaverse, enjoyed through anonymous avatars, also poses significant risks to the safety and security of individual users. Already, the early iterations of the metaverse have reported incidents around user safety and the subsequent inability of the platform to fix accountability. Metaverse adoption, without addressing genuine concerns around user safety, therefore seems far-fetched. This paper presents PRIVIUM (Privacy and Privilege Integrated User Model), a novel Differentiated Privacy-Privilege based framework, designed to address the privacy-privilege-accountability paradox within the Metaverse. The model establishes a tiered privilege structure, allowing users to actively select their desired level of anonymity in exchange for corresponding privileges, through a dynamic two-stage AI model pipeline. The proposed model is dynamic, amenable to diverse use-case scenarios for the average user within the metaverse, while delicately balancing the trade-off between the user’s need for complete privacy and the platform’s responsibility to ensure safety and enforce accountability. This approach empowers users with granular control over their privacy to meet their navigation and application-specific consumption needs within the metaverse while allowing the platform to ensure safe experiences within the metaverse. Simulation results are presented, demonstrating feasibility, potential challenges in implementing PRIVIUM in the real-world discussed, and future evolution imagined.
期刊介绍:
Computers & Security is the most respected technical journal in the IT security field. With its high-profile editorial board and informative regular features and columns, the journal is essential reading for IT security professionals around the world.
Computers & Security provides you with a unique blend of leading edge research and sound practical management advice. It is aimed at the professional involved with computer security, audit, control and data integrity in all sectors - industry, commerce and academia. Recognized worldwide as THE primary source of reference for applied research and technical expertise it is your first step to fully secure systems.