论文标题
在基于GUI的编程系统中,保存隐私脚本共享
Privacy-Preserving Script Sharing in GUI-based Programming-by-Demonstration Systems
论文作者
论文摘要
最终用户开发(EUD)的一个重要问题是,在共享它们时会意外地将个人信息嵌入程序工件中。由于缺乏直接开发人员对脚本内容的控制,因此此问题在基于GUI的编程(PBD)系统中尤为重要。先前的研究报告说,这些隐私问题是EUD脚本共享的主要障碍。我们提出了一种新方法,可以根据相应的应用GUI上下文的信息输入的唯一性来识别和混淆基于GUI的PBD脚本中潜在的个人信息。与先前的方法相比,我们的支持更广泛的个人信息超出明确预先指定的信息,需要最少的用户工作,解决重新识别攻击的威胁,并可以与任何任务域中的第三方应用程序一起使用。我们的方法还可以在脚本消费者方面恢复本地混淆的字段,以保留共享脚本的透明度,可读性,鲁棒性和概括性。我们的评估表明,我们的方法(1)准确地识别了不同任务域中不同应用程序跨越脚本中的潜在个人信息; (2)允许最终用户开发人员感到自在地分享自己的脚本; (3)尽管存在混淆的字段,但使消费者能够理解共享脚本的操作。
An important concern in end user development (EUD) is accidentally embedding personal information in program artifacts when sharing them. This issue is particularly important in GUI-based programming-by-demonstration (PBD) systems due to the lack of direct developer control of script contents. Prior studies reported that these privacy concerns were the main barrier to script sharing in EUD. We present a new approach that can identify and obfuscate the potential personal information in GUI-based PBD scripts based on the uniqueness of information entries with respect to the corresponding app GUI context. Compared with the prior approaches, ours supports broader types of personal information beyond explicitly pre-specified ones, requires minimal user effort, addresses the threat of re-identification attacks, and can work with third-party apps from any task domain. Our approach also recovers obfuscated fields locally on the script consumer's side to preserve the shared scripts' transparency, readability, robustness, and generalizability. Our evaluation shows that our approach (1) accurately identifies the potential personal information in scripts across different apps in diverse task domains; (2) allows end-user developers to feel comfortable sharing their own scripts; and (3) enables script consumers to understand the operation of shared scripts despite the obfuscated fields.