期刊文献+

基于抖音共同联系人的群体用户关系分析 被引量:3

Analysis of Group Users Relationship Based on TikTok Mutual Contacts
下载PDF
导出
摘要 很多流行的社交App都有展示用户之间的共同关系的功能,然而,共同关系的暴露也可能导致用户隐私安全问题的发生.以中国最知名的短视频软件抖音为研究对象,分析了其共同联系人功能存在的用户隐私泄露的安全漏洞.提出了一种针对群体用户的漏洞利用和攻击方式,该攻击方式可以达到的效果是,即使群体中某些用户设置了不允许通过手机号找到自己,攻击者仍然可以利用已知的群体用户的手机号码和群体用户之间的内在联系获得这些用户的抖音账号.攻击者在获得群体中尽可能多的用户的抖音账号后,可以对这些用户相互之间的关注信息、通信录信息、视频点赞和评论信息进行收集,并利用这些信息计算群体用户之间的关系,为发起进一步的有效攻击提供一定的辅助.提出了描述用户关系的2个指标——亲密度和群体活跃度,并给出了这2个指标的计算方法.通过对现实社会中3个真实群体的实验,验证了用户关系计算的有效性,分析了对用户所造成的安全威胁,并给出了安全防范建议. Many popular social apps have the function of showing mutual relationship between users.However,the exposure of mutual relationship may lead to the occurrence of user privacy security problems.Taking China s most famous short video software TikTok as the research object,a privacy disclosure security vulnerability in the mutual contacts function of TikTok is analyzed.A method of vulnerability exploiting and attacking for group users is proposed.The attack effect is that even if some users are not allowed to find themselves through their mobile phone numbers by some settings,an attacker can still use the known mobile phone numbers of group users and the internal connections among group users to get these users TikTok accounts.After getting as many TikTok accounts of the group users as possible,attackers can collect the following,contacts,video likes and comments information among group users,and use this information to calculate users relationship,which can provide some assistance for launching further effective attacks.Two indexes—intimacy and group-activeness—are proposed to describe users relationship,and the calculation method of these two indexes is given.Through the experiment of three real groups in society,the effectiveness of user relationship calculation is verified.In the end,the security threats to users are analyzed and the security prevention suggestions are given.
作者 乐洪舟 何水龙 王敬 Yue Hongzhou;He Shuilong;Wang Jing(School of Computer and Information Technology,Xinyang Normal University,Xinyang,Henan 464000;Henan Key Laboratory of Analysis and Applications of Education Big Data(Xinyang Normal University),Xinyang,Henan 464000)
出处 《计算机研究与发展》 EI CSCD 北大核心 2022年第4期796-812,共17页 Journal of Computer Research and Development
基金 国家自然科学基金项目(31900710) 河南省自然科学基金项目(212300410236)。
关键词 抖音 共同关系 隐私泄露 安全漏洞 用户关系 TikTok mutual relationship privacy disclosure security vulnerability user relationship
  • 相关文献

参考文献6

二级参考文献124

  • 1朱嫣岚,闵锦,周雅倩,黄萱菁,吴立德.基于HowNet的词汇语义倾向计算[J].中文信息学报,2006,20(1):14-20. 被引量:326
  • 2Miller, George A. ,& Fellbaum C.Semantic Network of English[A] .In:Beth Levin and Steven Pinker (Eds.) Lexical & Conceptual Semantics[C] .Elsevier Science Publishers, B. V. ,Amsterdam,the Netherlands, 1991.
  • 3Baker, Collin F., Fillmore and et al. The Berkeley FrameNet project[A]. In: Proceedings of the COLING- ACL'98[C]. Montreal,Canada: 1998,86 - 90.
  • 4Richardson S.D., Dolan W.B. and Vandervende L.MindNet: acquiring and structuring semantic information from text[A]. In: Proc. of COLING- ACL'98[C]. 1998,1098 - 1102.
  • 5Pease,A. ,Niles,I. ,and Li,J.The Suggested Upper Merged Ontology: A Large Ontology for the Semantic Web and its Applications[A] .In: Working Notes of the AAAI- 2002 Workshop on Ontologies and the Semantic Web[C] .Edmonton. Canada: 2002.
  • 6Niles,I.and Pease, A. Linking Lexicons and Ontologies: Mapping WontNet to the Suggested Upper Merged Ontology[A].In: Proceedings of the 2003 International Conference on Information and Knowledge Engineering[C]. Las Vegas,Nevada: 2003.
  • 7D. Yarowsky. Word Sense Disambiguation Using Statistical Models of Roget's Categories Trained on Large Corpora[A]. In: Proc. Of COLING'92[C].Nantas,France: 1992,454-460.
  • 8Ji Donghong,Gong junping, Huang Changning. Combining a Chinese Thesaurus with a Chinese Dictionary [ A ]. In:Proc. of COLING- ACL 98[C]. 1998,600 - 606.
  • 9Marine Carpuat, Grace Ngai, Pascale Fung and et al. Creating a Bilingual Ontology: A Corpus - Based Approach for Aligning WordNet and HowNet[A] .In: Proceedings of the 1st Global WordNet Conference[C] ,2002.
  • 10陈祖舜,周强,赵强.情境——组织,存放词汇语义知识的恰当框架[J].Computational Linguistics and Chinese Language Processing,2002,7(2):1-36.

共引文献117

同被引文献73

引证文献3

二级引证文献1

相关作者

内容加载中请稍等...

相关机构

内容加载中请稍等...

相关主题

内容加载中请稍等...

浏览历史

内容加载中请稍等...
;
使用帮助 返回顶部