The combination of smart home platforms and automation apps introduces much convenience to smart home users. However, this also brings the potential for privacy leakage. If a smart home platform is permitted to collect all the events of a user day and night, then the platform will learn the behavior patterns of this user before long. In this paper, we investigate how IFTTT, one of the most popular smart home platforms, has the capability of monitoring the daily life of a user in a variety of ways that are hardly noticeable. Moreover, we propose multiple ideas for mitigating privacy leakages, which altogether forms a Filter-and-Fuzz (F&F) process: first, it filters out events unneeded by the IFTTT platform; then, it fuzzes the values and frequencies of the remaining events. We evaluate the F&F process, and the results show that the proposed solution makes IFTTT unable to recognize any of the user's behavior patterns.
翻译:智能家用平台和自动化应用程序的结合为智能家用用户带来了很多便利。 但是, 这还带来了隐私泄漏的可能性。 如果允许智能家用平台日夜收集用户的所有事件, 那么平台将很快了解用户的行为模式。 在本文中, 我们调查最受欢迎的智能家用平台之一IFTT是如何以各种不为人注意的方式监测用户日常生活的。 此外, 我们提出了减少隐私泄漏的多种想法, 而这完全形成了过滤和翻转( F&F) 进程: 首先, 它过滤了IFTTT平台不需要的事件; 然后, 它模糊了剩余事件的值和频率。 我们评估F&F进程, 并且结果显示, 拟议的解决方案使得IFTTT无法识别用户的任何行为模式 。