Yichen Liu (Indiana University Bloomington), Jingwen Yan (Clemson University), Song Liao (Texas Tech University), Long Cheng (Clemson University), Luyi Xing (Indiana University Bloomington)

Privacy compliance has become a significant concern for IoT users as the popularity of diverse IoT devices continues to grow. However, the heterogeneous nature of IoT brings challenges in designing effective privacy-preserving mechanisms. While Matter is a promising unifying connectivity protocol for IoT, it currently offers limited privacy compliance features. In this position paper, we propose the MATTERCOMPLIANCE framework, which achieves privacy compliance by design within the Matter protocol. The design of MATTERCOMPLIANCE follows three principles: providing reliable and proactive privacy disclosure for users, offering interfaces for developers to conveniently integrate privacy mechanisms, and enabling users to manage their privacy settings. By integrating privacy-preserving capabilities in the Matter protocol, MATTERCOMPLIANCE fills the gap in offering a unified solution for privacy compliance in IoT systems.

View More Papers

WIP: Runtime Consistency Enforcement Between SBOM and Software Execution

Yuta Shimamoto (Okayama University, Okayama, Japan), Hiroyuki Uekawa (NTT Social Informatics Laboratories, Tokyo, Japan), Mitsuaki Akiyama (NTT Social Informatics Laboratories, Tokyo, Japan), Toshihiro Yamauchi (Okayama University, Okayama, Japan)

Read More

Modeling End-User Affective Discomfort With Mobile App Permissions Across...

Yuxi Wu (Georgia Institute of Technology and Northeastern University), Jacob Logas (Georgia Institute of Technology), Devansh Ponda (Georgia Institute of Technology), Julia Haines (Google), Jiaming Li (Google), Jeffrey Nichols (Apple), W. Keith Edwards (Georgia Institute of Technology), Sauvik Das (Carnegie Mellon University)

Read More

The Power of Words: A Comprehensive Analysis of Rationales...

Yusra Elbitar (CISPA Helmholtz Center for Information Security), Alexander Hart (CISPA Helmholtz Center for Information Security), Sven Bugiel (CISPA Helmholtz Center for Information Security)

Read More