mopri - An Analysis Framework for Unveiling Privacy Violations in Mobile Apps

Fuente: arXiv
Enregistré dans:
Détails bibliographiques
Auteurs principaux: Ziepel, Cornell, Escher, Stephan, Rehms, Sebastian, Köpsell, Stefan
Format: Preprint
Publié: 2026
Sujets:
Accès en ligne:
Tags: Ajouter un tag
Pas de tags, Soyez le premier à ajouter un tag!
_version_ 1866915771621310464
author Ziepel, Cornell
Escher, Stephan
Rehms, Sebastian
Köpsell, Stefan
author_facet Ziepel, Cornell
Escher, Stephan
Rehms, Sebastian
Köpsell, Stefan
contents Everyday services of society increasingly rely on mobile applications, resulting in a conflicting situation between the possibility of participation on the one side and user privacy and digital freedom on the other. In order to protect users' rights to informational self-determination, regulatory approaches for the collection and processing of personal data have been developed, such as the EU's GDPR. However, inspecting the compliance of mobile apps with privacy regulations remains difficult. Thus, in order to enable end users and enforcement bodies to verify and enforce data protection compliance, we propose mopri, a conceptual framework designed for analyzing the behavior of mobile apps through a comprehensive, adaptable, and user-centered approach. Recognizing the gaps in existing frameworks, mopri serves as a foundation for integrating various analysis tools into a streamlined, modular pipeline that employs static and dynamic analysis methods. Building on this concept, a prototype has been developed which effectively extracts permissions and tracking libraries while employing robust methods for dynamic traffic recording and decryption. Additionally, it incorporates result enrichment and reporting features that enhance the clarity and usability of the analysis outcomes. The prototype showcases the feasibility of a holistic and modular approach to privacy analysis, emphasizing the importance of continuous adaptation to the evolving challenges presented by the mobile app ecosystem.
format Preprint
id arxiv_https___arxiv_org_abs_2602_03671
institution arXiv
publishDate 2026
record_format arxiv
spellingShingle mopri - An Analysis Framework for Unveiling Privacy Violations in Mobile Apps
Ziepel, Cornell
Escher, Stephan
Rehms, Sebastian
Köpsell, Stefan
Cryptography and Security
Computers and Society
Everyday services of society increasingly rely on mobile applications, resulting in a conflicting situation between the possibility of participation on the one side and user privacy and digital freedom on the other. In order to protect users' rights to informational self-determination, regulatory approaches for the collection and processing of personal data have been developed, such as the EU's GDPR. However, inspecting the compliance of mobile apps with privacy regulations remains difficult. Thus, in order to enable end users and enforcement bodies to verify and enforce data protection compliance, we propose mopri, a conceptual framework designed for analyzing the behavior of mobile apps through a comprehensive, adaptable, and user-centered approach. Recognizing the gaps in existing frameworks, mopri serves as a foundation for integrating various analysis tools into a streamlined, modular pipeline that employs static and dynamic analysis methods. Building on this concept, a prototype has been developed which effectively extracts permissions and tracking libraries while employing robust methods for dynamic traffic recording and decryption. Additionally, it incorporates result enrichment and reporting features that enhance the clarity and usability of the analysis outcomes. The prototype showcases the feasibility of a holistic and modular approach to privacy analysis, emphasizing the importance of continuous adaptation to the evolving challenges presented by the mobile app ecosystem.
title mopri - An Analysis Framework for Unveiling Privacy Violations in Mobile Apps
topic Cryptography and Security
Computers and Society
url https://arxiv.org/abs/2602.03671