scholarly journals Neither Denied nor Exposed: Fixing WebRTC Privacy Leaks

2020 ◽  
Vol 12 (5) ◽  
pp. 92
Author(s):  
Alexandros Fakis ◽  
Georgios Karopoulos ◽  
Georgios Kambourakis

To establish peer-to-peer connections and achieve real-time web-based communication, the Web Real-Time Communication (WebRTC) framework requires address information of the communicating peers. This means that users behind, say, Network Address Translation (NAT) or firewalls normally rely on the Interactive Connectivity Establishment (ICE) framework for the sake of negotiating information about the connection and media transferring. This typically involves Session Traversal Utilities for NAT (STUN)/Traversal using Relays around NAT (TURN) servers, which assist the peers with discovering each other’s private and public IP:port, and relay traffic if direct connection fails. Nevertheless, these IP:port pieces of data can be easily captured by anyone who controls the corresponding STUN/TURN server, and even more become readily available to the JavaScript application running on the webpage. While this is acceptable for a user that deliberately initiates a WebRTC connection, it becomes a worrisome privacy issue for those being unaware that such a connection is attempted. Furthermore, the application acquires more information about the local network architecture compared to what is exposed in usual HTTP interactions, where only the public IP is visible. Even though this problem is well-known in the related literature, no practical solution has been proposed so far. To this end, and for the sake of detecting and preventing in real time the execution of STUN/TURN clandestine, privacy-invading requests, we introduce two different kinds of solutions: (a) a browser extension, and (b) an HTTP gateway, implemented in C++ as well as in Golang. Both solutions detect any WebRTC API call before it happens and inform accordingly the end-user about the webpage’s intentions. We meticulously evaluate the proposed schemes in terms of performance and demonstrate that, even in the worst case, the latency introduced is tolerable.

2014 ◽  
Vol 29 (3) ◽  
pp. 591-600 ◽  
Author(s):  
Scott F. Blair ◽  
Jared W. Leighton

Abstract Real-time confirmation of a tornado specified in National Weather Service (NWS) warnings and statements is believed to increase the credibility and urgency of these critical warning messages for the end user, because it represents the greatest degree of certainty that the hazard exists. This timely tornado information disseminated in official NWS products and relayed through multiple sources by private and public partners may help the public believe, personalize, confirm, and respond to the warning message. This is the first study to explicitly assess the frequency of real-time confirmation of ongoing tornadoes within NWS products and explore what unique conditions may facilitate or hinder this process. Tornado reports and their respective NWS warnings and statements during a 5-yr period from 2007 to 2011 across the central contiguous United States were compiled and examined. Overall, 40% of tornadoes were confirmed in NWS products in real time. Increasing tornado pathlength, duration, and intensity subsequently resulted in an increasing likelihood of real-time confirmation prior to the tornado dissipating. The time of day was a factor; nighttime tornadoes were 20% less likely to receive real-time confirmation than daytime events. Additionally, increasing tornado forecast risk in products issued by the Storm Prediction Center corresponded to an increasing likelihood of real-time confirmation. Analysis of these data reveals specific scenarios when tornadoes are more or less likely to be reported in real time, providing some guidance for when timely ground-truth information may or may not be available.


2018 ◽  
Vol 52 (1) ◽  
pp. 18-27 ◽  
Author(s):  
Lisa G. Adams ◽  
John N. Mwaniki ◽  
Salim J. Dabdoub ◽  
Michael G. Adams

AbstractSPLASSH (Student Programs Like Aquatic Science Sampling Headquarters, <ext-link ext-link-type="uri" href="https://splassh.org">https://splassh.org</ext-link>) is a collaborative web-based application that crowdsources environmental data in real time. Originally launched in 2014, SPLASSH beta version 1.0 was designed to showcase water projects conducted by students. Through its development, it has broadened its reach from students to educators (formal and informal), researchers, resource managers, science professionals, and the public (citizen scientists). SPLASSH's beta version 2.0 (Patent Pending) has an innovative, customizable environmental tracker and project management capabilities that foster community building through collaboration. SPLASSH offers the public an opportunity to contribute more than just data to an existing project. It encourages citizens to play a lead role by initiating their own projects, truly validating and broadening the definition of citizen science. Learning and project outcomes will be measured for their impact and effectiveness.


2014 ◽  
Vol 556-562 ◽  
pp. 5700-5704
Author(s):  
Ting Ting Liu

BBS's speech in the public opinion has great impact on students’ emotion. If we can regulate public opinion of university BBS of, and deal with the speech with cross impact on students' moral emotion timely, which can make the BBS having good cross and the interaction impact on students' ideological and moral emotion. In this paper we use the MyEclipse5.1 version to expand the public opinion module of the forum, and use with chasing method to calculate the value of object function in the network public opinion evaluation, and join the moral evaluation module in the network architecture. The main function of this module is to optimize the evaluation process of the forum, realize the real-time evaluation of network public opinion, and eliminate the negative cross influence of network evaluation on students' moral emotion.


Author(s):  
G. Z. Yuzbashieva ◽  
A. M. Mustafayev ◽  
R. A. Imanov

The indicators that determine the change in the macroeconomic situation in the economy of Azerbaijan in 2010–2017, as well as the conditions for increasing the effectiveness of state intervention in solving economic problems are analyzed. It is noted that it is not the size of the public sector that becomes important, but its qualitative component (management and redistribution of resources and revenues, coordination of government intervention in economic relations). The main reasons limiting economic growth are identified, and the mechanisms for overcoming them are disclosed, since economic growth is of particular importance in the transformational period of state development. It substantiates the assertion that the forms and methods of state regulation should be the result of a reasonable combination of the private and public sectors of the economy to more effectively achieve the goal of economic development of the country and increase the welfare of the population. To this end, it is advisable to limit the actions of market forces and find a rational ratio of market and government measures that stimulate economic growth and development.It is shown that in the near future the development of the economy of Azerbaijan should be focused on the transition to the integration of various models of economic transformation; at the same time, “attraction of investments” should be carried out by methods of stimulating consumption, and the concept of a socially oriented economy, which the state also implements, should prevail, thereby ensuring social protection of the population and at the same time developing market relations. Disproportions in regional and sectoral development are also noted, which are the result of an ineffective distribution of goods produced, inadequate investment in human capital, a low level of coordination and stimulation of economic growth and development.


Author(s):  
Jia Hua-Ping ◽  
Zhao Jun-Long ◽  
Liu Jun

Cardiovascular disease is one of the major diseases that threaten the human health. But the existing electrocardiograph (ECG) monitoring system has many limitations in practical application. In order to monitor ECG in real time, a portable ECG monitoring system based on the Android platform is developed to meet the needs of the public. The system uses BMD101 ECG chip to collect and process ECG signals in the Android system, where data storage and waveform display of ECG data can be realized. The Bluetooth HC-07 module is used for ECG data transmission. The abnormal ECG can be judged by P wave, QRS bandwidth, and RR interval. If abnormal ECG is found, an early warning mechanism will be activated to locate the user’s location in real time and send preset short messages, so that the user can get timely treatment, avoiding dangerous occurrence. The monitoring system is convenient and portable, which brings great convenie to the life of ordinary cardiovascular users.


2019 ◽  
Vol 1 (1) ◽  
pp. 33-45
Author(s):  
Rosdiana Rosdiana ◽  
Padeli Padeli ◽  
Revi Sajidah Sri Handayani ◽  
Rifky Alfian

The public service administration system at the government offices of the Kemiri village office in the Kemiri District currently does not have a computerized and integrated system. Because the system runs, residents who submit letters for administrative completeness, still use the Ms.Word / Ms.Excel application. of course has many weaknesses including human error, not neat in file storage, resulting in the lengthy process of searching and making a cover letter and required reports. The analytical method used in this study is to use PIECES (Performance, Informance, Economy, Control, Efficiency, Service) analysis, the design of the model uses UML (Unified Modeling Language). The results of this study are web-based letter information systems at the Office of the Village Chief of Kemiri that can accessed using a local computer browser. Thus the information letter needed by the Kemiri Village community and more effective and efficient in making the letter.


Author(s):  
Peter Knaack

G20 leaders vowed to collect and share OTC derivatives trade data so that regulators can obtain a global picture of market and risk evolution. This chapter employs a network perspective to explain why they have failed to meet this commitment to date. It examines three networks: the OTC derivatives market itself, and those of its private and public governance. The analysis shows that the Financial Stability Board (FSB), the public supervisory entity, struggles to establish itself at the center of the global regulatory network. It failed to act as a first mover in setting global trade identification standards (legal entity identifiers), and it has not been able to establish a core of global data warehouses. This is largely the result of unilateral action by FSB members. In particular, legislators in member countries have undermined FSB-led efforts by refusing to remove legal barriers to transnational regulatory cooperation and, in some instances, by erecting new ones.


Author(s):  
Pierre Pestieau ◽  
Mathieu Lefebvre

This chapter looks at the role of the public versus the private sector in the provision of insurance against social risks. After having discussed the evolution of the role of the family as support in the first place, the specificity of social insurance is emphasized in opposition to private insurance. Figures show the extent of spending on both private and public insurance and the chapter presents economic reasons to why the latter is more developed than the former. Issues related to moral hazard and adverse selection are addressed. The chapter also discusses somewhat more general arguments supporting social insurance such as population ageing, unemployment, fiscal competition and social dumping.


Author(s):  
Robin Holt

The chapter continues to discuss the association of judgment and sovereignty using Franz Kafka’s story Das Urteil (The Judgment). It does so in order to then introduce the public nature of spectating and how this has been played out in the thinking of Jurgen Habermas concerning speech situations, and in Hannah Arendt’s writings on the polis. Rather than pitch the public in contrast to the private, the chapter suggests spectating plays on the binary in ways that enrich both. This coming together of the private and public is then woven into the understanding of strategic inquiry as an organizational forming of self-presentation.


Sign in / Sign up

Export Citation Format

Share Document