The Failure of Online Social Network Privacy Settings

Michelle Madejski; Maritza Lupe Johnson; Steven Michael Bellovin

The Failure of Online Social Network Privacy Settings
Madejski, Michelle
Johnson, Maritza Lupe
Bellovin, Steven Michael
Technical reports
Computer Science
Persistent URL:
Columbia University Computer Science Technical Reports
Part Number:
Department of Computer Science, Columbia University
Publisher Location:
New York
Increasingly, people are sharing sensitive personal information via online social networks (OSN). While such networks do permit users to control what they share with whom, access control policies are notoriously difficult to configure correctly; this raises the question of whether OSN users' privacy settings match their sharing intentions. We present the results of an empirical evaluation that measures privacy attitudes and intentions and compares these against the privacy settings on Facebook. Our results indicate a serious mismatch: every one of the 65 participants in our study confirmed that at least one of the identified violations was in fact a sharing violation. In other words, OSN users' privacy settings are incorrect. Furthermore, a majority of users cannot or will not fix such errors. We conclude that the current approach to privacy settings is fundamentally flawed and cannot be fixed; a fundamentally different approach is needed. We present recommendations to ameliorate the current problems, as well as provide suggestions for future research.
Computer science
Item views
text | xml
Suggested Citation:
Michelle Madejski, Maritza Lupe Johnson, Steven Michael Bellovin, , The Failure of Online Social Network Privacy Settings, Columbia University Academic Commons, .

Columbia University Libraries | Policies | FAQ