{"id":"https://openalex.org/W4408609782","doi":"https://doi.org/10.1109/tse.2025.3553283","title":"An Empirical Study on Meta Virtual Reality Applications: Security and Privacy Perspectives","display_name":"An Empirical Study on Meta Virtual Reality Applications: Security and Privacy Perspectives","publication_year":2025,"publication_date":"2025-03-19","ids":{"openalex":"https://openalex.org/W4408609782","doi":"https://doi.org/10.1109/tse.2025.3553283"},"language":"en","primary_location":{"id":"doi:10.1109/tse.2025.3553283","is_oa":false,"landing_page_url":"https://doi.org/10.1109/tse.2025.3553283","pdf_url":null,"source":{"id":"https://openalex.org/S8351582","display_name":"IEEE Transactions on Software Engineering","issn_l":"0098-5589","issn":["0098-5589","1939-3520","2326-3881"],"is_oa":false,"is_in_doaj":false,"is_core":true,"host_organization":"https://openalex.org/P4310320439","host_organization_name":"IEEE Computer Society","host_organization_lineage":["https://openalex.org/P4310320439","https://openalex.org/P4310319808"],"host_organization_lineage_names":["IEEE Computer Society","Institute of Electrical and Electronics Engineers"],"type":"journal"},"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"IEEE Transactions on Software Engineering","raw_type":"journal-article"},"type":"article","indexed_in":["crossref"],"open_access":{"is_oa":false,"oa_status":"closed","oa_url":null,"any_repository_has_fulltext":false},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5050963307","display_name":"Hanyang Guo","orcid":"https://orcid.org/0000-0002-5687-2655"},"institutions":[{"id":"https://openalex.org/I141568987","display_name":"Hong Kong Baptist University","ror":"https://ror.org/0145fw131","country_code":"HK","type":"education","lineage":["https://openalex.org/I141568987"]}],"countries":["HK"],"is_corresponding":true,"raw_author_name":"Hanyang Guo","raw_affiliation_strings":["Department of Computer Science, Hong Kong Baptist University, Hong Kong, China"],"affiliations":[{"raw_affiliation_string":"Department of Computer Science, Hong Kong Baptist University, Hong Kong, China","institution_ids":["https://openalex.org/I141568987"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5072659343","display_name":"Hong\u2010Ning Dai","orcid":"https://orcid.org/0000-0001-6165-4196"},"institutions":[{"id":"https://openalex.org/I141568987","display_name":"Hong Kong Baptist University","ror":"https://ror.org/0145fw131","country_code":"HK","type":"education","lineage":["https://openalex.org/I141568987"]}],"countries":["HK"],"is_corresponding":false,"raw_author_name":"Hong-Ning Dai","raw_affiliation_strings":["Department of Computer Science, Hong Kong Baptist University, Hong Kong, China"],"affiliations":[{"raw_affiliation_string":"Department of Computer Science, Hong Kong Baptist University, Hong Kong, China","institution_ids":["https://openalex.org/I141568987"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5100400376","display_name":"Xiapu Luo","orcid":"https://orcid.org/0000-0002-9082-3208"},"institutions":[{"id":"https://openalex.org/I14243506","display_name":"Hong Kong Polytechnic University","ror":"https://ror.org/0030zas98","country_code":"HK","type":"education","lineage":["https://openalex.org/I14243506"]}],"countries":["HK"],"is_corresponding":false,"raw_author_name":"Xiapu Luo","raw_affiliation_strings":["Department of Computing, The Hong Kong Polytechnic University, Hong Kong, China"],"affiliations":[{"raw_affiliation_string":"Department of Computing, The Hong Kong Polytechnic University, Hong Kong, China","institution_ids":["https://openalex.org/I14243506"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5102620922","display_name":"Gengyang Xu","orcid":null},"institutions":[{"id":"https://openalex.org/I141568987","display_name":"Hong Kong Baptist University","ror":"https://ror.org/0145fw131","country_code":"HK","type":"education","lineage":["https://openalex.org/I141568987"]}],"countries":["HK"],"is_corresponding":false,"raw_author_name":"Gengyang Xu","raw_affiliation_strings":["Department of Computer Science, Hong Kong Baptist University, Hong Kong, China"],"affiliations":[{"raw_affiliation_string":"Department of Computer Science, Hong Kong Baptist University, Hong Kong, China","institution_ids":["https://openalex.org/I141568987"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5111134287","display_name":"Fengliang He","orcid":null},"institutions":[{"id":"https://openalex.org/I141568987","display_name":"Hong Kong Baptist University","ror":"https://ror.org/0145fw131","country_code":"HK","type":"education","lineage":["https://openalex.org/I141568987"]}],"countries":["HK"],"is_corresponding":false,"raw_author_name":"Fengliang He","raw_affiliation_strings":["Department of Computer Science, Hong Kong Baptist University, Hong Kong, China"],"affiliations":[{"raw_affiliation_string":"Department of Computer Science, Hong Kong Baptist University, Hong Kong, China","institution_ids":["https://openalex.org/I141568987"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5012731436","display_name":"Zibin Zheng","orcid":"https://orcid.org/0000-0001-7872-7718"},"institutions":[{"id":"https://openalex.org/I157773358","display_name":"Sun Yat-sen University","ror":"https://ror.org/0064kty71","country_code":"CN","type":"education","lineage":["https://openalex.org/I157773358"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Zibin Zheng","raw_affiliation_strings":["School of Software Engineering, Sun Yat-sen University, Zhuhai, China"],"affiliations":[{"raw_affiliation_string":"School of Software Engineering, Sun Yat-sen University, Zhuhai, China","institution_ids":["https://openalex.org/I157773358"]}]}],"institutions":[],"countries_distinct_count":2,"institutions_distinct_count":6,"corresponding_author_ids":["https://openalex.org/A5050963307"],"corresponding_institution_ids":["https://openalex.org/I141568987"],"apc_list":null,"apc_paid":null,"fwci":15.424,"has_fulltext":false,"cited_by_count":5,"citation_normalized_percentile":{"value":0.98483821,"is_in_top_1_percent":false,"is_in_top_10_percent":true},"cited_by_percentile_year":{"min":96,"max":99},"biblio":{"volume":"51","issue":"5","first_page":"1437","last_page":"1454"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T13243","display_name":"Innovation in Digital Healthcare Systems","score":0.953499972820282,"subfield":{"id":"https://openalex.org/subfields/3605","display_name":"Health Information Management"},"field":{"id":"https://openalex.org/fields/36","display_name":"Health Professions"},"domain":{"id":"https://openalex.org/domains/4","display_name":"Health Sciences"}},"topics":[{"id":"https://openalex.org/T13243","display_name":"Innovation in Digital Healthcare Systems","score":0.953499972820282,"subfield":{"id":"https://openalex.org/subfields/3605","display_name":"Health Information Management"},"field":{"id":"https://openalex.org/fields/36","display_name":"Health Professions"},"domain":{"id":"https://openalex.org/domains/4","display_name":"Health Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.8583811521530151},{"id":"https://openalex.org/keywords/computer-security","display_name":"Computer security","score":0.5110210180282593},{"id":"https://openalex.org/keywords/empirical-research","display_name":"Empirical research","score":0.46088147163391113},{"id":"https://openalex.org/keywords/virtual-reality","display_name":"Virtual reality","score":0.4603334367275238},{"id":"https://openalex.org/keywords/information-privacy","display_name":"Information privacy","score":0.4214734733104706},{"id":"https://openalex.org/keywords/data-science","display_name":"Data science","score":0.36185991764068604},{"id":"https://openalex.org/keywords/internet-privacy","display_name":"Internet privacy","score":0.32677245140075684},{"id":"https://openalex.org/keywords/human\u2013computer-interaction","display_name":"Human\u2013computer interaction","score":0.26600968837738037}],"concepts":[{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.8583811521530151},{"id":"https://openalex.org/C38652104","wikidata":"https://www.wikidata.org/wiki/Q3510521","display_name":"Computer security","level":1,"score":0.5110210180282593},{"id":"https://openalex.org/C120936955","wikidata":"https://www.wikidata.org/wiki/Q2155640","display_name":"Empirical research","level":2,"score":0.46088147163391113},{"id":"https://openalex.org/C194969405","wikidata":"https://www.wikidata.org/wiki/Q170519","display_name":"Virtual reality","level":2,"score":0.4603334367275238},{"id":"https://openalex.org/C123201435","wikidata":"https://www.wikidata.org/wiki/Q456632","display_name":"Information privacy","level":2,"score":0.4214734733104706},{"id":"https://openalex.org/C2522767166","wikidata":"https://www.wikidata.org/wiki/Q2374463","display_name":"Data science","level":1,"score":0.36185991764068604},{"id":"https://openalex.org/C108827166","wikidata":"https://www.wikidata.org/wiki/Q175975","display_name":"Internet privacy","level":1,"score":0.32677245140075684},{"id":"https://openalex.org/C107457646","wikidata":"https://www.wikidata.org/wiki/Q207434","display_name":"Human\u2013computer interaction","level":1,"score":0.26600968837738037},{"id":"https://openalex.org/C111472728","wikidata":"https://www.wikidata.org/wiki/Q9471","display_name":"Epistemology","level":1,"score":0.0},{"id":"https://openalex.org/C138885662","wikidata":"https://www.wikidata.org/wiki/Q5891","display_name":"Philosophy","level":0,"score":0.0}],"mesh":[],"locations_count":1,"locations":[{"id":"doi:10.1109/tse.2025.3553283","is_oa":false,"landing_page_url":"https://doi.org/10.1109/tse.2025.3553283","pdf_url":null,"source":{"id":"https://openalex.org/S8351582","display_name":"IEEE Transactions on Software Engineering","issn_l":"0098-5589","issn":["0098-5589","1939-3520","2326-3881"],"is_oa":false,"is_in_doaj":false,"is_core":true,"host_organization":"https://openalex.org/P4310320439","host_organization_name":"IEEE Computer Society","host_organization_lineage":["https://openalex.org/P4310320439","https://openalex.org/P4310319808"],"host_organization_lineage_names":["IEEE Computer Society","Institute of Electrical and Electronics Engineers"],"type":"journal"},"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"IEEE Transactions on Software Engineering","raw_type":"journal-article"}],"best_oa_location":null,"sustainable_development_goals":[{"id":"https://metadata.un.org/sdg/10","score":0.46000000834465027,"display_name":"Reduced inequalities"}],"awards":[],"funders":[],"has_content":{"pdf":false,"grobid_xml":false},"content_urls":null,"referenced_works_count":69,"referenced_works":["https://openalex.org/W2067081213","https://openalex.org/W2084864601","https://openalex.org/W2088944946","https://openalex.org/W2100385966","https://openalex.org/W2114381667","https://openalex.org/W2140095007","https://openalex.org/W2166743230","https://openalex.org/W2248263802","https://openalex.org/W2314464932","https://openalex.org/W2320204756","https://openalex.org/W2400269587","https://openalex.org/W2514626402","https://openalex.org/W2532717356","https://openalex.org/W2603382267","https://openalex.org/W2613084287","https://openalex.org/W2618014206","https://openalex.org/W2728910784","https://openalex.org/W2789713441","https://openalex.org/W2809379468","https://openalex.org/W2885553494","https://openalex.org/W2911560572","https://openalex.org/W2912135847","https://openalex.org/W2912208904","https://openalex.org/W2933817227","https://openalex.org/W2933955319","https://openalex.org/W2936448087","https://openalex.org/W2944393316","https://openalex.org/W2950367216","https://openalex.org/W2963826402","https://openalex.org/W2995340752","https://openalex.org/W3002424663","https://openalex.org/W3016972006","https://openalex.org/W3045502942","https://openalex.org/W3090522550","https://openalex.org/W3102754077","https://openalex.org/W3112086075","https://openalex.org/W3114045853","https://openalex.org/W3163673547","https://openalex.org/W3183619015","https://openalex.org/W3196201577","https://openalex.org/W3212310756","https://openalex.org/W4206462734","https://openalex.org/W4206484811","https://openalex.org/W4211092666","https://openalex.org/W4224230548","https://openalex.org/W4230005434","https://openalex.org/W4246237463","https://openalex.org/W4255044316","https://openalex.org/W4283375988","https://openalex.org/W4285811653","https://openalex.org/W4292714200","https://openalex.org/W4296746025","https://openalex.org/W4296983654","https://openalex.org/W4309484364","https://openalex.org/W4312546215","https://openalex.org/W4313563619","https://openalex.org/W4315562192","https://openalex.org/W4320525735","https://openalex.org/W4385187265","https://openalex.org/W4394769792","https://openalex.org/W6628260133","https://openalex.org/W6764197484","https://openalex.org/W6766222326","https://openalex.org/W6781783938","https://openalex.org/W6781924498","https://openalex.org/W6790477851","https://openalex.org/W6796132136","https://openalex.org/W6801750132","https://openalex.org/W6803886546"],"related_works":["https://openalex.org/W2584827882","https://openalex.org/W3195097297","https://openalex.org/W4225340788","https://openalex.org/W3038106605","https://openalex.org/W2513267613","https://openalex.org/W3049084372","https://openalex.org/W2528109871","https://openalex.org/W2940702331","https://openalex.org/W2905822832","https://openalex.org/W2240244939"],"abstract_inverted_index":{"Virtual":[0],"Reality":[1],"(VR)":[2],"has":[3,167],"accelerated":[4],"its":[5],"prevalent":[6],"adoption":[7],"in":[8,58,254,264],"emerging":[9],"metaverse":[10],"applications,":[11],"but":[12],"it":[13],"is":[14],"not":[15,134],"a":[16,39,151,183,244],"fundamentally":[17],"new":[18],"technology.":[19],"On":[20,54],"the":[21,55,87,140,158,178,194,198,210,217,265,274,279,283,305],"one":[22],"hand,":[23,57],"most":[24],"VR":[25,41,64,73,100,144,162,190,226,229,255,309],"operating":[26],"systems":[27],"(OS)":[28],"are":[29],"based":[30],"on":[31,187,298],"off-the-shelf":[32],"mobile":[33,52,62],"OS":[34],"(e.g.,":[35,94,110],"Android":[36,205],"OS).":[37],"As":[38],"result,":[40],"apps":[42,65,101,196,227,270],"also":[43,113,260,288],"inevitably":[44],"inherit":[45],"privacy":[46,125,154,221,234,250,266,291],"and":[47,81,96,127,153,173,203,220,237,249,271],"security":[48,116,128,152,218,247],"deficiencies":[49],"from":[50,197],"conventional":[51],"apps.":[53,145,163,191,256,284,310],"other":[56],"contrast":[59],"to":[60,139],"traditional":[61],"apps,":[63],"can":[66],"achieve":[67],"an":[68],"immersive":[69],"experience":[70],"via":[71,209],"diverse":[72,143],"devices,":[74],"such":[75],"as":[76],"head-mounted":[77],"displays,":[78],"body":[79],"sensors,":[80],"controllers.":[82],"However,":[83],"achieving":[84],"this":[85,147],"requires":[86],"extensive":[88],"collection":[89,277],"of":[90,120,142,224,246,268,273,282,308],"privacy-sensitive":[91],"human":[92],"biometrics":[93],"hand-tracking":[95],"face-tracking":[97],"data).":[98],"Moreover,":[99,257],"have":[102,133],"been":[103],"typically":[104],"implemented":[105],"by":[106],"3D":[107],"gaming":[108],"engines":[109],"Unity),":[111],"which":[112],"contain":[114],"intrinsic":[115],"vulnerabilities.":[117],"Inappropriate":[118],"use":[119],"these":[121,131,225,269,299],"technologies":[122],"may":[123],"incur":[124],"leaks":[126,223,251],"vulnerabilities":[129,219,248],"although":[130],"issues":[132],"received":[135],"significant":[136],"attention":[137],"compared":[138],"proliferation":[141],"In":[146],"paper,":[148],"we":[149,181,301],"develop":[150],"assessment":[155],"tool,":[156],"namely":[157],"VR-SP":[159,165,179],"detector":[160,166],"for":[161,304],"The":[164],"integrated":[168],"program":[169],"static":[170],"analysis":[171,175],"tools":[172],"privacy-policy":[174,280],"methods.":[176],"Using":[177],"detector,":[180],"conduct":[182],"comprehensive":[184],"empirical":[185],"study":[186],"900":[188],"popular":[189,199],"We":[192,215,241],"obtain":[193],"original":[195],"SideQuest":[200],"app":[201,230],"store":[202],"extract":[204],"PacKage":[206],"(APK)":[207],"files":[208],"Meta":[211],"Quest":[212],"2":[213],"device.":[214],"evaluate":[216],"data":[222,276],"through":[228],"analysis,":[231,233,236],"taint":[232],"policy":[235],"user":[238,286],"review":[239],"analysis.":[240],"find":[242],"that":[243],"number":[245],"widely":[252],"exist":[253],"our":[258],"results":[259],"reveal":[261],"conflicting":[262],"representations":[263],"policies":[267],"inconsistencies":[272],"actual":[275],"with":[278],"statements":[281],"Further,":[285],"reviews":[287],"indicate":[289],"their":[290],"concerns":[292],"about":[293],"relevant":[294],"biometric":[295],"data.":[296],"Based":[297],"findings,":[300],"make":[302],"suggestions":[303],"future":[306],"development":[307]},"counts_by_year":[{"year":2026,"cited_by_count":2},{"year":2025,"cited_by_count":3}],"updated_date":"2026-03-20T23:20:44.827607","created_date":"2025-10-10T00:00:00"}
