{"id":"https://openalex.org/W3207144569","doi":"https://doi.org/10.3390/jcp1040030","title":"A Security and Privacy Scoring System for Contact Tracing Apps","display_name":"A Security and Privacy Scoring System for Contact Tracing Apps","publication_year":2021,"publication_date":"2021-10-14","ids":{"openalex":"https://openalex.org/W3207144569","doi":"https://doi.org/10.3390/jcp1040030","mag":"3207144569"},"language":"en","primary_location":{"id":"doi:10.3390/jcp1040030","is_oa":true,"landing_page_url":"https://doi.org/10.3390/jcp1040030","pdf_url":"https://www.mdpi.com/2624-800X/1/4/30/pdf?version=1637808282","source":{"id":"https://openalex.org/S4210232532","display_name":"Journal of Cybersecurity and Privacy","issn_l":"2624-800X","issn":["2624-800X"],"is_oa":true,"is_in_doaj":true,"is_core":true,"host_organization":"https://openalex.org/P4310310987","host_organization_name":"Multidisciplinary Digital Publishing Institute","host_organization_lineage":["https://openalex.org/P4310310987"],"host_organization_lineage_names":["Multidisciplinary Digital Publishing Institute"],"type":"journal"},"license":"cc-by","license_id":"https://openalex.org/licenses/cc-by","version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Journal of Cybersecurity and Privacy","raw_type":"journal-article"},"type":"article","indexed_in":["crossref","doaj"],"open_access":{"is_oa":true,"oa_status":"gold","oa_url":"https://www.mdpi.com/2624-800X/1/4/30/pdf?version=1637808282","any_repository_has_fulltext":true},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5000161395","display_name":"Leah Krehling","orcid":null},"institutions":[{"id":"https://openalex.org/I125749732","display_name":"Western University","ror":"https://ror.org/02grkyz14","country_code":"CA","type":"education","lineage":["https://openalex.org/I125749732"]}],"countries":["CA"],"is_corresponding":false,"raw_author_name":"Leah Krehling","raw_affiliation_strings":["The Department of Electrical and Computer Engineering, University of Western Ontario, London, ON N6A 3K7, Canada"],"raw_orcid":null,"affiliations":[{"raw_affiliation_string":"The Department of Electrical and Computer Engineering, University of Western Ontario, London, ON N6A 3K7, Canada","institution_ids":["https://openalex.org/I125749732"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5028781351","display_name":"Aleksander Essex","orcid":"https://orcid.org/0000-0002-0228-0371"},"institutions":[{"id":"https://openalex.org/I125749732","display_name":"Western University","ror":"https://ror.org/02grkyz14","country_code":"CA","type":"education","lineage":["https://openalex.org/I125749732"]}],"countries":["CA"],"is_corresponding":true,"raw_author_name":"Aleksander Essex","raw_affiliation_strings":["The Department of Electrical and Computer Engineering, University of Western Ontario, London, ON N6A 3K7, Canada"],"raw_orcid":"https://orcid.org/0000-0002-0228-0371","affiliations":[{"raw_affiliation_string":"The Department of Electrical and Computer Engineering, University of Western Ontario, London, ON N6A 3K7, Canada","institution_ids":["https://openalex.org/I125749732"]}]}],"institutions":[],"countries_distinct_count":1,"institutions_distinct_count":2,"corresponding_author_ids":["https://openalex.org/A5028781351"],"corresponding_institution_ids":["https://openalex.org/I125749732"],"apc_list":{"value":1000,"currency":"CHF","value_usd":1082},"apc_paid":{"value":1000,"currency":"CHF","value_usd":1082},"fwci":3.4169,"has_fulltext":true,"cited_by_count":13,"citation_normalized_percentile":{"value":0.93383577,"is_in_top_1_percent":false,"is_in_top_10_percent":true},"cited_by_percentile_year":{"min":95,"max":98},"biblio":{"volume":"1","issue":"4","first_page":"597","last_page":"614"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T12943","display_name":"COVID-19 Digital Contact Tracing","score":0.9993000030517578,"subfield":{"id":"https://openalex.org/subfields/1710","display_name":"Information Systems"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T12943","display_name":"COVID-19 Digital Contact Tracing","score":0.9993000030517578,"subfield":{"id":"https://openalex.org/subfields/1710","display_name":"Information Systems"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11045","display_name":"Privacy, Security, and Data Protection","score":0.9922999739646912,"subfield":{"id":"https://openalex.org/subfields/3312","display_name":"Sociology and Political Science"},"field":{"id":"https://openalex.org/fields/33","display_name":"Social Sciences"},"domain":{"id":"https://openalex.org/domains/2","display_name":"Social Sciences"}},{"id":"https://openalex.org/T11446","display_name":"Mobile Health and mHealth Applications","score":0.9370999932289124,"subfield":{"id":"https://openalex.org/subfields/3600","display_name":"General Health Professions"},"field":{"id":"https://openalex.org/fields/36","display_name":"Health Professions"},"domain":{"id":"https://openalex.org/domains/4","display_name":"Health Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.69099360704422},{"id":"https://openalex.org/keywords/computer-security","display_name":"Computer security","score":0.6644192934036255},{"id":"https://openalex.org/keywords/internet-privacy","display_name":"Internet privacy","score":0.5556238293647766},{"id":"https://openalex.org/keywords/tracing","display_name":"Tracing","score":0.5365766286849976},{"id":"https://openalex.org/keywords/contact-tracing","display_name":"Contact tracing","score":0.4663630723953247},{"id":"https://openalex.org/keywords/vulnerability","display_name":"Vulnerability (computing)","score":0.44464343786239624},{"id":"https://openalex.org/keywords/bluetooth","display_name":"Bluetooth","score":0.4409669041633606},{"id":"https://openalex.org/keywords/coronavirus-disease-2019","display_name":"Coronavirus disease 2019 (COVID-19)","score":0.1335216462612152},{"id":"https://openalex.org/keywords/wireless","display_name":"Wireless","score":0.11475023627281189}],"concepts":[{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.69099360704422},{"id":"https://openalex.org/C38652104","wikidata":"https://www.wikidata.org/wiki/Q3510521","display_name":"Computer security","level":1,"score":0.6644192934036255},{"id":"https://openalex.org/C108827166","wikidata":"https://www.wikidata.org/wiki/Q175975","display_name":"Internet privacy","level":1,"score":0.5556238293647766},{"id":"https://openalex.org/C138673069","wikidata":"https://www.wikidata.org/wiki/Q322229","display_name":"Tracing","level":2,"score":0.5365766286849976},{"id":"https://openalex.org/C113162765","wikidata":"https://www.wikidata.org/wiki/Q1128437","display_name":"Contact tracing","level":5,"score":0.4663630723953247},{"id":"https://openalex.org/C95713431","wikidata":"https://www.wikidata.org/wiki/Q631425","display_name":"Vulnerability (computing)","level":2,"score":0.44464343786239624},{"id":"https://openalex.org/C546215728","wikidata":"https://www.wikidata.org/wiki/Q39531","display_name":"Bluetooth","level":3,"score":0.4409669041633606},{"id":"https://openalex.org/C3008058167","wikidata":"https://www.wikidata.org/wiki/Q84263196","display_name":"Coronavirus disease 2019 (COVID-19)","level":4,"score":0.1335216462612152},{"id":"https://openalex.org/C555944384","wikidata":"https://www.wikidata.org/wiki/Q249","display_name":"Wireless","level":2,"score":0.11475023627281189},{"id":"https://openalex.org/C2779134260","wikidata":"https://www.wikidata.org/wiki/Q12136","display_name":"Disease","level":2,"score":0.0},{"id":"https://openalex.org/C111919701","wikidata":"https://www.wikidata.org/wiki/Q9135","display_name":"Operating system","level":1,"score":0.0},{"id":"https://openalex.org/C71924100","wikidata":"https://www.wikidata.org/wiki/Q11190","display_name":"Medicine","level":0,"score":0.0},{"id":"https://openalex.org/C524204448","wikidata":"https://www.wikidata.org/wiki/Q788926","display_name":"Infectious disease (medical specialty)","level":3,"score":0.0},{"id":"https://openalex.org/C142724271","wikidata":"https://www.wikidata.org/wiki/Q7208","display_name":"Pathology","level":1,"score":0.0},{"id":"https://openalex.org/C76155785","wikidata":"https://www.wikidata.org/wiki/Q418","display_name":"Telecommunications","level":1,"score":0.0}],"mesh":[],"locations_count":2,"locations":[{"id":"doi:10.3390/jcp1040030","is_oa":true,"landing_page_url":"https://doi.org/10.3390/jcp1040030","pdf_url":"https://www.mdpi.com/2624-800X/1/4/30/pdf?version=1637808282","source":{"id":"https://openalex.org/S4210232532","display_name":"Journal of Cybersecurity and Privacy","issn_l":"2624-800X","issn":["2624-800X"],"is_oa":true,"is_in_doaj":true,"is_core":true,"host_organization":"https://openalex.org/P4310310987","host_organization_name":"Multidisciplinary Digital Publishing Institute","host_organization_lineage":["https://openalex.org/P4310310987"],"host_organization_lineage_names":["Multidisciplinary Digital Publishing Institute"],"type":"journal"},"license":"cc-by","license_id":"https://openalex.org/licenses/cc-by","version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Journal of Cybersecurity and Privacy","raw_type":"journal-article"},{"id":"pmh:oai:doaj.org/article:905a15de8c704d2589232b6f32dbbfd6","is_oa":true,"landing_page_url":"https://doaj.org/article/905a15de8c704d2589232b6f32dbbfd6","pdf_url":null,"source":{"id":"https://openalex.org/S112646816","display_name":"SHILAP Revista de lepidopterolog\u00eda","issn_l":"0300-5267","issn":["0300-5267","2340-4078"],"is_oa":true,"is_in_doaj":true,"is_core":false,"host_organization":null,"host_organization_name":null,"host_organization_lineage":[],"host_organization_lineage_names":[],"type":"journal"},"license":"cc-by-sa","license_id":"https://openalex.org/licenses/cc-by-sa","version":"submittedVersion","is_accepted":false,"is_published":false,"raw_source_name":"Journal of Cybersecurity and Privacy, Vol 1, Iss 4, Pp 597-614 (2021)","raw_type":"article"}],"best_oa_location":{"id":"doi:10.3390/jcp1040030","is_oa":true,"landing_page_url":"https://doi.org/10.3390/jcp1040030","pdf_url":"https://www.mdpi.com/2624-800X/1/4/30/pdf?version=1637808282","source":{"id":"https://openalex.org/S4210232532","display_name":"Journal of Cybersecurity and Privacy","issn_l":"2624-800X","issn":["2624-800X"],"is_oa":true,"is_in_doaj":true,"is_core":true,"host_organization":"https://openalex.org/P4310310987","host_organization_name":"Multidisciplinary Digital Publishing Institute","host_organization_lineage":["https://openalex.org/P4310310987"],"host_organization_lineage_names":["Multidisciplinary Digital Publishing Institute"],"type":"journal"},"license":"cc-by","license_id":"https://openalex.org/licenses/cc-by","version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Journal of Cybersecurity and Privacy","raw_type":"journal-article"},"sustainable_development_goals":[{"display_name":"Peace, Justice and strong institutions","score":0.4699999988079071,"id":"https://metadata.un.org/sdg/16"}],"awards":[],"funders":[],"has_content":{"pdf":true,"grobid_xml":true},"content_urls":{"pdf":"https://content.openalex.org/works/W3207144569.pdf","grobid_xml":"https://content.openalex.org/works/W3207144569.grobid-xml"},"referenced_works_count":6,"referenced_works":["https://openalex.org/W1484798037","https://openalex.org/W1496211266","https://openalex.org/W2906952093","https://openalex.org/W3138470817","https://openalex.org/W3207144569","https://openalex.org/W4230005434"],"related_works":["https://openalex.org/W4220926637","https://openalex.org/W2362681120","https://openalex.org/W4376643979","https://openalex.org/W2376320007","https://openalex.org/W3158100496","https://openalex.org/W2170160357","https://openalex.org/W4287554683","https://openalex.org/W2012140923","https://openalex.org/W2379871682","https://openalex.org/W3215370305"],"abstract_inverted_index":{"Contact":[0],"tracing":[1,104],"applications":[2],"have":[3,10,41],"flooded":[4],"the":[5,85,89,126,181,186,204,208,218,229],"marketplace,":[6],"as":[7,105,185],"governments":[8],"worldwide":[9],"been":[11,42],"working":[12],"to":[13,26,48,56,69,82,120,124],"release":[14],"apps":[15,20,163],"for":[16,74,102,108,188,217,228],"their":[17,54,110,189,201],"citizens.":[18],"These":[19],"use":[21],"a":[22,45,71,106,122,166],"variety":[23],"of":[24,128,169,210,222],"protocols":[25,51],"perform":[27],"contact":[28],"tracing,":[29],"resulting":[30],"in":[31,151,155,203],"widely":[32],"differing":[33],"security":[34,127,152],"and":[35,39,52,62,76,144,153,174,214,233],"privacy":[36,75,112,143],"assurances.":[37],"Governments":[38],"users":[40,239],"left":[43],"without":[44],"standard":[46],"metric":[47,73],"weigh":[49],"these":[50],"compare":[53,125],"assurances":[55],"know":[57],"which":[58],"are":[59,66],"more":[60],"private":[61],"secure.":[63],"Although":[64],"there":[65],"many":[67],"ways":[68],"approach":[70],"quantitative":[72],"security,":[77,115,145],"one":[78],"natural":[79],"way":[80],"is":[81],"draw":[83],"on":[84,158],"methodology":[86],"used":[87,180],"by":[88],"well-known":[90],"common":[91],"vulnerability":[92],"scoring":[93],"system":[94],"(CVSS).":[95],"For":[96,114],"privacy,":[97,194],"we":[98,116,195],"applied":[99],"consensus":[100],"principles":[101],"contract":[103],"basis":[107,187],"comparing":[109],"relative":[111],"practices.":[113],"performed":[117],"attack":[118],"modeling":[119],"develop":[121],"rubric":[123],"respective":[129],"apps.":[130],"Our":[131],"analysis":[132],"shows":[133],"that":[134,197,238],"centralized":[135],"Bluetooth":[136],"with":[137],"added":[138],"location":[139],"functionality":[140],"has":[141],"low":[142],"while":[146],"non-streaming":[147],"GPS":[148],"scored":[149],"high":[150,167],"medium":[154],"privacy.":[156],"Based":[157],"our":[159],"methodology,":[160],"only":[161,224],"two":[162],"were":[164],"given":[165],"ranking":[168],"privacy:":[170],"Canada\u2019s":[171],"Covid":[172],"Alert":[173],"Germany\u2019s":[175],"Corona":[176],"Warn-App.":[177],"They":[178],"both":[179],"Google/Apple":[182],"Notification":[183],"Framework":[184],"design.":[190],"To":[191],"achieve":[192],"comparable":[193],"recommend":[196],"future":[198],"projects":[199],"follow":[200],"examples":[202],"following":[205],"ways:":[206],"minimizing":[207],"amount":[209],"data":[211],"they":[212],"collect":[213],"holding":[215],"it":[216],"shortest":[219],"possible":[220],"length":[221],"time;":[223],"having":[225],"features":[226],"necessary":[227],"app\u2019s":[230],"main":[231],"function;":[232],"releasing":[234],"design":[235],"details":[236],"so":[237],"can":[240],"make":[241],"informed":[242],"decisions.":[243]},"counts_by_year":[{"year":2026,"cited_by_count":1},{"year":2023,"cited_by_count":3},{"year":2022,"cited_by_count":6},{"year":2021,"cited_by_count":3}],"updated_date":"2026-01-09T23:09:53.351390","created_date":"2021-10-25T00:00:00"}
