Exploring the Unprecedented Privacy Risks of the Metaverse

07/26/2022
by   Vivek Nair, et al.
0

Thirty study participants playtested an innocent-looking "escape room" game in virtual reality (VR). Behind the scenes, an adversarial program had accurately inferred over 25 personal data attributes, from anthropometrics like height and wingspan to demographics like age and gender, within just a few minutes of gameplay. As notoriously data-hungry companies become increasingly involved in VR development, this experimental scenario may soon represent a typical VR user experience. While virtual telepresence applications (and the so-called "metaverse") have recently received increased attention and investment from major tech firms, these environments remain relatively under-studied from a security and privacy standpoint. In this work, we illustrate how VR attackers can covertly ascertain dozens of personal data attributes from seemingly-anonymous users of popular metaverse applications like VRChat. These attackers can be as simple as other VR users without special privilege, and the potential scale and scope of this data collection far exceed what is feasible within traditional mobile and web applications. We aim to shed light on the unique privacy risks of the metaverse, and provide the first holistic framework for understanding intrusive data harvesting attacks in these emerging VR ecosystems.

READ FULL TEXT

page 3

page 4

page 5

page 6

page 7

page 14

page 15

page 16

research
03/02/2023

A Large-Scale Study of Personal Identifiability of Virtual Reality Motion Over Time

In recent years, social virtual reality (VR), sometimes described as the...
research
08/11/2022

Going Incognito in the Metaverse

Virtual reality (VR) telepresence applications and the so-called "metave...
research
01/14/2023

SoK: Data Privacy in Virtual Reality

The adoption of virtual reality (VR) technologies has rapidly gained mom...
research
08/13/2023

Towards Modeling Software Quality of Virtual Reality Applications from Users' Perspectives

Virtual Reality (VR) technology has become increasingly popular in recen...
research
06/09/2021

Auditing Network Traffic and Privacy Policies in Oculus VR

Virtual reality (VR) is an emerging technology that enables new applicat...
research
08/24/2021

HapticBots: Distributed Encountered-type Haptics for VR with Multiple Shape-changing Mobile Robots

HapticBots introduces a novel encountered-type haptic approach for Virtu...
research
03/08/2022

Metaverse: Security and Privacy Concerns

The term "metaverse", a three-dimensional virtual universe similar to th...

Please sign up or login with your details

Forgot password? Click here to reset