Classification of Privacy Violations in Android Application Permissions Using Decision Tree and RapidMiner: A Cyberlaw Perspective

Authors

  • Hafiz Rahmad Putra Universitas Bina Sarana Informatika
  • Guntur Arya Suta Universitas Bina Sarana Informatika
  • Dani Izzudiin Universitas Bina Sarana Informatika
  • Amalya Patria Ika Universitas Bina Sarana Informatika
  • Besus Maulana Sulthon Universitas Bina Sarana Informatika

DOI:

https://doi.org/10.59890/ijasr.v4i7.260

Keywords:

Android, Decision Tree, Data Privacy, Permission Analysis, UU PDP, Cyberlaw

Abstract

The rapid growth of Android-based mobile applications in the travel and tourism sector has significantly increased the volume of personal data processed, raising critical concerns regarding privacy violations and over-privileged application behavior. This research aims to classify privacy violations in Android travel application permissions by integrating computational data mining and normative juridical analysis. Using a dataset of 28,771 AndroidManifest.xml metadata files, the Decision Tree algorithm was implemented through the RapidMiner platform using 10-Fold Cross Validation. The experimental results achieved an accuracy of 67.55%, indicating that modern malware often mimics the permission patterns of legitimate applications, making static classification challenging. Extracted decision rules revealed specific "Stealth Malware" patterns and aggressive tracking combinations that bypass standard user awareness. From a cyberlaw perspective, these findings indicate that current permission-based consent mechanisms are insufficient and often conflict with the principles of data minimization and purpose limitation mandated by Law Number 27 of 2022 concerning Personal Data Protection (UU PDP) and the Electronic Information and Transactions Law (UU ITE). This study concludes that permission-based static analysis is no longer a standalone solution, advocating for dynamic security auditing to ensure compliance with Indonesian digital privacy regulations.

References

Abrori, S., & Fatah, Z. (2024). Implementasi Metode Decision Tree Dalam Mengklasifikasi Depresi Menggunakan Rapidminer. Journal of Students‘ Research in Computer Science, 5(2), 123–132. https://doi.org/10.31599/vgf7xb32

Akbar, F., Hussain, M., Mumtaz, R., Riaz, Q., Wahab, A. W. A., & Jung, K. H. (2022). Permissions-Based Detection of Android Malware Using Machine Learning. Symmetry, 14(4). https://doi.org/10.3390/sym14040718

AlJarrah, M. N., Yaseen, Q. M., & Mustafa, A. M. (2022). A Context-Aware Android Malware Detection Approach Using Machine Learning. Information (Switzerland), 13(12), 1–25. https://doi.org/10.3390/info13120563

Ameliatus, Q., & Fatah, Z. (2024). Klasifikasi Kelulusan Mahasiswa Menggunakan Decision Tree. Jurnal Riset Teknik Komputer, 1(4), 58–64. https://journal.smartpublisher.id/index.php/jurtikom/article/view/305

Ansori, D. B., Slamet, J., Ghufron, M. Z., Putra, M. A. R., & Ahmad, T. (2024). Android Malware Classification Using Gain Ratio and Ensembled Machine Learning. International Journal of Safety and Security Engineering, 14(1), 259–266. https://doi.org/10.18280/ijsse.140126

Aziz, T. A., Sari, Z., Sri, C., & Aditiya, K. (2025). Klasifikasi Malware Android dengan menggunakan metode XGBoost Algoritma. Repositor, 7(1), 103–110.

Budiana, F. P., & Shelviani, H. (2025). Kombinasi Algoritma Decision Tree dan Naive Bayes untuk Meningkatkan Akurasi dan Kecepatan Waktu Deteksi Malware. Semnas Ristek (Seminar Nasional Riset Dan Inovasi Teknologi), 9(1), 419–425. https://doi.org/10.30998/semnasristek.v9i1.7874

Ehsan, A., Catal, C., & Mishra, A. (2022). Detecting Malware by Analyzing App Permissions on Android Platform: A Systematic Literature Review. Sensors, 22(20). https://doi.org/10.3390/s22207928

Gundla, R., & Gengaje, S. R. (2024). Android Malware Detection Using Machine Learning. Lecture Notes in Networks and Systems, 1005 LNNS, 47–54. https://doi.org/10.1007/978-981-97-4928-7_4

Haq, M. A., & Khuthaylah, M. (2024). Leveraging Machine Learning for Android Malware Analysis: Insights from Static and Dynamic Techniques. Engineering, Technology and Applied Science Research, 14(4), 15027–15032. https://doi.org/10.48084/etasr.7632

Khair, F., & Wiraguna, S. A. (2025). Data Protection Impact Assessment (DPIA) sebagai Instrumen Kunci Menjamin Kepatuhan UU PDP 2022 di Indonesia. Politika Progresif : Jurnal Hukum, Politik Dan Humaniora, 2(2), 246–254. https://doi.org/10.62383/progres.v2i2.1821

Pranindya, K. R. A. (2025). Penegakan Hukum terhadap Pelaku Penyalahgunaan Penyebaran Data Pribadi Melalui Barcode Ditinjau dari UU ITE dan UU Nomor 27 Tahun 2022 Tentang (UU PDP). Konsensus : Jurnal Ilmu Pertahanan, Hukum Dan Ilmu Komunikasi, 2(3), 123–135. https://doi.org/10.62383/konsensus.v2i3.957

Shakya, S., & Dave, M. (2022). Analysis, Detection, and Classification of Android Malware using System Calls. ArXiv Preprint ArXiv:2208.06130. http://arxiv.org/abs/2208.06130

Siahaan, D. (2025). Math Unesa. Jurnal Ilmiah Matematika, 13(2), 198–199.

Sk, H. K., & Anu, V. M. (2022). A Hybrid Model for Android Malware Detection using Decision Tree and KNN. International Journal on Recent and Innovation Trends in Computing and Communication, 10(November), 321–328. https://doi.org/10.17762/ijritcc.v10i1s.5899

Syahputra, M. D. (2025). Dinamika Hukum Pidana Dalam Menanggapi Kejahatan Siber Di Era Digital. Jurnal Ilmiah Multidisiplin Terpadu, 9(5), 2246–6111.

Turnip, T. N., Manurung, C. F., Lubis, Y. S., & Gulton, R. (2023). Classification of Android Application Malware Using Random Forest Based on Static Features. Jurnal Teknik Informatika Dan Sistem Informasi, 10(1), 926–936.

Wiyono, T., Hadinata, E., Zakir, A., & Elhanafi, A. M. (2025). Deteksi Malware Berbasiskan Analisis Statis Menggunakan Algoritma Convolutional Neural Network (CNN). Jurnal Sistem Komputer Dan Informatika (JSON), 104(1), 94–104.

Zakariya, R. A. I., & Ramli, K. (2023). Desain Penilaian Risiko Privasi Pada Aplikasi Seluler Melalui Model Machine Learning Berbasis Ensemble Learning. Jurnal Teknologi Informasi Dan Ilmu Komputer, 10(4). https://doi.org/10.25126/jtiik

Zildan, M. (2025). Penggunaan Algoritma Random Forest Untuk Deteksi Malware Berdasarkan Pola Permission Pada Aplikasi Android Komunikasi. Jurnal Cakrawala Informasi, 5(1), 30–49. https://doi.org/10.54066/jci.v5i1.559

Published

2026-07-29

Issue

Section

Articles