Search results
-
Innovation Inaction or In Action? The Role of User Experience in the Security and Privacy Design of Smart Home Cameras
user experience (UX) principles to security and privacy design is under-explored. In this paper, we ...admin - January 24, 2022 - 11:52 am
-
An Empirical Study of Wireless Carrier Authentication for SIM Swaps
Kevin Lee, Benjamin Kaiser, Jonathan Mayer, and Arvind Narayanan, Princeton University We examined the authentication procedures used by five prepaid wireless carriers when a customer attempted to change their SIM card. These procedures are an important l ...admin - November 28, 2021 - 8:30 am
-
“You still use the password after all” – Exploring FIDO2 Security Keys in a Small Company
Florian M. Farke, Ruhr University Bochum; Lennart Lorenz, tracekey solutions GmbH; Theodor Schnitzler, Philipp Markert, and Markus Dürmuth, Ruhr University Bochum The goal of the FIDO2 project is to provide secure and usable alternatives to password-based ...admin - November 28, 2021 - 8:30 am
-
Blind and Human: Exploring More Usable Audio CAPTCHA Designs
Institute of Technology Awarded Distinguished Paper! For people with visual impairments (PVIs), audio ...admin - November 28, 2021 - 8:30 am
-
Passworld: A Serious Game to Promote Password Awareness and Diversity in an Enterprise
advantage of being immersive. In this paper, we present a serious game-based training on creating password ...admin - November 28, 2021 - 8:30 am
-
User Mental Models of Cryptocurrency Systems- A Grounded Theory Approach
Alexandra Mai and Katharina Pfeffer, SBA Research; Matthias Gusenbauer, Tokyo Institute of Technology, SBA Research; Edgar Weippl, University of Vienna; Katharina Krombholz, CISPA Helmholtz Center for Information Security Frequent reports of monetary loss ...admin - November 28, 2021 - 8:30 am
-
Knock, Knock. Who’s There? On the Security of LG’s Knock Codes
estimate, 700,000--2,500,000 in the US alone. In this paper, we studied Knock Codes security asking ...admin - November 28, 2021 - 8:30 am
-
Security, Availability, and Multiple Information Sources: Exploring Update Behavior of System Administrators
available and secure. In this paper, we sought to understand administrators' behavior, experiences, and ...admin - November 28, 2021 - 9:32 am
-
Lessons Learnt from Comparing WhatsApp Privacy Concerns Across Saudi and Indian Populations
Jayati Dev, Indiana University; Pablo Moriano, Oak Ridge National Laboratory; L. Jean Camp, Indiana University The purpose of this study is to understand the privacy concerns and behavior of non-WEIRD populations in online messaging platforms. Analysis of ...admin - November 28, 2021 - 9:32 am
-
How Risky Are Real Users' IFTTT Applets?
Camille Cobb and Milijana Surbatovich, Carnegie Mellon University; Anna Kawakami, Wellesley College; Mahmood Sharif, NortonLifeLock; Lujo Bauer, Carnegie Mellon University; Anupam Das, North Carolina State University; Limin Jia, Carnegie Mellon University ...admin - November 28, 2021 - 9:32 am
-
Replication: Why We Still Can't Browse in Peace: On the Uniqueness and Reidentifiability of Web Browsing Histories
history visible to websites and third parties. This work replicates and extends the 2012 paper Why Johnny ... original paper's core findings by identifying 48,919 distinct browsing profiles, of which 99% are ...admin - November 28, 2021 - 9:32 am
-
From Intent to Action: Nudging Users Towards Secure Mobile Payments
Peter Story, Daniel Smullen, Alessandro Acquisti, Lorrie Faith Cranor, and Norman Sadeh, Carnegie Mellon University; Florian Schaub, University of Michigan Despite experts agreeing on many security best practices, there remains a gap between their advice ...admin - November 28, 2021 - 9:32 am
-
Usable Sexurity: Studying People’s Concerns and Strategies When Sexting
Christine Geeng, Jevan Hutson, and Franziska Roesner, University of Washington Sexting, while becoming commonplace in the age of mobile phones, is still not well-studied outside of the context of youth or risk prevention. Taking the perspective that sexti ...admin - November 28, 2021 - 9:32 am
-
"I Have a Narrow Thought Process": Constraints on Explanations Connecting Inferences and Self-Perceptions
Emilee Rader, Samantha Hautea, and Anjali Munasinghe, Michigan State University IAPP SOUPS Privacy Award Most people are unfamiliar with the kinds of inferences that platforms like Facebook and Google can automatically associate with them, despite the exi ...admin - November 28, 2021 - 9:32 am
-
An Exploratory Study of Hardware Reverse Engineering — Technical and Cognitive Processes
is known about the technical and cognitive processes which determine the success of HRE. This paper ...admin - November 28, 2021 - 9:32 am
-
Industry Responses to the European Directive on Security of Network and Information Systems (NIS): Understanding policy implementation practices across critical infrastructures
Ola Aleksandra Michalec, Dirk van der Linden, Sveta Milyaeva, and Awais Rashid, University of Bristol As traditional legacy systems that run critical national infrastructures (CNI) are increasingly digitized for performance monitoring and efficiency, sign ...admin - November 28, 2021 - 9:32 am
-
Enhancing Privacy through the Visual Design of Privacy Notices: Exploring the Interplay of Curiosity, Control and Affect
choices, resulting in negative feelings associated with the sign-up process. In this paper, we investigate ...admin - November 28, 2021 - 9:32 am
-
Realizing Choice: Online Safeguards for Couples Adapting to Cognitive Challenges
Baltimore County This paper investigates qualitatively what happens when couples facing a spectrum of ...admin - November 28, 2021 - 10:34 am
-
Cloudy with a Chance of Misconceptions: Exploring Users' Perceptions and Expectations of Security and Privacy in Cloud Office Suites
Dominik Wermke, Nicolas Huaman, Christian Stransky, Niklas Busch, Yasemin Acar, and Sascha Fahl, Leibniz University Hannover Cloud Office suites such as Google Docs or Microsoft Office 365 are widely used and introduce security and privacy risks to docume ...admin - November 28, 2021 - 10:34 am
-
An Ethnographic Understanding of Software (In)Security and a Co-Creation Model to Improve Secure Software Development
Hernan Palombo, Armin Ziaie Tabari, Daniel Lende, Jay Ligatti, and Xinming Ou, University of South Florida We present an ethnographic study of secure software development processes in a software company using the anthropological research method of partici ...admin - November 28, 2021 - 10:34 am
-
Why Can't Johnny Fix Vulnerabilities: A Usability Evaluation of Static Analysis Tools for Security
Justin Smith, Lafayette College; Lisa Nguyen Quang Do and Emerson Murphy-Hill, Google Static analysis tools can help prevent security incidents, but to do so, they must enable developers to resolve the defects they detect. Unfortunately, developers often ...admin - November 28, 2021 - 10:34 am
-
"You've Got Your Nice List of Bugs, Now What?" Vulnerability Discovery and Management Processes in the Wild
Noura Alomar, University of California, Berkeley; Primal Wijesekera, University of California, Berkeley, and International Computer Science Institute (ICSI); Edward Qiu, University of California, Berkeley; Serge Egelman, University of California, Berkeley ...admin - November 28, 2021 - 10:34 am
-
Do Privacy and Security Matter to Everyone? Quantifying and Clustering User-Centric Considerations About Smart Home Device Adoption
Natã M. Barbosa, Zhuohao Zhang, and Yang Wang, University of Illinois at Urbana-Champaign While consumer adoption of smart home devices continues to grow, privacy concerns reportedly remain a roadblock to mass adoption. However, it is unclear exactly how ...admin - November 28, 2021 - 10:34 am
-
Towards Understanding Privacy and Trust in Online Reporting of Sexual Assault
reporting of sexual assaults and to apprehend serial offenders. This paper reports survivors’ concerns with ...admin - November 28, 2021 - 10:34 am
-
An investigation of phishing awareness and education over time: When and how to best remind users
Benjamin Reinheimer, Lukas Aldag, Peter Mayer, Mattia Mossano, and Reyhan Duezguen, SECUSO- Security, Usability, Society, Karlsruhe Institute of Technology; Bettina Lofthouse, Landesamt für Geoinformation und Landesvermessung Niedersachsen; Tatiana von La ...admin - November 28, 2021 - 10:34 am