Novel (end user) technologies emerge at a rapidly accelerating pace. In particular technologies for use in public or semi-public spaces are subject to so-called user-centered threats, that is attackers trying to exploit weaknesses in human behavior. Examples include but are not limited to so-called observation attacks (shoulder surfing), reconstruction attacks (smudge attacks, thermal attacks) and mimicry attacks.
In our work we obtain an in-depth understanding of the attack vectors (including human behavior enabling such attacks / during such attacks) and look into how these can be mitigated. To this end, we focus on a large variety of scenarios, including but not limited to the use of sensitive information in public space, working environments, and Mixed Reality.
Outcomes of our work are recommendations for and the support of behavior changes as well as user interfaces that seek to protect users through in-situ interventions.