@article{, author = {Schneegass, Stefan; Saad, Alia; Heger, Roman; Delgado Rodriguez, Sarah; Poguntke, Romina; Alt, Florian}, title = {An Investigation of Shoulder Surfing Attacks on Touch-Based Unlock Events}, editor = {}, booktitle = {}, series = {}, journal = {ACM Transactions on Computer Human Interaction}, address = {}, publisher = {}, edition = {}, year = {2022}, isbn = {}, volume = {6}, number = {MHCI}, pages = {1-14}, url = {https://doi.org/10.1145/3546742 }, doi = {10.1145/3546742}, keywords = {shoulder surfing ; usable security and privacy ; user-centered attacks ; in-the-wild studies}, abstract = {This paper contributes to our understanding of user-centered attacks on smartphones. In particular, we investigate the likelihood of so-called shoulder surfing attacks during touch-based unlock events and provide insights into users' views and perceptions. To do so, we ran a two-week in-the-wild study (N=12) in which we recorded images with a 180-degree field of view lens that was mounted on the smartphone's front-facing camera. In addition, we collected contextual information and allowed participants to assess the situation. We found that only a small fraction of shoulder surfing incidents that occur during authentication are actually perceived as threatening. Furthermore, our findings suggest that our notions of (un)safe places need to be rethought. Our work is complemented by a discussion of implications for future user-centered attack-aware systems. This work can serve as a basis for usable security researchers to better design systems against user-centered attacks.}, note = {}, institution = {Universität der Bundeswehr München, Fakultät für Informatik, INF 5 - Institut für Anwendungssicherheit, Professur: Alt, Florian}, }