TULiPS

Technology Usability Lab in Privacy and Security

Logo: Technology Usability Lab in Privacy and Security
Research Publications People Student Projects Wiki Outreach

Publications

2023

  • DarkDialogs: Automated detection of 10 dark patterns on cookie dialogs [bibtex]
    D. Kirkman, K. Vaniea, D.W. Woods; In Proceedings of the 8th IEEE European Symposium on Security and Privacy (EuroSP'23). 2023.
  • Embedding Privacy Into Design Through Software Developers: Challenges and Solutions [bibtex]
    M. Tahaei, K. Vaniea, A. Rashid; In IEEE Security & Privacy. 2023.
  • Multi-User Smart Speakers - A Narrative Review of Concerns and Problematic Interactions [bibtex]
    N. Meng-Schneider, R. Yasa Kostas, K. Vaniea, M.K. Wolters; In Extended Abstracts of the 2023 CHI Conference on Human Factors in Computing Systems. 2023.
  • To Patch, or not To Patch? That is the Question: A Case Study of System Administrators' Online Collaborative Behaviour [bibtex]
    A. Jenkins, M. Wolters, K. Vaniea; In arXiv. 2023.
  • Twitter has a Binary Privacy Setting, are Users Aware of How It Works? [bibtex]
    D. Keküllüoğlu, K. Vaniea, M.K. Wolters, W. Magdy; In Proceedings of the 2023 ACM SIGCHI Conference on Computer-Supported Cooperative Work and Social Computing (CSCW23). 2023.
  • Using Clustering Algorithms to Automatically Identify Phishing Campaigns [bibtex]
    K. Althobaiti, M.K. Wolters, N. Alsufyani, K. Vaniea; In IEEE Access. 2023.
  • ``I didn't click'': What users say when reporting phishing [bibtex]
    N. Pilavakis, A. Jenkins, N. Kokciyan, K. Vaniea; In Proceedings of the Symposium on Usable Privacy and Security (USEC'23). 2023.
  • 2022

  • Can I Borrow Your ATM? Using Virtual Reality for (Simulated) In Situ Authentication Research [bibtex]
    F. Mathis, K. Vaniea, M. Khamis; In Proceedings of IEEE Virtual Reality and 3D User Interfaces (VR). 2022.
  • Context-based Clustering to Mitigate Phishing Attacks [bibtex]
    T. Saka, K. Vaniea, N. Kokciyan; In Proceedings of the 15th ACM Workshop on Artificial Intelligence and Security (AISec 2022). 2022.
  • From an Authentication Question to a Public Social Event: Characterizing Birthday Sharing on Twitter [bibtex]
    D. Keküllüoğlu, W. Magdy, K. Vaniea; In Proceedings of The 16th International AAAI Conference on Weblogs and Social Media (ICWSM'22). 2022.
  • Lessons Learned From Recruiting Participants With Programming Skills for Empirical Privacy and Security Studies [bibtex]
    M. Tahaei, K. Vaniea; In 1st International Workshop on Recruiting Participants for Empirical Software Engineering (RoPES'22). 2022.
  • PhishED: Automated contextual feedback for reporting phishing [bibtex]
    A. Jenkins, N. Kokciyan, K. Vaniea; In Proceedings of the Symposium on Usable Privacy and Security Poster Track. 2022.
  • Recruiting Participants with Programming Skills: A Comparison of Four Crowdsourcing Platforms and a CS Student Mailing List [bibtex]
    M. Tahaei, K. Vaniea; In Proceedings of the SIGCHI Conference on Human Factors in Computing Systems. 2022.
  • Stay Home! Conducting Remote Usability Evaluations of Novel Real-World Authentication Systems Using Virtual Reality [bibtex]
    F. Mathis, J. O{\rq}Hagan, K. Vaniea, M. Khamis; In Proceedings of the International Conference on Advanced Visual Interfaces (AVI 2022). 2022.
  • Understanding Privacy-Related Advice on Stack Overflow [bibtex]
    M. Tahaei, T. Li, K. Vaniea; In Proceedings on Privacy Enhancing Technologies. 2022.
  • Virtual Reality Observations: Using Virtual Reality to Augment Lab-Based Shoulder Surfing Research [bibtex]
    F. Mathis, J. O'Hagan, M. Khamis, K. Vaniea; In Proceedings of IEEE Virtual Reality and 3D User Interfaces (VR). 2022.
  • 2021

  • A Case Study of Phishing Incident Response in an Educational Organization [bibtex]
    K. Althobaiti, A. Jenkins, K. Vaniea; In Proceedings of the ACM Conference on Computer Supported Cooperative Work and Social Computing. 2021.
  • Code-Level Dark Patterns: Exploring Ad~Networks' Misleading Code Samples with Negative Consequences for Users [bibtex]
    M. Tahaei, K. Vaniea; In ``What Can CHI Do About Dark Patterns?'' Workshop at CHI Conference on Human Factors in Computing Systems (CHI '21). 2021.
  • Deciding on Personalized Ads: Nudging Developers About User Privacy [bibtex]
    M. Tahaei, A. Frik, K. Vaniea; In Symposium On Usable Privacy and Security (SOUPS). 2021.
  • Fast and Secure Authentication in Virtual Reality using Coordinated 3D Manipulation and Pointing [bibtex]
    F. Mathis, J.H. Williamson, K. Vaniea, M. Khamis; In ACM Transactions on Computer-Human Interaction (TOCHI). 2021.
  • I Don't Need an Expert! Making URL Phishing Features Human Comprehensible [bibtex]
    K. Althobaiti, N. Meng, K. Vaniea; In Proceedings of the SIGCHI Conference on Human Factors in Computing Systems. 2021.
  • Observing Virtual Avatars: The Impact of Different Avatars on Identifying Users' Interaction [bibtex]
    F. Mathis, K. Vaniea, M. Khamis; In Proceedings of Mindtrek International Technology Conference. 2021.
  • Owning and Sharing: Privacy Perceptions of Smart Speaker Users [bibtex]
    N. Meng, D. Keküllüoğlu, K. Vaniea; In Proceedings of the ACM Conference on Computer Supported Cooperative Work and Social Computing. 2021.
  • Privacy Champions in Software Teams: Understanding Their Motivations, Strategies, and Challenges [bibtex]
    M. Tahaei, A. Frik, K. Vaniea; In Proceedings of the SIGCHI Conference on Human Factors in Computing Systems. 2021.
  • Prototyping Usable Privacy and Security Systems: Insights from Experts [bibtex]
    F. Mathis, K. Vaniea, M. Khamis; In International Journal of Human--Computer Interaction. 2021.
  • RepliCueAuth: Validating the Use of a lab-based Virtual Reality Setup for Evaluating Authentication Systems [bibtex]
    F. Mathis, K. Vaniea, M. Khamis; In Proceedings of the SIGCHI Conference on Human Factors in Computing Systems. 2021.
  • Security Notifications in Static Analysis Tools: Developers' Attitudes, Comprehension, and Ability to Act on Them [bibtex]
    M. Tahaei, K. Vaniea, K. Beznosov, M.K. Wolters; In Proceedings of the SIGCHI Conference on Human Factors in Computing Systems. 2021.
  • ``Developers are Responsible'': What Ad Networks Tell Developers About Privacy [bibtex]
    M. Tahaei, K. Vaniea; In Proceedings of the SIGCHI Conference on Human Factors in Computing Systems Late Breaking Work. 2021.
  • 2020

  • "Anyone Else Seeing this Error?": Community, System Administrators, and Patch Information [bibtex]
    A. Jenkins, P. Kalligeros, K. Vaniea, M.K. Wolters; In Proceedings of the European Symposium on Security and Privacy (EuroSP). 2020.
  • Analysing Privacy Leakage of Life Events on Twitter [bibtex]
    D. Keküllüoğlu, W. Magdy, K. Vaniea; In Proceedings of the 12th ACM Conference on Web Science. 2020.
  • Analysis of publicly available anti-phishing webpages: contradicting information, lack of concrete advice and very narrow attack vector [bibtex]
    M. Mossano, K. Vaniea, L. Aldag, R. Düzgün, P. Mayer, M. Volkamer; In Proceedings of the 5th IEEE European Workshop on Usable Security (EuroUSEC). 2020.
  • Knowledge-driven Biometric Authentication in Virtual Reality [bibtex]
    F. Mathis, H.I. Fawaz, M. Khamis; In Proceedings of the SIGCHI Conference on Human Factors in Computing Systems. 2020.
  • RubikAuth: Fast and Secure Authentication in Virtual Reality [bibtex]
    F. Mathis, J.H. Williamson, K. Vaniea, M. Khamis; In Proceedings of the SIGCHI Conference on Human Factors in Computing Systems. 2020.
  • Understanding Privacy-Related Questions on Stack Overflow [bibtex]
    M. Tahaei, K. Vaniea, N. Saphra; In Proceedings of the SIGCHI Conference on Human Factors in Computing Systems. 2020.
  • What is this URL's Destination? Empirical Evaluation of Users' URL Reading [bibtex]
    S.S. Albakry, K. Vaniea, M.K. Wolters; In Proceedings of the 2020 CHI Conference on Human Factors in Computing Systems. 2020.
  • 2019

  • "I Don't Know Too Much About It": On the Security Mindsets of Computer Science Students [bibtex]
    M. Tahaei, A. Jenkins, K. Vaniea, M.K. Wolters; In Workshop on Socio-Technical Aspects in SecuriTy (STAST). 2019.
  • A Review of Human-and Computer-Facing URL Phishing Features [bibtex]
    K. Althobaiti, G. Rummani, K. Vaniea; In IEEE European Symposium on Security and Privacy Workshops (EuroSPW). 2019.
  • A Survey on Developer-Centred Security [bibtex]
    M. Tahaei, K. Vaniea; In European Workshop on Usable Security (EuroUSEC). 2019.
  • Saudis' Conceptualisation of Disturbing Content on Social Media [bibtex]
    S. Albakry, A. Alabdullaif, K. Vaniea, M.K. Wolters; In Workshop on HCI Research and Practice in the Arab World (ArabCHI). 2019.
  • 2018

  • Automatic phishing detection versus user training, Is there a middle ground using XAI? [bibtex]
    S. Albakry, K. Vaniea; In Proceedings of the SICSA Workshop on Reasoning, Learning and Explainability. 2018.
  • Faheem: Explaining URLs to people using a Slack bot [bibtex]
    K. Althobaiti, K. Vaniea, S. Zheng; In Symposium on Digital Behaviour Intervention for Cyber Security. 2018.
  • Permission Impossible: Teaching Firewall Configuration in a Game Environment [bibtex]
    S. Sehl, K. Vaniea; In Proceedings of the European Workshop on Usable Security (EuroUSEC'18). 2018.
  • 2017

  • Capturing the Connections: Unboxing Internet of Things Devices [bibtex]
    K. Vaniea, E. Tallyn, C. Speed; In arXiv. 2017.
  • Viewing the Viewers: Publishers' Desires and Viewers' Privacy Concerns in Social Networks [bibtex]
    R. Hoyle, S. Das, A. Kapadia, A.J. Lee, K. Vaniea; In Proceedings of the Conference on Computer Supported Cooperative Work and Social Computing (CSCW). 2017.
  • Was my message read? Privacy and signaling on Facebook messenger [bibtex]
    R. Hoyle, S. Das, A. Kapadia, A.J. Lee, K. Vaniea; In Proceedings of the Conference on Human Factors in Computing Systems (CHI). 2017.
  • 2016

  • Debunking security-usability tradeoff myths [bibtex]
    M.A. Sasse, M. Smith, C. Herley, H. Lipford, K. Vaniea; In IEEE Security and Privacy. 2016.
  • Tales of Software Updates: The process of updating software [bibtex]
    K. Vaniea, Y. Rashidi; In Proceedings of the SIGCHI Conference on Human Factors in Computing Systems. 2016.
  • Understanding Saudis' privacy concerns when using WhatsApp [bibtex]
    Y. Rashidi, K. Vaniea, L.J. Camp; In Proceedings of the Workshop on Usable Security (USEC). 2016.
  • 2015

  • Poster: A User Study of WhatsApp Privacy Settings Among Arab Users [bibtex]
    Y. Rashidi, K. Vaniea; In Proceedings of the Symposium on Security and Privacy Poster Track. 2015.
  • 2014

  • Betrayed By Updates: How Negative Experiences Affect Future Security [bibtex]
    K. Vaniea, E. Rader, R. Wash; In Proceedings of the SIGCHI Conference on Human Factors in Computing Systems. 2014.
  • Out of the loop: How automated software updates cause unintended security consequences [bibtex]
    R. Wash, E. Rader, K. Vaniea, M. Rizor; In Symposium On Usable Privacy and Security (SOUPS). 2014.