Only play in your comfort zone: interaction methods for improving security awareness on mobile devices

TitleOnly play in your comfort zone: interaction methods for improving security awareness on mobile devices
Publication TypeJournal Article
Year of Publication2015
AuthorsRiedl, P., Mayrhofer R., Möller A., Kranz M., Lettner F., Holzmann C., & Koelle M.
JournalPersonal and Ubiquitous Computing
Volume19
Start Page941
Pagination954
Date Published08/2015
ISSN1617-4909
KeywordsCompartmentalization, Mobile security, Sandboxing, Security Zones, Separation
Abstract

In this paper, we study the concept of security zones as an intermediate layer of compartmentalization on mobile devices. Each of these security zones is isolated against the other zones and holds a different set of applications and associated user data and may apply different security policies. From a user point of view, they represent different contexts of use for the device, e.g., to distinguish between gaming (private context), payment transactions (secure context), and company-related email (enterprise context). We propose multiple visualization methods for conveying the current security zone information to the user, and interaction methods for switching between zones. Based on an online and a laboratory user study, we evaluated these concepts from a usability point of view. One important result is that in the tension field between security and usability, additional hardware can support the user’s awareness toward their zone context.

DOI10.1007/s00779-015-0840-5
Research Project: