Huzeyfe Kocabas

dblp:252/4013 · also Huzeyfe M. Kocabas · DBLP profile ↗
← Back
4ranked-venue papers
0as first author
3since 2021 · last 2023
0000-0002-1555-4992ORCID · corroborated

Domains — the database's venue-derived domains; a paper can count in several

Security and privacy · 3 · 2 since 2021Human-computer interaction and ubiquitous computing · 1 · 1 since 2021
YearPublicationVenuePosition
2023 A Deep Dive into User's Preferences and Behavior around Mobile Phone Sharing
abstract
Users share their personal devices with different entities in various circumstances. While prior research shed light on the broad reasons behind the sharing of mobile phones, there is a dearth of systematic study to understand the user's decision-making process and the underlying preferences and concerns in the context of phone sharing. To address these gaps, we designed a prototype that we leveraged to investigate the interplay between a user's relationship with sharees, preferences of sharing a subset of apps with a certain entity, perceived sensitivity of the apps being shared, and how these factors relate to their authentication behavior. We conducted a multi-session study with 50 participants from three countries (USA, Turkey, and Nepal), where the participants interacted with our prototype and took part in semi-structured interviews. The findings from our study revealed the need for phone sharing at a granular level, where we identified the factors that could influence a user's decision-making process in sharing. Our analysis unpacked the relation between a user's perceived sensitivity of apps being shared, and authentication behavior to protect information from unauthorized access. Overall, our findings advance the CSCW community's understanding of how the user attains a balance between privacy protection and the need for phone sharing.
Rizu Paudel, Prakriti Dumaru, Ankit Shrestha, Huzeyfe Kocabas, Mahdi N. Al-Ameen
Proc. ACM Hum. Comput. Interact.4
2021 A look into user's privacy perceptions and data practices of IoT devices
abstract
Purpose With the rapid deployment of internet of things (IoT) technologies, it has been essential to address the security and privacy issues through maintaining transparency in data practices. The prior research focused on identifying people's privacy preferences in different contexts of IoT usage and their mental models of security threats. However, there is a dearth in existing literature to understand the mismatch between user's perceptions and the actual data practices of IoT devices. Such mismatches could lead users unknowingly sharing their private information, exposing themselves to unanticipated privacy risks. The paper aims to identify these mismatched privacy perceptions in this work. Design/methodology/approach The authors conducted a lab study with 42 participants, where they compared participants’ perceptions with the data practices stated in the privacy policy of 28 IoT devices from different categories, including health and exercise, entertainment, smart homes, toys and games and pets. Findings The authors identified the mismatched privacy perceptions of users in terms of data collection, sharing, protection and storage period. The findings revealed the mismatches between user's perceptions and the data practices of IoT devices for various types of information, including personal, contact, financial, heath, location, media, connected device, online social media and IoT device usage. Originality/value The findings from this study lead to the recommendations on designing simplified privacy notice by highlighting the unexpected data practices, which in turn, would contribute to the secure and privacy-preserving use of IoT devices.
Mahdi N. Al-Ameen, Apoorva Chauhan, M. A. Manazir Ahsan, Huzeyfe Kocabas
Inf. Comput. Secur.4
2021 "We, three brothers have always known everything of each other": A Cross-cultural Study of Sharing Digital Devices and Online Accounts
abstract
Abstract Although many technologies assume that a device or an account would be used by a single user, prior research has found that this assumption may not hold true in everyday life. Most studies conducted to date focused on sharing a device or account with the members in a household. However, there is a dearth in existing literature to understand the contexts of sharing devices and accounts, which may extend to a wide range of personal, social, and professional settings. Further, people’s sharing behavior could be impacted by their social background. To this end, our paper presents a qualitative study with 59 participants from three different countries: Bangladesh, Turkey, and USA, where we investigated the sharing of digital devices (e.g., computer, mobile phone) and online accounts, in particular, financial and identity accounts (e.g., email, social networking) in various contexts, and with different entities - not limited to the members in a household. Our study reveals users’ perceptions of risks while sharing a device or account, and their access control strategies to protect privacy and security. Based on our analysis, we shed light on the interplay between users’ sharing behavior and their demographics, social background, and cultural values. Taken together, our findings have broad implications that advance the PETS community’s situated understanding of sharing devices and accounts.
Mahdi N. Al-Ameen, Huzeyfe Kocabas, Swapnil Nandy, Tanjina Tamanna
Proc. Priv. Enhancing Technol.2
2019 Poster: Understanding User's Decision to Interact with Potential Phishing Posts on Facebook using a Vignette Study
abstract
Facebook remains the largest social media platform on the Internet with over one billion active monthly users. A variety of personal and sensitive data is shared on the platform, which makes it a prime target for attackers. Increasingly, we see phishing attacks that take advantage of users' lack of security knowledge, deceiving victims by using fake or compromised accounts to share malicious posts. These attacks may slip undetected by the Facebook defense system, exposing users to potentially be phished or have their devices infected with drive-by downloads and malware. Only a few studies have been conducted to date to understand how users interact with attacks like this in Facebook. In our prior work, we conducted a study to address this challenge using a simulated interface and think-aloud protocol. In this study, we aim to make further progress in understanding the impact of different factors on users' clicking decision in social media through a vignette study that encourages participants to think about realistic scenarios that they might face.
Sovantharith Seng, Huzeyfe Kocabas, Mahdi N. Al-Ameen, Matthew Wright 0001
CCS2