QR Code Integrity by Design
ISBN
979-8-4007-0331-7/24/05
Type
conference contribution
Date Issued
2024-05-11
Author(s)
Research Team
Interaction- and Communication-based Systems (https://interactions.ics.unisg.ch)
Abstract
As QR codes become ubiquitous in various applications and places, their susceptibility to tampering, known as quishing, poses a significant threat to user security. In this paper we introduce SafeQR codes that address this challenge by introducing innovative design strategies to enhance QR code security. Leveraging visual elements and secure design principles, the project aims to make tampering more noticeable, thereby empowering users to recognize and avoid potential phishing threats. Further, we highlight the limitations of current user-education methods in combating quishing and propose different attacker models tailored to address quishing attacks. In addition, we introduce a multi-faceted defense strategy that merges design innovation with user vigilance. Through a user study, we demonstrate the efficacy of ’Integrity by Design’ QR codes. These innovatively designed QR codes significantly raise user suspicion in case of tampering and effectively reduce the likelihood of successful quishing attacks.
Language
English (United States)
Keywords
quishing
QR codes
QR code based phishing
phishing susceptibility
privacy
HSG Classification
contribution to scientific community
Refereed
Yes
Book title
Extended Abstracts of the CHI Conference on Human Factors in Computing Systems (CHI EA ’24)
Publisher
ACM
Publisher place
New York, NY, USA
Pages
9
Event Title
CHI Conference on Human Factors in Computing Systems (CHI'24)
Event Location
Honolulu, HI, USA
Event Date
May 11 - 16, 2024
Official URL
Subject(s)
Division(s)
Contact Email Address
luka.bekavac@student.unisg.ch
File(s)![Thumbnail Image]()
Loading...
open.access
Name
Bekavac et al_2024_QR-Code-integrity-by-Design.pdf
Size
11.52 MB
Format
Adobe PDF
Checksum (MD5)
2ce2d18a9d75a0e164d82ac1edd3e78f