| 2017 | A Qualitative Investigation of Bank Employee Experiences of Information Security and Phishing. | Dan Conway, Ronnie Taib, Mitch Harris, Kun Yu, Shlomo Berkovsky, Fang Chen |
| 2017 | Replication: Challenges in Using Data Logs to Validate Phishing Detection Ability Metrics. | Casey Inez Canfield, Alex Davis, Baruch Fischhoff, Alain Forget, Sarah Pearman, Jeremy Thomas |
| 2017 | On the Design of Distributed Adaptive Authentication Systems. | Patricia Arias Cabarcos, Christian Krupitzer |
| 2017 | Regulators, Mount Up! Analysis of Privacy Policies for Mobile Money Services. | Jasmine D. Bowers, Bradley Reaves, Imani N. Sherman, Patrick Traynor, Kevin R. B. Butler |
| 2017 | Exploring decision making with Android's runtime permission dialogs using in-context surveys. | Bram Bonn, Sai Teja Peddinti, Igor Bilogrevic, Nina Taft |
| 2017 | Self-driving cars and data collection: Privacy perceptions of networked autonomous vehicles. | Cara Bloom, Joshua Tan, Javed Ramjohn, Lujo Bauer |
| 2017 | DigiTally: Piloting Offline Payments for Phones. | Khaled Baqer, Ross J. Anderson, Lorna Mutegi, Jeunese A. Payne, Joseph Sevilla |
| 2017 | "...better to use a lock screen than to worry about saving a few seconds of time": Effect of Fear Appeal in the Context of Smartphone Locking Behavior. | Yusuf Albayram, Mohammad Maifi Hasan Khan, Theodore Jensen, Nhan Nguyen |
| 2017 | Security Developer Studies with GitHub Users: Exploring a Convenience Sample. | Yasemin Acar, Christian Stransky, Dominik Wermke, Michelle L. Mazurek, Sascha Fahl |
| 2016 | Preliminary Findings from an Exploratory Qualitative Study of Security-Conscious Users of Mobile Authentication. | Flynn Wolf, Ravi Kuber, Adam J. Aviv |
| 2016 | How to Improve the Security Skills of Mobile App Developers? Comparing and Contrasting Expert Views. | Charles Weir, Awais Rashid, James Noble |
| 2016 | A Week to Remember: The Impact of Browser Warning Storage Policies. | Joel Weinberger, Adrienne Porter Felt |
| 2016 | The Cybersecurity Competition Experience: Perceptions from Cybersecurity Workers. | Colin Wee, Masooda N. Bashir, Nasir D. Memon |
| 2016 | Understanding Password Choices: How Frequently Entered Passwords Are Re-used across Websites. | Rick Wash, Emilee J. Rader, Ruthie Berman, Zac Wellmer |
| 2016 | Intuitions, Analytics, and Killing Ants: Inference Literacy of High School-educated Adults in the US. | Jeffrey Warshaw, Nina Taft, Allison Woodruff |
| 2016 | Social Authentication for End-to-End Encryption. | Elham Vaziripour, Mark O'Neill, Justin Wu, Scott Heidbrink, Kent E. Seamons, Daniel Zappala |
| 2016 | Penetration Tests a Turning Point in Security Practices? Organizational Challenges and Implications in a Software Development Team. | Sven Trpe, Laura Kocksch, Andreas Poller |
| 2016 | Sharing Health Information on Facebook: Practices, Preferences, and Risk Perceptions of North American Users. | Sadegh Torabi, Konstantin Beznosov |
| 2016 | What Questions Remain? An Examination of How Developers Understand an Interactive Static Analysis Tool. | Tyler Thomas, Heather Lipford, Bill Chu, Justin Smith, Emerson R. Murphy-Hill |
| 2016 | Turning Contradictions into Innovations or: How We Learned to Stop Whining and Improve Security Operations. | Sathya Chandran Sundaramurthy, John McHugh, Xinming Ou, Michael Wesch, Alexandru G. Bardas, S. Raj Rajagopalan |
| 2016 | Picking a (Smart)Lock: Locking Relationships on Mobile Devices. | Elizabeth Stobert, David Barrera |
| 2016 | Collaborative Data Analysis and Discovery for Cyber Security. | Diane Staheli, Vincent Mancuso, Raul Harnasch, Cody Fulcher, Madeline Chmielinski, Adam Kearns, Stephen Kelly, Era Vuksani |
| 2016 | Exploring Games for Improved Touchscreen Authentication on Mobile Devices. | Padmaja Scindia, Jonathan Voris |
| 2016 | Drone-based Privacy Interfaces: Opportunities and Challenges. | Florian Schaub, Pascal Knierim |
| 2016 | Putting Your Passwords on Self-destruct Mode: Beating Password Fatigue. | Huascar Sanchez, John T. Murray |