USENIX Security2021Top-tier venue
Strategies and Perceived Risks of Sending Sensitive Documents
Noel Warford, Collins W. Munyendo, Ashna Mediratta, Adam J. Aviv, Michelle L. Mazurek
Abstract
People are frequently required to send documents, forms, or other materials containing sensitive data (e.g., personal information, medical records, financial data) to remote parties, sometimes without a formal procedure to do so securely. The specific transmission mechanisms end up relying on the knowledge and preferences of the parties involved. Through two online surveys ( and ), we explore the various methods used to transmit sensitive documents, as well as the perceived risk and satisfaction with those methods. We find that users are more likely to recognize risk to data-at-rest after receipt (but not at the sender, namely, themselves). When not using an online portal provided by the recipient, participants primarily envision transmitting sensitive documents in person or via email, and have little experience using secure, privacy-preserving alternatives. Despite recognizing general risks, participants express high privacy satisfaction and convenience with actually experienced situations. These results suggest opportunities to design new solutions to promote securely sending sensitive materials, perhaps as new utilities within standard email workflows.
Ask about this paper
Your agent reads all of it.
Lune indexed this paper to the last equation, along with the top-tier papers that cite it. Ask a question and the answer quotes them.
Cited by top-tier papers6
- SoK: Safer Digital-Safety Research Involving At-Risk UsersRosanna Bellini, Emily Tseng, Noel Warford, Alaa Daffalla et al.S&P 2024 · 48 citations
- Security, Privacy, and Data-sharing Trade-offs When Moving to the United States: Insights from a Qualitative StudyMindy Tran, Collins W. Munyendo, Harshini Sri Ramulu, Rachel Gonzalez Rodriguez et al.S&P 2024 · 9 citations
- Digital Security Perceptions and Practices Around the World: A WEIRD versus Non-WEIRD ComparisonFranziska Herbert, Collins W. Munyendo, Jonas Hielscher, Steffen Becker et al.USENIX Security 2025
- WhyFlow: Interrogative Debugger for Sensemaking Taint AnalysisBurak Yetistiren, Hong Jin Kang, Miryung KimICSE 2026
- Characterizing Everyday Misuse of Smart Home DevicesPhoebe Moh, Pubali Datta, Noel Warford, Adam Bates et al.S&P 2023
Builds on3
- How Well Do My Results Generalize? Comparing Security and Privacy Survey Results from MTurk, Web, and Telephone SamplesElissa M. Redmiles, Sean Kross, Michelle L. MazurekS&P 2019 · 222 citations
- How I Learned to be Secure: a Census-Representative Survey of Security Advice Sources and BehaviorElissa M. Redmiles, Sean Kross, Michelle L. MazurekCCS 2016 · 192 citations
- Obstacles to the Adoption of Secure Communication ToolsRuba Abu-Salma, M. Angela Sasse, Joseph Bonneau, Anastasia Danilova et al.S&P 2017 · 170 citations
Related papers
- Sounds Good? Fast and Secure Contact Exchange in GroupsFlorentin Putz, Steffen Haesler, Matthias HollickCSCW 2024 · 4 citations
- Caring about Sharing: User Perceptions of Multiparty Data SharingBailey Kacsmar, Kyle Tilbury, Miti Mazmudar, Florian KerschbaumUSENIX Security 2022
- "Your imaging may be stone-cold normal, but if they look sick, they’re going to get admitted": An Investigation of Clinicians’ Perceptions of Impact & Likelihood of Security FailuresRonald E. Thompson III, Hamza Khalid, Hilary Fisher, Rhea Votipka et al.USENIX Security 2026
- Privacy Solution or Menace? Investigating Perceptions of Radio-Frequency SensingMaximiliane Windl, Omer Akgul, Nathan Malkin, Lorrie Faith CranorUSENIX Security 2025
- When Forcing Collaboration is the Most Sensible Choice: Desirability of Precautionary and Dissuasive Mechanisms to Manage Multiparty Privacy ConflictsMauro Cherubini, Kavous Salehzadeh Niksirat, Marc-Olivier Boldi, Henri Keopraseuth et al.CSCW 2021 · 20 citations
