"Just stop doing everything for now!": Understanding security attacks in remote collaborative mixed reality
Maha Sajid, Syed Ibrahim Mustafa Shah Bukhari, Bo Ji, Brendan David-John
摘要
Mixed Reality (MR) devices are being increasingly adopted across a wide range of real-world applications, ranging from education and healthcare to remote work and entertainment. However, the unique immersive features of MR devices, such as 3D spatial interactions and the encapsulation of virtual objects by invisible elements, introduce new vulnerabilities leading to interaction obstruction and misdirection. We implemented latency, click redirection, object occlusion, and spatial occlusion attacks within a remote collaborative MR platform using the Microsoft HoloLens 2 and evaluated user behavior and mitigations through a user study. We compared responses to MR-specific attacks, which exploit the unique characteristics of remote collaborative immersive environments, and traditional security attacks implemented in MR. Our findings indicate that users generally exhibit lower recognition rates for immersive attacks (e.g., spatial occlusion) compared to attacks inspired by traditional ones (e.g., click redirection). Our results demonstrate a clear gap in user awareness and responses when collaborating remotely in MR environments. Our findings emphasize the importance of training users to recognize potential threats and enhanced security measures to maintain trust in remote collaborative MR systems.
问问这篇 Paper
智能体会读完全文。
Lune 把这篇 Paper 索引到了每一个公式,引用它的顶会 Paper 也一样。你提问,回答直接引用原文。
引用它的顶会 Paper2
- Exploring Student Feedback Needs and Design Opportunities in Data Storytelling EducationJennifer Posada, Taha Hassan, Lujie Karen Chen, Louise Yarnall 等CHI 2026 · 被引用 2 次
- "Having Lunch Now": Understanding How Users Engage with a Proactive Agent for Daily Planning and Self-ReflectionAdnan Abbas, Caleb Wohn, Arnav Jagtap, Eugenia Ha Rim Rho 等CHI 2026 · 被引用 1 次
它引用的顶会 Paper15
- ARTEMIS: A Collaborative Mixed-Reality System for Immersive Surgical TelementoringDanilo Gasques, Janet G. Johnson, Tommy Sharkey, Yuanyuan Feng 等CHI 2021 · 被引用 144 次
- Towards Security and Privacy for Multi-user Augmented Reality: Foundations with End UsersKiron Lebeck, Kimberly Ruth, Tadayoshi Kohno, Franziska RoesnerS&P 2018 · 被引用 135 次
- Privacy-Enhancing Technology and Everyday Augmented Reality: Understanding Bystanders' Varying Needs for Awareness and ConsentJoseph O'Hagan, Pejman Saeghe, Jan Gugenheimer, Daniel Medeiros 等UbiComp 2023 · 被引用 102 次
- A Survey on Remote Assistance and Training in Mixed Reality EnvironmentsCatarina G. Fidalgo, Yukang Yan, Hyunsung Cho, Maurício Sousa 等IEEE VR 2023 · 被引用 69 次
- Secure Multi-User Content Sharing for Augmented Reality ApplicationsKimberly Ruth, Tadayoshi Kohno, Franziska RoesnerUSENIX Security 2019 · 被引用 63 次
相关 Paper
- Relay and Betray: Exploiting Client-Side Authority in Multi-User Mixed RealityMutahar Ali, Habiba FarrukhUSENIX Security 2026
- HoloLogger: Keystroke Inference on Mixed Reality Head Mounted DisplaysShiqing Luo, Xinyu Hu, Zhisheng YanIEEE VR 2022 · 被引用 30 次
- When the User Is Inside the User Interface: An Empirical Study of UI Security Properties in Augmented RealityKaiming Cheng, Arkaprabha Bhattacharya, Michelle Lin, Jaewook Lee 等USENIX Security 2024 · 被引用 29 次
- Liar, Liar, Headset on Fire: Understanding the Effects of Deception Attacks on Decision-Making in a Mixed Reality GameAli Teymourian, Taha Gharaibeh, Ibrahim Baggili, Andrew M. WebbCHI 2026
- Unravelling Spatial Privacy Risks of Mobile Mixed Reality DataJaybie A. de Guzman, Aruna Seneviratne, Kanchana ThilakarathnaUbiComp 2021 · 被引用 22 次
