{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,5,17]],"date-time":"2026-05-17T09:10:07Z","timestamp":1779009007730,"version":"3.51.4"},"publisher-location":"New York, NY, USA","reference-count":33,"publisher":"ACM","license":[{"start":{"date-parts":[[2026,5,10]],"date-time":"2026-05-10T00:00:00Z","timestamp":1778371200000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/creativecommons.org\/licenses\/by\/4.0\/legalcode"}],"funder":[{"name":"NSF","award":["DGE-2409851"],"award-info":[{"award-number":["DGE-2409851"]}]},{"name":"NSF","award":["OAC-2528534"],"award-info":[{"award-number":["OAC-2528534"]}]},{"name":"Army Research Laboratory","award":["W911NF-23-2-0225"],"award-info":[{"award-number":["W911NF-23-2-0225"]}]}],"content-domain":{"domain":["dl.acm.org"],"crossmark-restriction":true},"short-container-title":[],"published-print":{"date-parts":[[2026,5,11]]},"DOI":"10.1145\/3774906.3802795","type":"proceedings-article","created":{"date-parts":[[2026,5,8]],"date-time":"2026-05-08T14:20:14Z","timestamp":1778250014000},"page":"1129-1136","update-policy":"https:\/\/doi.org\/10.1145\/crossmark-policy","source":"Crossref","is-referenced-by-count":0,"title":["Characterizing Security and Privacy Risks in Smart Home IoT Device Access Sharing"],"prefix":"10.1145","author":[{"ORCID":"https:\/\/orcid.org\/0000-0003-1535-5253","authenticated-orcid":false,"given":"Yinxin","family":"Wan","sequence":"first","affiliation":[{"name":"University of Massachusetts Boston, Boston, Massachusetts, USA"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0009-0004-5049-6849","authenticated-orcid":false,"given":"Ting","family":"Xu","sequence":"additional","affiliation":[{"name":"University of Massachusetts Boston, Boston, Massachusetts, USA"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-6023-7689","authenticated-orcid":false,"given":"Tran Ngoc Bao","family":"Huynh","sequence":"additional","affiliation":[{"name":"Worcester Polytechnic Institute, Worcester, Massachusetts, USA"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-6890-6429","authenticated-orcid":false,"given":"Jun","family":"Dai","sequence":"additional","affiliation":[{"name":"Worcester Polytechnic Institute, Worcester, Massachusetts, USA"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-0321-2338","authenticated-orcid":false,"given":"Xiaoyan","family":"Sun","sequence":"additional","affiliation":[{"name":"Worcester Polytechnic Institute, Worcester, Massachusetts, USA"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0001-6659-6773","authenticated-orcid":false,"given":"Kuai","family":"Xu","sequence":"additional","affiliation":[{"name":"Arizona State University, Glendale, Arizona, USA"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-5833-8894","authenticated-orcid":false,"given":"Guoliang","family":"Xue","sequence":"additional","affiliation":[{"name":"Arizona State University, Tempe, Arizona, USA"}],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"320","published-online":{"date-parts":[[2026,5,10]]},"reference":[{"key":"e_1_3_3_1_2_2","doi-asserted-by":"publisher","DOI":"10.1109\/SP.2019.00013"},{"key":"e_1_3_3_1_3_2","doi-asserted-by":"crossref","unstructured":"Z.\u00a0Berkay Celik Earlence Fernandes Eric Pauley Gang Tan and Patrick McDaniel. 2019. Program Analysis of Commodity IoT Applications for Security and Privacy: Challenges and Opportunities. ACM Computing Surveys 52 4 (2019) 1\u201330.","DOI":"10.1145\/3333501"},{"key":"e_1_3_3_1_4_2","doi-asserted-by":"publisher","DOI":"10.1109\/SP46214.2022.9833620"},{"key":"e_1_3_3_1_5_2","volume-title":"Proc. of USENIX Security","author":"Chi Haotian","year":"2023","unstructured":"Haotian Chi, Qiang Zeng, and Xiaojiang Du. 2023. Detecting and Handling IoT Interaction Threats in Multi-Platform Multi-Control-Channel Smart Homes. In Proc. of USENIX Security."},{"key":"e_1_3_3_1_6_2","volume-title":"Proc. of USENIX WOOT","author":"Diao Chengsong","year":"2025","unstructured":"Chengsong Diao, Danielle Dang, Sierra Lira, Angela Tsai, Miro Haller, and Nadia Heninger. 2025. No Key, No Problem: Vulnerabilities in Master Lock Smart Locks. In Proc. of USENIX WOOT."},{"key":"e_1_3_3_1_7_2","doi-asserted-by":"publisher","DOI":"10.1145\/3243734.3243865"},{"key":"e_1_3_3_1_8_2","doi-asserted-by":"publisher","DOI":"10.1109\/SP.2016.44"},{"key":"e_1_3_3_1_9_2","unstructured":"Frida. https:\/\/frida.re\/."},{"key":"e_1_3_3_1_10_2","volume-title":"Proc. of USENIX Security","author":"Fu Chenglong","year":"2021","unstructured":"Chenglong Fu, Qiang Zeng, and Xiaojiang Du. 2021. HAWatcher: Semantics-Aware Anomaly Detection for Appified Smart Homes. In Proc. of USENIX Security."},{"key":"e_1_3_3_1_11_2","doi-asserted-by":"publisher","DOI":"10.1145\/3618257.3624830"},{"key":"e_1_3_3_1_12_2","unstructured":"HTTP Toolkit. https:\/\/httptoolkit.com\/."},{"key":"e_1_3_3_1_13_2","volume-title":"Proc. of ACM CCS","author":"Jia Yan","year":"2021","unstructured":"Yan Jia, Bin Yuan, Luyi Xing, Dongfang Zhao, Yifan Zhang, XiaoFeng Wang, Yijing Liu, Kaimin Zheng, Peyton Crnjak, Yuqing Zhang, Deqing Zou, and Hai Jin. 2021. Who\u2019s in control? on security risks of disjointed IoT device management channels. In Proc. of ACM CCS."},{"key":"e_1_3_3_1_14_2","doi-asserted-by":"publisher","DOI":"10.1145\/3560905.3568535"},{"key":"e_1_3_3_1_15_2","doi-asserted-by":"publisher","DOI":"10.1109\/SP46215.2023.10179475"},{"key":"e_1_3_3_1_16_2","volume-title":"Proc. of USENIX Security","author":"Nan Yuhong","year":"2023","unstructured":"Yuhong Nan, Xueqiang Wang, Luyi Xing, Xiaojing Liao, Ruoyu Wu, Jianliang Wu, Yifan Zhang, and XiaoFeng Wang. 2023. Are You Spying on Me? Large-Scale Analysis on IoT Data Exposure through Companion Apps. In Proc. of USENIX Security."},{"key":"e_1_3_3_1_17_2","doi-asserted-by":"publisher","DOI":"10.1145\/3548606.3560644"},{"key":"e_1_3_3_1_18_2","doi-asserted-by":"publisher","DOI":"10.14722\/ndss.2023.23070"},{"key":"e_1_3_3_1_19_2","doi-asserted-by":"publisher","DOI":"10.1145\/3487552.3487830"},{"key":"e_1_3_3_1_20_2","unstructured":"PCAPDroid. https:\/\/emanuele-f.github.io\/PCAPdroid\/."},{"key":"e_1_3_3_1_21_2","doi-asserted-by":"publisher","DOI":"10.1145\/3355369.3355577"},{"key":"e_1_3_3_1_22_2","doi-asserted-by":"publisher","DOI":"10.1145\/2906388.2906392"},{"key":"e_1_3_3_1_23_2","doi-asserted-by":"publisher","DOI":"10.1145\/3384419.3430727"},{"key":"e_1_3_3_1_24_2","volume-title":"Proc. of NDSS","author":"Trimananda Rahmadi","year":"2019","unstructured":"Rahmadi Trimananda, Janus Varmarken, Athina Markopoulou, and Brian Demsky. 2019. PingPong: Packet-Level Signatures for Smart Home Device Events. In Proc. of NDSS."},{"key":"e_1_3_3_1_25_2","doi-asserted-by":"crossref","unstructured":"Yinxin Wan Kuai Xu Feng Wang and Guoliang Xue. 2021. Characterizing and Mining Traffic Patterns of IoT Devices in Edge Networks. IEEE Transactions on Network Science and Engineering 8 1 (2021) 89\u2013101.","DOI":"10.1109\/TNSE.2020.3026961"},{"key":"e_1_3_3_1_26_2","volume-title":"Proc. of USENIX Security","author":"Wang Xueqiang","year":"2019","unstructured":"Xueqiang Wang, Yuqiong Sun, Susanta Nanda, and XiaoFeng Wang. 2019. Looking from the mirror: evaluating IoT device security through mobile companion apps. In Proc. of USENIX Security."},{"key":"e_1_3_3_1_27_2","doi-asserted-by":"publisher","DOI":"10.56553\/popets-2025-0040"},{"key":"e_1_3_3_1_28_2","doi-asserted-by":"publisher","DOI":"10.1145\/3326285.3329072"},{"key":"e_1_3_3_1_29_2","doi-asserted-by":"publisher","DOI":"10.1145\/3646547.3688433"},{"key":"e_1_3_3_1_30_2","volume-title":"Proc. of USENIX Security","author":"Yuan Bin","year":"2020","unstructured":"Bin Yuan, Yan Jia, Luyi Xing, Dongfang Zhao, XiaoFeng Wang, and Yuqing Zhang. 2020. Shattered Chain of Trust: Understanding Security Risks in Cross-Cloud IoT Access Delegation. In Proc. of USENIX Security."},{"key":"e_1_3_3_1_31_2","doi-asserted-by":"crossref","unstructured":"Bin Yuan Maogen Yang Zhen Xu Qunjinming Chen Zhanxiang Song Zhen Li Deqing Zou and Hai Jin. 2024. Leakage of Authorization-Data in IoT Device Sharing: New Attacks and Countermeasure. IEEE Transactions on Dependable and Secure Computing 21 4 (2024) 3196 \u2013 3210.","DOI":"10.1109\/TDSC.2023.3323713"},{"key":"e_1_3_3_1_32_2","volume-title":"Proc. of USENIX Security","author":"Zeng Eric","year":"2019","unstructured":"Eric Zeng and Franziska Roesner. 2019. Understanding and Improving Security and Privacy in Multi-User Smart Homes: A Design Exploration and In-Home User Study. In Proc. of USENIX Security."},{"key":"e_1_3_3_1_33_2","volume-title":"Proc. of USENIX Security","author":"Zhou Wei","year":"2019","unstructured":"Wei Zhou, Yan Jia, Yao Yao, Lipeng Zhu, Le Guan, Yuhang Mao, Peng Liu, and Yuqing Zhang. 2019. Discovering and Understanding the Security Hazards in the Interactions between IoT Devices, Mobile Apps, and Clouds on Smart Home Platforms. In Proc. of USENIX Security."},{"key":"e_1_3_3_1_34_2","doi-asserted-by":"publisher","DOI":"10.1145\/3548606.3560590"}],"event":{"name":"SenSys '26: ACM\/IEEE International Conference on Embedded Artificial Intelligence and Sensing Systems","location":"Saint Malo France","acronym":"SenSys '26","sponsor":["SIGBED ACM Special Interest Group on Embedded Systems","SIGMOBILE ACM Special Interest Group on Mobility of Systems, Users, Data and Computing","IEEE CS"]},"container-title":["Proceedings of the 2026 ACM\/IEEE International Conference on Embedded Artificial Intelligence and Sensing Systems"],"original-title":[],"link":[{"URL":"https:\/\/dl.acm.org\/doi\/abs\/10.1145\/3774906.3802795","content-type":"text\/html","content-version":"vor","intended-application":"syndication"},{"URL":"https:\/\/dl.acm.org\/doi\/pdf\/10.1145\/3774906.3802795","content-type":"application\/pdf","content-version":"vor","intended-application":"syndication"},{"URL":"https:\/\/dl.acm.org\/doi\/pdf\/10.1145\/3774906.3802795","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2026,5,17]],"date-time":"2026-05-17T08:36:57Z","timestamp":1779007017000},"score":1,"resource":{"primary":{"URL":"https:\/\/dl.acm.org\/doi\/10.1145\/3774906.3802795"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2026,5,10]]},"references-count":33,"alternative-id":["10.1145\/3774906.3802795","10.1145\/3774906"],"URL":"https:\/\/doi.org\/10.1145\/3774906.3802795","relation":{},"subject":[],"published":{"date-parts":[[2026,5,10]]},"assertion":[{"value":"2026-05-10","order":3,"name":"published","label":"Published","group":{"name":"publication_history","label":"Publication History"}}]}}