Privacy and Security in Smartphones: Usability Barriers, Behavioral Nudges, and Compliance with the LGPD
Resumo
The popularization of smartphones in Brazil increases users' exposure to cyber threats due to the accumulation of sensitive data on these devices. This article analyzes the usability challenges of native privacy and security settings on Android and iOS, especially for lay users. The research provides a multidisciplinary theoretical review involving information security, Human-Computer Interaction and the LGPD. The tension between usability and security and the importance of user-centered design are highlighted. The principles of privacy by design and security by default are discussed. The study argues that simply providing security tools is not enough. It is essential that the user understands and correctly configures these options. The text highlights the need for more intuitive interfaces and greater digital awareness.
Referências
FGV, “Pesquisa revela: Brasil tem 480 milhões de dispositivos digitais em uso, sendo 2,2 por habitante,” May 8 2024. [Online]. Available: [link].
Kaspersky, Mobile Malware Report 2023, 2023. [Online]. Available: [link].
PwC Brasil, “Ameaças cibernéticas: 2023 em retrospectiva,” Jan. 2024. [Online]. Available: [link].
A. Frik, F. Maiorana, D. Harrison, and M. A. Sasse, “Users’ expectations about and use of smartphone privacy and security settings,” in Proc. ACM CHI Conf. Human Factors in Computing Systems (CHI ’22), New York, NY, USA, Apr. 2022, Art. No. 351, pp. 1–15. DOI: 10.1145/3491102.3517504.
S. Rajarathnam and V. Singh, “Systematic literature review of cybersecurity and user experience,” in Proc. Cyber Awareness and Research Symp. (CARS 2024), Piscataway, NJ, USA, 2024, pp. 1–9. DOI: 10.1109/CARS61786.2024.10778869.
R. Acheampong, T. C. Balan, D. M. Popovici, E. Tuyishime, A. Rekeraho, and G. D. Voinea, “Balancing usability, user experience, security and privacy in XR systems: a multidimensional approach,” Int. J. Inf. Secur., vol. 24, Art. 112, Apr. 2025. DOI: 10.1007/s10207-025-01025-z.
Brasil, Lei nº 13.709, de 14 de agosto de 2018, Lei Geral de Proteção de Dados Pessoais (LGPD). [Online]. Available: [link].
F. Breitinger et al., “A survey on smartphone users’ security choices, awareness and education,” Comput. Secur., vol. 88, 2019, Art. No. 101647. [Online]. Available: [link].
H. J. Soares, N. V. Araujo, and P. de Souza, “Privacidade e segurança digital: um estudo sobre a percepção e o comportamento dos usuários sob a perspectiva do paradoxo da privacidade,” in Anais do Workshop sobre as Implicações da Computação na Sociedade (WICS 2020), Porto Alegre, Brazil, 2020, pp. 97–106.
G. T. Viana, C. Maciel, P. C. de Souza, and N. A. de Arruda, “Analysis of terms of use and privacy policies in social networks to treat users’ death,” in Communications in Computer and Information Science, vol. 1081, R. P. dos Santos, C. Maciel, and J. Viterbo, Eds. Cham, Switzerland: Springer, 2020, pp. 60–78.
O. J. Machado Neto, “Usabilidade da interface de dispositivos móveis: heurísticas e diretrizes para o design,” M.S. dissertation, Instituto de Ciências Matemáticas e de Computação, Univ. de São Paulo, São Carlos, Brazil, 2013. [Online]. Available: [link].
C. S. Silva, G. A. R. Barbosa, I. S. Silva, T. S. Silva, and F. H. Mourão, “Caracterização da usabilidade dos recursos de privacidade do Facebook para crianças e adolescentes,” Rev. Informática Aplicada, vol. 12, no. 1, pp. 15–33, 2016. [Online]. Available: [link].
D. A. Norman, The Design of Everyday Things: Revised and Expanded Edition, New York, NY, USA: Basic Books, 2013.
S. Prange et al., “I do [not] need that feature! Understanding users’ awareness and control of privacy permissions on Android smartphones,” in Proc. Symp. Usable Privacy and Security (SOUPS 2024), 2024, pp. 1–20.
T. Baumer et al., “Digital nudges for access reviews: guiding deciders to revoke excessive authorizations,” in Proc. Symp. Usable Privacy and Security (SOUPS 2024), 2024, pp. 1–18.
