TY - CONF A1 - Saatjohann, Christoph A1 - Ising, Fabian A1 - Krings, Luise A1 - Schinzel, Sebastian T1 - STALK: security analysis of smartwatches for kids T2 - ARES 2020: The 15th International Conference on Availability, Reliability and Security / Editors: Melanie Volkamer, Christian Wressnegger N2 - Smart wearable devices become more and more prevalent in the age of the Internet of Things. While people wear them as fitness trackers or full-fledged smartphones, they also come in unique versions as smartwatches for children. These watches allow parents to track the location of their children in real-time and offer a communication channel between parent and child. In this paper, we analyzed six smartwatches for children and the corresponding backend platforms and applications for security and privacy concerns. We structure our analysis in distinct attacker scenarios and collect and describe related literature outside academic publications. Using a cellular network Man-in-the-Middle setup, reverse engineering, and dynamic analysis, we found several severe security issues, allowing for sensitive data disclosure, complete watch takeover, and illegal remote monitoring functionality. KW - Security KW - Privacy Y1 - 2020 UR - https://www.hb.fh-muenster.de/opus4/frontdoor/index/index/docId/12354 UR - https://nbn-resolving.org/urn:nbn:de:hbz:836-opus-123548 SN - 978-1-4503-8833-7 SP - 1 EP - 10 ER -