Scanning your connection...
Back to Glossary
Attacks

What is Shoulder Surfing?

Observing someone's screen or keyboard to steal passwords, PINs, or other sensitive information, one of the simplest and most effective attacks.

Shoulder surfing is low-tech, requires no tools, and is surprisingly effective.

Where It Happens

  • ATMs (PIN observation)
  • Coffee shops and coworking spaces
  • Airports and public transit
  • Conference rooms and offices
  • Any public space where you use a device

What Attackers Observe

  • Login credentials as you type them
  • Financial information on screen
  • Private messages and emails
  • Unlock patterns or PINs

Protection

  1. Privacy screen protector: Makes screen invisible from side angles
  2. Biometric authentication: No typing to observe
  3. Password manager + auto-fill: Credentials aren't visible during entry
  4. Awareness: Position yourself with your back to a wall
  5. Shield your PIN: Cover the keypad at ATMs

Related Terms

Have more questions?

Use our guided flow to get the right next privacy step for Shoulder Surfing.

Open Guided Flow