Agent-Based Modeling of User Circumvention of Security

被引:2
|
作者
Kothari, Vijay [1 ]
Blythe, Jim [2 ]
Smith, Sean [1 ]
Koppel, Ross [3 ]
机构
[1] Dartmouth Coll, Dept Comp Sci, Hanover, NH 03755 USA
[2] Univ Southern Calif, Inst Informat Sci, Los Angeles, CA 90089 USA
[3] Univ Penn, Dept Sociol, Philadelphia, PA 19104 USA
关键词
D O I
10.1145/2602945.2602948
中图分类号
TP31 [计算机软件];
学科分类号
081202 ; 0835 ;
摘要
Security subsystems are often designed with flawed assumptions arising from system designers' faulty mental models. Designers tend to assume that users behave according to some textbook ideal, and to consider each potential exposure/interface in isolation. However, fieldwork continually shows that even well-intentioned users often depart from this ideal and circumvent controls in order to perform daily work tasks, and that "incorrect" user behaviors can create unexpected links between otherwise "independent" interfaces. When it comes to security features and parameters, designers try to find the choices that optimize security utility-except these flawed assumptions give rise to an incorrect curve, and lead to choices that actually make security worse, in practice. We propose that improving this situation requires giving designers more accurate models of real user behavior and how it influences aggregate system security. Agent-based modeling can be a fruitful first step here. In this paper, we study a particular instance of this problem, propose user-centric techniques designed to strengthen the security of systems while simultaneously improving the usability of them, and propose further directions of inquiry.
引用
收藏
页数:4
相关论文
共 50 条
  • [41] Agent-Based Modeling for the Theoretical Biologist
    Griffin W.A.
    [J]. Biological Theory, 2006, 1 (4) : 404 - 409
  • [42] Agent-Based Modeling and Simulation in Archaeology
    Grow, Andre
    Flache, Andreas
    Wittek, Rafael
    [J]. JASSS-THE JOURNAL OF ARTIFICIAL SOCIETIES AND SOCIAL SIMULATION, 2015, 18 (02):
  • [43] Time modeling in agent-based simulation
    Taillandier, Patrick
    [J]. INFORMATION GEOGRAPHIQUE, 2015, 79 (02): : 65 - 78
  • [44] An adaptive regression for agent-based modeling
    Tsyplakov, A. A.
    [J]. EKONOMIKA I MATEMATICESKIE METODY-ECONOMICS AND MATHEMATICAL METHODS, 2023, 59 (04): : 111 - 125
  • [45] Agent-based modeling and simulation in construction
    Khodabandelu, Ali
    Park, JeeWoong
    [J]. AUTOMATION IN CONSTRUCTION, 2021, 131
  • [46] An agent-based paradigm for virtual modeling
    Conesa, Julian
    Camba, Jorge D.
    Angel Aranda, Jose
    Contero, Manuel
    [J]. EXPERT SYSTEMS WITH APPLICATIONS, 2022, 192
  • [47] Visual modeling for agent-based applications
    Falchuk, B
    Karmouch, A
    [J]. COMPUTER, 1998, 31 (12) : 31 - +
  • [48] Agent-based modeling of lottery markets
    Chen, SH
    Chie, BT
    [J]. PROCEEDINGS OF THE 7TH JOINT CONFERENCE ON INFORMATION SCIENCES, 2003, : 1227 - 1230
  • [49] THE RELOGO AGENT-BASED MODELING LANGUAGE
    Ozik, Jonathan
    Collier, Nicholson T.
    Murphy, John T.
    North, Michael J.
    [J]. 2013 WINTER SIMULATION CONFERENCE (WSC), 2013, : 1560 - 1568
  • [50] Agent-based modeling in ecological economics
    Heckbert, Scott
    Baynes, Tim
    Reeson, Andrew
    [J]. ECOLOGICAL ECONOMICS REVIEWS, 2010, 1185 : 39 - 53