Addressing Misconceptions About Password Security Effectively

被引:6
|
作者
Mayer, Peter [1 ]
Volkamer, Melanie [1 ,2 ]
机构
[1] Tech Univ Darmstadt, SECUSO Secur Usabil Soc, Darmstadt, Germany
[2] Karlstad Univ, Privacy & Secur Res Grp, Karlstad, Sweden
关键词
password security; misconceptions; literature review; user study;
D O I
10.1145/3167996.3167998
中图分类号
TP301 [理论、方法];
学科分类号
081202 ;
摘要
Nowadays, most users need more passwords than they can handle. Consequently, users have developed a multitude of strategies to cope with this situation. Some of these coping strategies are based on misconceptions about password security. In such cases, the users are unaware of their insecure password practices. Addressing the misconceptions is vital in order to decrease insecure coping strategies. We conducted a systematic literature review with the goal to provide an overview of the misconceptions about password security. Our literature review revealed that misconceptions exist in basically all aspects of password security. Furthermore, we developed interventions to address these misconceptions. Then, we evaluated the interventions' effectiveness in decreasing the misconceptions at three small and medium sized enterprises (SME). Our results show that the interventions decrease the overall prevalence of misconceptions significantly in the participating employees.
引用
收藏
页码:16 / 27
页数:12
相关论文
共 50 条