TU Darmstadt / ULB / TUbiblio

It is not about the design - it is about the content! Making warnings more efficient by communicating risks appropriately

Kauer, Michaela ; Pfeiffer, Thomas ; Volkamer, Melanie ; Theuerling, Heike ; Bruder, Ralph
Hrsg.: Suri, Neeraj ; Waidner, Michael (2012)
It is not about the design - it is about the content! Making warnings more efficient by communicating risks appropriately.
Sicherheit 2012 - Sicherheit, Schutz und Zuverlässigkeit - 6. Jahrestagung des Fachbereichs Sicherheit der Gesellschaft fuer Informatik e.V. (GI). Darmstadt (07.03.2012-09.03.2012)
Konferenzveröffentlichung, Zweitveröffentlichung, Postprint

WarnungEs ist eine neuere Version dieses Eintrags verfügbar.

Kurzbeschreibung (Abstract)

Most studies in usable security research aim at a quantification of persons, who – depending on the subject – fall for phishing, pass on their password, download malicious software and so on. In contrast, little research is done to identify the reasons for such insecure behavior. Within this paper, the result of a laboratory study is presented in which participants were confronted with different certificate warnings. Those warnings were presented when the participants tried to access different websites with different criticality (online banking, online shopping, social networks and information sites). Besides quantitative analyses of participants who were willing to use a websites despite the warning, the main focus of this work is to identify reasons for their decision. As a result of our study those risks are identified which were unacceptable for most participants to take and thereby might help to prevent unsecure usage behavior in the web by rewording warnings according to the perceived risks.

Typ des Eintrags: Konferenzveröffentlichung
Erschienen: 2012
Herausgeber: Suri, Neeraj ; Waidner, Michael
Autor(en): Kauer, Michaela ; Pfeiffer, Thomas ; Volkamer, Melanie ; Theuerling, Heike ; Bruder, Ralph
Art des Eintrags: Zweitveröffentlichung
Titel: It is not about the design - it is about the content! Making warnings more efficient by communicating risks appropriately
Sprache: Englisch
Publikationsjahr: 28 September 2012
Ort: Darmstadt
Publikationsdatum der Erstveröffentlichung: 2012
Ort der Erstveröffentlichung: Bonn
Verlag: Gesellschaft für Informatik e.V. (GI)
Buchtitel: Sicherheit 2012 - Sicherheit, Schutz und Zuverlässigkeit - Beiträge der 6. Jahrestagung des Fachbereichs Sicherheit der Gesellschaft fuer Informatik e.V. (GI)
Reihe: GI-Edition - Lecture Notes in Informatics (LNI)
Band einer Reihe: P-195
Veranstaltungstitel: Sicherheit 2012 - Sicherheit, Schutz und Zuverlässigkeit - 6. Jahrestagung des Fachbereichs Sicherheit der Gesellschaft fuer Informatik e.V. (GI)
Veranstaltungsort: Darmstadt
Veranstaltungsdatum: 07.03.2012-09.03.2012
URL / URN: https://tuprints.ulb.tu-darmstadt.de/3092
Zugehörige Links:
Kurzbeschreibung (Abstract):

Most studies in usable security research aim at a quantification of persons, who – depending on the subject – fall for phishing, pass on their password, download malicious software and so on. In contrast, little research is done to identify the reasons for such insecure behavior. Within this paper, the result of a laboratory study is presented in which participants were confronted with different certificate warnings. Those warnings were presented when the participants tried to access different websites with different criticality (online banking, online shopping, social networks and information sites). Besides quantitative analyses of participants who were willing to use a websites despite the warning, the main focus of this work is to identify reasons for their decision. As a result of our study those risks are identified which were unacceptable for most participants to take and thereby might help to prevent unsecure usage behavior in the web by rewording warnings according to the perceived risks.

Schlagworte:
Einzelne SchlagworteSprache
security indicators, perceived risk, user study, certificate warningsEnglisch
Status: Postprint
URN: urn:nbn:de:tuda-tuprints-30922
Sachgruppe der Dewey Dezimalklassifikatin (DDC): 000 Allgemeines, Informatik, Informationswissenschaft > 004 Informatik
100 Philosophie und Psychologie > 150 Psychologie
600 Technik, Medizin, angewandte Wissenschaften > 620 Ingenieurwissenschaften und Maschinenbau
Fachbereich(e)/-gebiet(e): 16 Fachbereich Maschinenbau
16 Fachbereich Maschinenbau > Institut für Arbeitswissenschaft (IAD)
20 Fachbereich Informatik
20 Fachbereich Informatik > Theoretische Informatik
Hinterlegungsdatum: 28 Sep 2012 09:20
Letzte Änderung: 09 Aug 2024 09:12
PPN: 386256330
Schlagworte:
Einzelne SchlagworteSprache
security indicators, perceived risk, user study, certificate warningsEnglisch
Export:
Suche nach Titel in: TUfind oder in Google

Verfügbare Versionen dieses Eintrags

Frage zum Eintrag Frage zum Eintrag

Optionen (nur für Redakteure)
Redaktionelle Details anzeigen Redaktionelle Details anzeigen