Examining the Adoption and Abandonment of Security, Privacy, and Identity Theft Protection Practices

要旨

Users struggle to adhere to expert-recommended security and privacy practices. While prior work has studied initial adoption of such practices, little is known about the subsequent implementation and abandonment. We conducted an online survey (n=902) examining the adoption and abandonment of 30 commonly recommended practices. Security practices were more widely adopted than privacy and identity theft protection practices. Manual and fully automatic practices were more widely adopted than practices requiring recurring user interaction. Participants' gender, education, technical background, and prior negative experience are correlated with their levels of adoption. Furthermore, practices were abandoned when they were perceived as low-value, inconvenient, or when users overrode them with subjective judgment. We discuss how security, privacy, and identity theft protection recommendations and tools can be better aligned with user needs.

受賞
Honorable Mention
キーワード
user behavior
usable security and privacy
risk perception
security and privacy decision-making
adoption
abandonment
technology non-use
著者
Yixin Zou
University of Michigan, Ann Arbor, MI, USA
Kevin Roundy
NortonLifeLock Research Group, Culver City, CA, USA
Acar Tamersoy
NortonLifeLock Research Group, Culver City, CA, USA
Saurabh Shintre
NortonLifeLock Research Group, Mountain View, CA, USA
Johann Roturier
NortonLifeLock Research Group, Dublin, Ireland
Florian Schaub
University of Michigan, Ann Arbor, MI, USA
DOI

10.1145/3313831.3376570

論文URL

https://doi.org/10.1145/3313831.3376570

会議: CHI 2020

The ACM CHI Conference on Human Factors in Computing Systems (https://chi2020.acm.org/)

セッション: Security awareness, training & practices

Paper session
313B O'AHU
5 件の発表
2020-04-29 18:00:00
2020-04-29 19:15:00
日本語まとめ
読み込み中…