eprintid: 1425998
rev_number: 24
eprint_status: archive
userid: 608
dir: disk0/01/42/59/98
datestamp: 2014-04-03 18:59:57
lastmod: 2020-02-12 17:12:32
status_changed: 2014-04-03 18:59:57
type: article
metadata_visibility: show
item_issues_count: 0
creators_name: Sasse, MA
creators_name: Palmer, CC
title: Protecting you
ispublished: pub
divisions: UCL
divisions: A01
divisions: B04
divisions: C05
divisions: F48
keywords: risk, spear phishing, usable security
note: © 2014 IEEE. Personal use of this material (accepted version) is permitted. Permission from IEEE must be obtained for all other uses, in any current or future media, including reprinting/republishing this material for advertising or promotional purposes, creating new collective works, for resale or redistribution to servers or lists, or reuse of any copyrighted component of this work in other works.
abstract: Usable security is often seen as simply an enabler of good security behavior: if the actions required aren't too difficult or effortful, users will do so. But human-centered design of security means enabling users to make informed security choices. First, their preferred choice needs to be available. Authors of privacy policies should take note here, and service providers need to manage their security issues without burdening legitimate customers (solving CAPTCHAs to prove you are human isn't something a customer would choose to do, ever). Second, we need to accept that users sometimes choose to take risks. Protecting users means giving them an accurate understanding of possible consequences, and the likelihood of them occurring.
date: 2014-01
official_url: http://dx.doi.org/10.1109/MSP.2014.11
vfaculties: VENG
oa_status: green
full_text_type: other
language: eng
primo: open
primo_central: open_green
verified: verified_manual
elements_source: Scopus
elements_id: 939728
doi: 10.1109/MSP.2014.11
lyricists_name: Sasse, Martina
lyricists_id: MASAS22
full_text_status: public
publication: IEEE Security and Privacy
volume: 12
number: 1
pagerange: 11 - 13
issn: 1540-7993
citation:        Sasse, MA;    Palmer, CC;      (2014)    Protecting you.                   IEEE Security and Privacy , 12  (1)   11 - 13.    10.1109/MSP.2014.11 <https://doi.org/10.1109/MSP.2014.11>.       Green open access   
 
document_url: https://discovery.ucl.ac.uk/id/eprint/1425998/1/Sasse-Palmer-2014-ProtectingYou.pdf