Who creates strong passwords when nudging fails

The use of strong passwords is viewed as a recommended cybersecurity practice, as the hacking of weak passwords led to major cybersecurity breaches. The present research investigated whether nudging with messages based on participants’ self-schemas could lead them to create stronger passwords. We mo...

Descripción completa

Guardado en:
Detalles Bibliográficos
Autores principales: Shelia M. Kennison, Ian T. Jones, Victoria H. Spooner, D. Eric Chan-Tin
Formato: article
Lenguaje:EN
Publicado: Elsevier 2021
Materias:
Acceso en línea:https://doaj.org/article/2d88409e66eb4e13a079c495bfcd8d57
Etiquetas: Agregar Etiqueta
Sin Etiquetas, Sea el primero en etiquetar este registro!
id oai:doaj.org-article:2d88409e66eb4e13a079c495bfcd8d57
record_format dspace
spelling oai:doaj.org-article:2d88409e66eb4e13a079c495bfcd8d572021-12-01T05:04:42ZWho creates strong passwords when nudging fails2451-958810.1016/j.chbr.2021.100132https://doaj.org/article/2d88409e66eb4e13a079c495bfcd8d572021-08-01T00:00:00Zhttp://www.sciencedirect.com/science/article/pii/S2451958821000804https://doaj.org/toc/2451-9588The use of strong passwords is viewed as a recommended cybersecurity practice, as the hacking of weak passwords led to major cybersecurity breaches. The present research investigated whether nudging with messages based on participants’ self-schemas could lead them to create stronger passwords. We modeled our study on prior health-related research demonstrating positive results using messages based on self-schema categories (i.e., True Colors categories -compassionate, loyal, intellectual, and adventurous). We carried out an online study, one with 256 (185 women, 66 men, 5 other) undergraduates and one with 424 (240 men, 179 women, 5 other) Amazon Mechanical Turk (MTurk) workers, in which we randomly assigned participants to receive messages that matched or mismatched their self-schema. We also investigated whether differences across the Big Five personality traits, secure password knowledge, attitudes and behavior, need for cognition, and general risk-taking predicted the strength of passwords that participants created during the study. Multiple individual difference variables predicted password strength (i.e., conscientiousness, emotional stability, need for cognition, self-reported secure password knowledge, attitude, and behavior, and general risk-taking). MTurk workers had higher levels of cybersecurity knowledge and created stronger passwords than college students. The nudging messages did not lead to stronger passwords. Implications for strategies to increase the use of secure passwords are discussed.Shelia M. KennisonIan T. JonesVictoria H. SpoonerD. Eric Chan-TinElsevierarticleCybersecuritySecure passwordsPersonality traitsNudgingRisk-takingSelf-schemasElectronic computers. Computer scienceQA75.5-76.95PsychologyBF1-990ENComputers in Human Behavior Reports, Vol 4, Iss , Pp 100132- (2021)
institution DOAJ
collection DOAJ
language EN
topic Cybersecurity
Secure passwords
Personality traits
Nudging
Risk-taking
Self-schemas
Electronic computers. Computer science
QA75.5-76.95
Psychology
BF1-990
spellingShingle Cybersecurity
Secure passwords
Personality traits
Nudging
Risk-taking
Self-schemas
Electronic computers. Computer science
QA75.5-76.95
Psychology
BF1-990
Shelia M. Kennison
Ian T. Jones
Victoria H. Spooner
D. Eric Chan-Tin
Who creates strong passwords when nudging fails
description The use of strong passwords is viewed as a recommended cybersecurity practice, as the hacking of weak passwords led to major cybersecurity breaches. The present research investigated whether nudging with messages based on participants’ self-schemas could lead them to create stronger passwords. We modeled our study on prior health-related research demonstrating positive results using messages based on self-schema categories (i.e., True Colors categories -compassionate, loyal, intellectual, and adventurous). We carried out an online study, one with 256 (185 women, 66 men, 5 other) undergraduates and one with 424 (240 men, 179 women, 5 other) Amazon Mechanical Turk (MTurk) workers, in which we randomly assigned participants to receive messages that matched or mismatched their self-schema. We also investigated whether differences across the Big Five personality traits, secure password knowledge, attitudes and behavior, need for cognition, and general risk-taking predicted the strength of passwords that participants created during the study. Multiple individual difference variables predicted password strength (i.e., conscientiousness, emotional stability, need for cognition, self-reported secure password knowledge, attitude, and behavior, and general risk-taking). MTurk workers had higher levels of cybersecurity knowledge and created stronger passwords than college students. The nudging messages did not lead to stronger passwords. Implications for strategies to increase the use of secure passwords are discussed.
format article
author Shelia M. Kennison
Ian T. Jones
Victoria H. Spooner
D. Eric Chan-Tin
author_facet Shelia M. Kennison
Ian T. Jones
Victoria H. Spooner
D. Eric Chan-Tin
author_sort Shelia M. Kennison
title Who creates strong passwords when nudging fails
title_short Who creates strong passwords when nudging fails
title_full Who creates strong passwords when nudging fails
title_fullStr Who creates strong passwords when nudging fails
title_full_unstemmed Who creates strong passwords when nudging fails
title_sort who creates strong passwords when nudging fails
publisher Elsevier
publishDate 2021
url https://doaj.org/article/2d88409e66eb4e13a079c495bfcd8d57
work_keys_str_mv AT sheliamkennison whocreatesstrongpasswordswhennudgingfails
AT iantjones whocreatesstrongpasswordswhennudgingfails
AT victoriahspooner whocreatesstrongpasswordswhennudgingfails
AT dericchantin whocreatesstrongpasswordswhennudgingfails
_version_ 1718405531817738240