Exploring User-Centered Security Design for Usable Authentication Ceremonies

被引:11
|
作者
Fassl, Matthias [1 ,2 ]
Grober, Lea Theresa [1 ,2 ]
Krombholz, Katharina [1 ]
机构
[1] CISPA Helmholtz Ctr Informat Secur, Saarbrucken, Germany
[2] Saarland Univ, Saarbrucken, Germany
来源
CHI '21: PROCEEDINGS OF THE 2021 CHI CONFERENCE ON HUMAN FACTORS IN COMPUTING SYSTEMS | 2021年
关键词
Instant Messaging; Man-in-the-Middle (MitM); Authentication; Usability; User-Centered Design;
D O I
10.1145/3411764.3445164
中图分类号
TP39 [计算机的应用];
学科分类号
081203 ; 0835 ;
摘要
Security technology often follows a systems design approach that focuses on components instead of users. As a result, the users' needs and values are not sufficiently addressed, which has implications on security usability. In this paper, we report our lessons learned from applying a user-centered security design process to a well-understood security usability challenge, namely key authentication in secure instant messaging. Users rarely perform these key authentication ceremonies, which makes their end-to-end encrypted communication vulnerable. Our approach includes collaborative design workshops, an expert evaluation, iterative storyboard prototyping, and an online evaluation. While we could not demonstrate that our design approach resulted in improved usability or user experience, we found that user-centered prototypes can increase the users' comprehension of security implications. Hence, prototypes based on users' intuitions, needs, and values are useful starting points for approaching long-standing security challenges. Applying complementary design approaches may improve usability and user experience further.
引用
收藏
页数:15
相关论文
共 50 条
  • [41] Integration of Extreme Programming and User-Centered Design: Lessons Learned
    Hussain, Zahid
    Milchrahm, Harald
    Shahzad, Sara
    Slany, Wolfgang
    Tscheligi, Manfred
    Wolkerstorfer, Peter
    AGILE PROCESSES IN SOFTWARE ENGINEERING AND EXTREME PROGRAMMING: 10TH INTERNATIONAL CONFERENCE, XP 2009, 2009, 31 : 174 - +
  • [42] How do user-centered design studies contribute to cartography?
    Roth, Robert
    GEOGRAFIE, 2019, 124 (02): : 133 - 161
  • [43] Multimedia, User-Centered Design and Tourism: Simplicity, Originality and Universality
    Ficarra, Francisco V. Cipolla
    Ficarra, Miguel Cipolla
    NEW DIRECTIONS IN INTELLIGENT INTERACTIVE MULTIMEDIA, 2008, 142 : 461 - +
  • [44] Enhancing usability of a Citizen Observatory based on User-centered Design
    Degrossi, Livia Castro
    Abe, Bruno Bacelar
    de Albuquerque, Joao Porto
    de Mattos Fortes, Renata Pontin
    PROCEEDINGS OF THE 8TH INTERNATIONAL CONFERENCE ON SOFTWARE DEVELOPMENT AND TECHNOLOGIES FOR ENHANCING ACCESSIBILITY AND FIGHTING INFO-EXCLUSION (DSAI 2018), 2018, : 294 - 301
  • [45] Inclusive Education with Serious Games and User-Centered Design, exploring the intersection of accessibility and usability
    Screpnik, Claudia
    Bennasar, Francisca Negre
    Salinas, Jesus
    REVISTA LATINOAMERICANA DE TECNOLOGIA EDUCATIVA-RELATEC, 2024, 23 (02):
  • [46] User-centered Design in Clinical Handover: Exploring Post-Implementation Outcomes for Clinicians
    Wong, Ming Chao
    Cummings, Elizabeth
    Turner, Paul
    MEDINFO 2013: PROCEEDINGS OF THE 14TH WORLD CONGRESS ON MEDICAL AND HEALTH INFORMATICS, PTS 1 AND 2, 2013, 192 : 253 - 257
  • [47] User-centered design proposals for prototyping haptic user interfaces
    Bjelland, Hans V.
    Tangeland, Kristian
    HAPTIC AND AUDIO INTERACTION DESIGN, PROCEEDINGS, 2007, 4813 : 110 - 120
  • [48] User-centered design to improve clinical decision support in primary care
    Brunner, Julian
    Chuang, Emmeline
    Goldzweig, Caroline
    Cain, Cindy L.
    Sugar, Catherine
    Yano, Elizabeth M.
    INTERNATIONAL JOURNAL OF MEDICAL INFORMATICS, 2017, 104 : 56 - 64
  • [49] User-Centered Design for Interactive Maps: A Case Study in Crime Analysis
    Roth, Robert E.
    Ross, Kevin S.
    MacEachren, Alan M.
    ISPRS INTERNATIONAL JOURNAL OF GEO-INFORMATION, 2015, 4 (01) : 262 - 301
  • [50] The Contribution of Technical Communicators to the User-Centered Design Process of Personalized Systems
    van Velsen, Lex
    van der Geest, Thea
    Steehouder, Michael
    TECHNICAL COMMUNICATION, 2010, 57 (02) : 182 - 196