Familiarity with Internet threats: Beyond awareness

被引:34
作者
Jeske, Debora [1 ,2 ]
van Schaik, Paul [3 ,4 ]
机构
[1] Univ Coll Cork, Work & Org Psychol, Cork, Ireland
[2] Univ Coll Cork, Sch Appl Psychol, Cork, Ireland
[3] Univ Teesside, Dept Psychol Sport & Exercise, Middlesbrough, Cleveland, England
[4] Univ Teesside, Sch Social Sci Business & Law, Dept Psychol Sport & Exercise, Middlesbrough TS1 3BA, Cleveland, England
关键词
Internet experience; Familiarity; Internet threats; Computer behavior; Cluster analysis; Mediation; SECURITY; BEHAVIOR; PRIVACY; PERCEPTION; ATTITUDES;
D O I
10.1016/j.cose.2017.01.010
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
The degree of familiarity with threats is considered as a predictor of Internet attitudes and security behaviors. Cross-sectional data were collected from 323 student participants about their familiarity about 16 different Internet threats. All participants were presented with definitions of threats and then asked to state how familiar they were with each. Their responses were then used to identify the extent to which threat familiarity differed among the sample. Three different clusters were identified. One set of participants were relatively knowledgeable about all threats. Cluster 1 was therefore labeled experts (n = 92). Clusters 2 (n = 112) and 3 (n = 92) showed very different patterns as familiarity appeared to depend on the novelty of the threat (with one cluster showing more familiarity with well-known threats and the other more familiarity with new threats). Participants who were experts were more likely to engage in computer security behaviors than the other two groups. Mediation analysis showed that time spent on the Internet and the length of Internet experience were significant predictors of familiarity, and both were significant indirect predictors of computer security use (suggesting a relationship fully mediated by familiarity). Our paper makes several important contribution. First, the research reflects a systematic effort to investigate the relationship between the familiarity and engagement of online security activities. Second, we provide evidence that familiarity is a mediator between Internet use and security behaviors - making this a baseline variable to consider in terms of training on future threat-oriented interventions aimed at changing security behavior. This study also provides implications for practitioners to improve user familiarity of security risks. (C) 2017 Elsevier Ltd. All rights reserved.
引用
收藏
页码:129 / 141
页数:13
相关论文
共 55 条
  • [1] Acquisti A, 2004, ADV INF SEC, V12, P165
  • [2] Nudging Privacy The Behavioral Economics of Personal Information
    Acquisti, Alessandro
    [J]. IEEE SECURITY & PRIVACY, 2009, 7 (06) : 82 - 85
  • [3] Teaching information security management: Reflections and experiences
    [J]. 1600, Emerald Group Holdings Ltd. (22):
  • [4] How users perceive and respond to security messages: a NeuroIS research agenda and empirical study
    Anderson, Bonnie Brinton
    Vance, Anthony
    Kirwan, C. Brock
    Eargle, David
    Jenkins, Jeffrey L.
    [J]. EUROPEAN JOURNAL OF INFORMATION SYSTEMS, 2016, 25 (04) : 364 - 390
  • [5] [Anonymous], 2011, BBC NEWS TECHNOLOGY
  • [6] Actor-network theory and stakeholder collaboration: The case of Cultural Districts
    Arnaboldi, Michela
    Spiller, Nicola
    [J]. TOURISM MANAGEMENT, 2011, 32 (03) : 641 - 654
  • [7] The Quest to Replace Passwords: A Framework for Comparative Evaluation of Web Authentication Schemes
    Bonneau, Joseph
    Herley, Cormac
    van Oorschot, Paul C.
    Stajano, Frank
    [J]. 2012 IEEE SYMPOSIUM ON SECURITY AND PRIVACY (SP), 2012, : 553 - 567
  • [8] Choe EK, 2013, LECT NOTES COMPUT SC, V8119, P74
  • [9] Claar CL, 2012, J COMPUT INFORM SYST, V52, P20
  • [10] Clark JW, 2015, P CHI 2015 APR 18 23, DOI [10.1145/2702123.2702535, DOI 10.1145/2702123.2702535]