共 2 条
Finally Johnny Can Encrypt. But Does This Make Him Feel More Secure?
被引:1
|作者:
Gerber, Nina
[1
]
Zimmermann, Verena
[2
]
Henhapl, Birgit
[3
]
Emeroez, Sinem
[4
]
Volkamer, Melanie
[1
]
机构:
[1] Karlsruhe Inst Technol, SECUSO Secur Usabil Soc, Karlsruhe, Germany
[2] Tech Univ Darmstadt, Dept Human Sci, Darmstadt, Germany
[3] Tech Univ Darmstadt, SECUSO Secur Usabil Soc, Darmstadt, Germany
[4] Tech Univ Darmstadt, Darmstadt, Germany
来源:
13TH INTERNATIONAL CONFERENCE ON AVAILABILITY, RELIABILITY AND SECURITY (ARES 2018)
|
2019年
关键词:
WhatsApp;
E2E encryption;
Privacy;
Trust;
D O I:
10.1145/3230833.3230859
中图分类号:
TP301 [理论、方法];
学科分类号:
081202 ;
摘要:
End-to-end (E2E) encryption is an effective measure against privacy infringement. In 2016, it was introduced by WhatsApp for all users (of the latest app version) quasi overnight. However, it is unclear how non-expert users perceived this change, whether they trust WhatsApp as a provider of E2E encryption, and how their communication behavior changed. We conducted semi-structured interviews with twenty WhatsApp users to answer these questions. We found that about half of the participants perceived that even with E2E encryption, their messages could still be eavesdropped, for example by hackers and other criminals, governmental institutions, or WhatsApp's employees and cooperation partners. Many participants correctly identified sender and recipient as weakest points after the introduction of E2E encryption, but misconceptions were still present. For instance, users thought that messages were transmitted directly between two devices without being forwarded or stored on a server, or interpreted ' end-to-end' as a temporally end of communication. The majority of users stated to mistrust WhatsApp and its E2E encryption and presumed image-related reasons for the cost-free implementation. While most participants did not change their communication behavior, they reported to use protection strategies such as sending sensitive content via alternative channels even after the introduction of E2E encryption.
引用
收藏
页数:10
相关论文