Guidelines for ethical nudging in password authentication
Renaud, Karen and Zimmerman, Verena (2018) Guidelines for ethical nudging in password authentication. SAIEE African Research Journal, 109 (2). pp. 102-118. ISSN 1991-1696 (https://doi.org/10.23919/SAIEE.2018.8531951)
Preview |
Text.
Filename: Renaud_Zimmerman_SARJ2018_Guidelines_ethical_nudging_password_authentication.pdf
Accepted Author Manuscript Download (896kB)| Preview |
Abstract
Nudging has been adopted by many disciplines in the last decade in order to achieve behavioural change. Information security is no exception. A number of attempts have been made to nudge end-users towards stronger passwords. Here we report on our deployment of an enriched nudge displayed to participants on the system enrolment page, when a password has to be chosen. The enriched nudge was successful in that participants chose significantly longer and stronger passwords. One thing that struck us as we designed and tested this nudge was that we were unable to find any nudge-specific ethical guidelines to inform our experimentation in this context. This led us to reflect on the ethical implications of nudge testing, specifically in the password authentication context. We mined the nudge literature and derived a number of core principles of ethical nudging. We tailored these to the password authentication context, and then show how they can be applied by assessing the ethics of our own nudge. We conclude with a set of preliminary guidelines derived from our study to inform other researchers planning to deploy nudge-related techniques in this context.
ORCID iDs
Renaud, Karen ORCID: https://orcid.org/0000-0002-7187-6531 and Zimmerman, Verena;-
-
Item type: Article ID code: 75298 Dates: DateEvent1 June 2018Published21 February 2018Published Online1 December 2017AcceptedSubjects: Science > Mathematics > Electronic computers. Computer science Department: Faculty of Science > Computer and Information Sciences Depositing user: Pure Administrator Date deposited: 04 Feb 2021 13:27 Last modified: 17 Nov 2024 01:19 URI: https://strathprints.strath.ac.uk/id/eprint/75298