论文标题
使用变更模型的TTM阶段来提高采用2FA的进度,实验证据
Experimental Evidence for Using a TTM Stages of Change Model in Boosting Progress Toward 2FA Adoption
论文作者
论文摘要
健康心理学的行为改变想法还可以帮助提高最终用户遵守安全建议,例如采用两因素身份验证(2FA)。我们的研究适应了从健康和健康研究到网络安全环境的变化的跨理论模型阶段。我们首先创建和验证评估,以确定亚马逊机械土耳其人的工人,这些工人尚未启用2FA的帐户为第1阶段(无意采用2FA)或第2-3阶段(有些人打算采用2FA)。我们随机分配参与者,以接受各种内容(突出显示过程,规范或两者兼而有之)的信息干预措施。三天后,我们再次调查了Amazon 2FA采用阶段的工人。我们发现,干预组中的人比对照组中的行动/维护(第4-5阶段)表现出更多的进展(第4-5阶段),而收到内容的内容强调了启用2FA的过程的可能性更大的可能性更大的可能是采用2FA。我们的工作为在可用安全性中应用变更模型的阶段提供了支持。
Behavior change ideas from health psychology can also help boost end user compliance with security recommendations, such as adopting two-factor authentication (2FA). Our research adapts the Transtheoretical Model Stages of Change from health and wellness research to a cybersecurity context. We first create and validate an assessment to identify workers on Amazon Mechanical Turk who have not enabled 2FA for their accounts as being in Stage 1 (no intention to adopt 2FA) or Stages 2-3 (some intention to adopt 2FA). We randomly assigned participants to receive an informational intervention with varied content (highlighting process, norms, or both) or not. After three days, we again surveyed workers for Stage of Amazon 2FA adoption. We found that those in the intervention group showed more progress toward action/maintenance (Stages 4-5) than those in the control group, and those who received content highlighting the process of enabling 2FA were significantly more likely to progress toward 2FA adoption. Our work contributes support for applying a Stages of Change Model in usable security.