How do non experts think about cyber attack consequences?

被引:2
|
作者
Jones, Keith S. [1 ]
Lodinger, Natalie R. [1 ]
Widlus, Benjamin P. [1 ]
Siami Namin, Akbar [2 ]
Maw, Emily [1 ]
Armstrong, Miriam E. [1 ]
机构
[1] Texas Tech Univ, Dept Psychol Sci, Lubbock, TX 79409 USA
[2] Texas Tech Univ, Dept Comp Sci, Lubbock, TX USA
基金
美国国家科学基金会;
关键词
Mental models; Cyberattack consequences; Warning message design; Cybersecurity; TRUTH-DEFAULT; DECEPTION;
D O I
10.1108/ICS-11-2020-0184
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Purpose Nonexperts do not always follow the advice in cybersecurity warning messages. To increase compliance, it is recommended that warning messages use nontechnical language, describe how the cyberattack will affect the user personally and do so in a way that aligns with how the user thinks about cyberattacks. Implementing those recommendations requires an understanding of how nonexperts think about cyberattack consequences. Unfortunately, research has yet to reveal nonexperts' thinking about cyberattack consequences. Toward that end, the purpose of this study was to examine how nonexperts think about cyberattack consequences. Design/methodology/approach Nonexperts sorted cyberattack consequences based on perceived similarity and labeled each group based on the reason those grouped consequences were perceived to be similar. Participants' labels were analyzed to understand the general themes and the specific features that are present in nonexperts' thinking. Findings The results suggested participants mainly thought about cyberattack consequences in terms of what the attacker is doing and what will be affected. Further, the results suggested participants thought about certain aspects of the consequences in concrete terms and other aspects of the consequences in general terms. Originality/value This research illuminates how nonexperts think about cyberattack consequences. This paper also reveals what aspects of nonexperts' thinking are more or less concrete and identifies specific terminology that can be used to describe aspects that fall into each case. Such information allows one to align warning messages to nonexperts' thinking in more nuanced ways than would otherwise be possible.
引用
收藏
页码:473 / 489
页数:17
相关论文
共 50 条
  • [1] How to think about a terror attack and consequences for mental health
    Heir, T.
    EUROPEAN JOURNAL OF PUBLIC HEALTH, 2017, 27
  • [2] How to Think About Cyber Conflicts Involving Non-state Actors
    McReynolds P.
    Philosophy & Technology, 2015, 28 (3) : 427 - 448
  • [3] How to think about cyber sovereignty: the case of China
    Hong, Yu
    Goodnight, G. Thomas
    CHINESE JOURNAL OF COMMUNICATION, 2020, 13 (01) : 8 - 26
  • [4] What do experts think about heart failure guidelines?
    Trullas, J. C.
    Formiga, F.
    Perez-Calvo, J. I.
    Manzano, L.
    REVISTA CLINICA ESPANOLA, 2016, 216 (08): : 457 - 459
  • [5] WHAT DO EXPERTS THINK ABOUT EXPERT DECISION MAKERS
    SHANTEAU, J
    ABDOLMOHAMMADI, MJ
    BULLETIN OF THE PSYCHONOMIC SOCIETY, 1992, 30 (06) : 474 - 474
  • [6] How do teachers think about their craft?
    Brown, S
    McIntyre, D
    TEACHER THINKING TWENTY YEARS ON: REVISITING PERSISTING PROBLEMS AND ADVANCES IN EDUCATION, 2003, : 37 - 44
  • [7] HOW DO PEOPLE THINK ABOUT INTELLIGENCE
    FITZGERALD, JM
    MELLOR, S
    MULTIVARIATE BEHAVIORAL RESEARCH, 1988, 23 (02) : 143 - 157
  • [8] How Do Sponsors Think about "Month 13"?
    Lenard, Patti Tamara
    REFUGE, 2019, 35 (02) : 64 - 73
  • [9] How do employers think about older workers?
    Axelrad, Hila
    QUALITATIVE RESEARCH IN ORGANIZATIONS AND MANAGEMENT, 2022, 17 (02): : 201 - 220
  • [10] HOW MUCH DO WE THINK ABOUT GENDER?
    Risko, James R.
    CHEMICAL ENGINEERING PROGRESS, 2019, 115 (04) : 4 - 4