On the null relationship between personality types and passwords

On the null relationship between personality types and passwords
复制标题

论人格类型与密码之间的零关系

DOI:
10.1109/pst47121.2019.8949024
复制
发表时间:
2019
期刊:
2019 17th International Conference on Privacy, Security and Trust (PST)
影响因子:
--
通讯作者:
Mohammad Mannan
Mohammad Mannan
中科院分区:
--
文献类型:
--
作者:
Amit Maraj;Miguel Vargas Martin;M. Shane;Mohammad Mannan

文献摘要

被引文献

相似文献

我们对大五人格特质与选择和创建的在线安全密码的强度之间的关系进行了初步调查。通过MTurk招募了510名参与者,并要求他们:a)完成一份大五人格量表; B)从一份可用密码列表中选择一个他们认为最安全的密码; c)为自己的在线保护创建独特、安全的密码。参与者选择/创建的密码的安全强度通过Zxcvbn进行评级,并根据各种其他基于安全的标准进行评估(例如,密码长度、包含特殊字符)。在所有情况下,结果都未能识别出所选密码的强度与任何五大人格特质之间的显著关系(当对多次更正采用适当严格的控制时)。这些无效结果表明,除了个人性格之外的其他因素可能对选择/创建的在线密码的强度有更大的影响。我们提出了详细的观察和我们的实验结果,讨论潜在的考虑矛盾,并建议未来的研究可能性的密码/个性的关系,包括潜在的使用增强密码强度计和量身定制的安全轻推。
We performed a preliminary investigation of the relationship between the Big-five personality traits and the strength of selected and created online security passwords. Five-hundred and ten participants were recruited through MTurk and asked a) to complete a Big-five personality inventory, b) to select from a list of available passwords the one they felt was most secure, and c) to create unique, secure passwords for their own online protection. The security strength of participants' selected/created passwords was rated via Zxcvbn, and evaluated on a variety of additional security-based criteria (e.g., password length, inclusion of special characters). In all cases results failed to identify significant relationship between the strength of the selected/chosen password and any Big-five personality traits (when employing appropriately stringent control for multiple corrections). These null results suggest that other factors beyond an individual's personality may hold greater influence over the strength of selected/created online passwords. We present detailed observations and findings from our experiment, discuss potential considerations for contradictions, and suggest possibilities for future research into the password/personality relationship, including the potential use of enhanced password strength meters and tailored security nudges.