Security Fictions: Bridging Speculative Design and Computer Security

Security Fictions: Bridging Speculative Design and Computer Security
复制标题

安全小说:连接推测设计和计算机安全

DOI:
--
复制
发表时间:
2020
期刊:
Conference on Designing Interactive Systems
影响因子:
--
通讯作者:
Nick Merrill
Nick Merrill
中科院分区:
--
文献类型:
--
作者:
Nick Merrill

文献摘要

参考文献

被引文献

相似文献

本文从一个观察开始:识别威胁本质上是一种投机性的做法。它需要想象可能的未来。借鉴推测性设计的方法,本文提出了一种即兴角色扮演游戏,旨在帮助软件开发人员识别安全威胁。它与七名软件开发人员一起部署了这款游戏,他们使用这款游戏成功地识别了他们软件中的各种威胁。来自这一部署的见解激励着未来在游戏本身和组织安全账户方面的工作。我呼吁设计研究界继续将其方法和视角应用于计算机安全,将威胁识别本身定位为社会和政治权力的场所,就像所有猜测一样。
This paper begins with an observation: that threat identification is an intrinsically speculative practice. It requires imagining possible futures. Drawing on methods from speculative design, this paper presents an improvisational role-playing game designed to help software developers identify security threats. It deploys this game with seven software developers, who used the game to successfully identify diverse threats in their software. The insights from this deployment motivate future work on both the game itself and on organizational accounts of security. I call on the design research community to continue to apply its methods and perspectives to computer security, locating threat identification itself, like all speculation, as a site of social and political power.
论推测性的制定
DOI: 10.1145/3025453.3025503
发表时间: 2017
期刊: --
影响因子: --
作者:
Elsden C
通讯作者: Elsden C
好、坏、丑:网络物理系统博弈中安全决策的研究
DOI: 10.1109/tse.2017.2782813
发表时间: 2019
影响因子: 7.4
作者:
Frey S
通讯作者: Frey S