CRII: SaTC: Systems That Facilitate Cooperation and Stewardship to Improve End-User Security Behaviors

CRII:SaTC:促进合作和管理以改善最终用户安全行为的系统

基本信息

  • 批准号:
    1755625
  • 负责人:
  • 金额:
    $ 17.5万
  • 依托单位:
  • 依托单位国家:
    美国
  • 项目类别:
    Standard Grant
  • 财政年份:
    2018
  • 资助国家:
    美国
  • 起止时间:
    2018-07-01 至 2021-06-30
  • 项目状态:
    已结题

项目摘要

This proposal explores opportunities to improve cybersecurity systems by encouraging cooperation and stewardship, whereby people work together for mutually beneficial cybersecurity outcomes. For example, coworkers could provide accountability for one another in keeping their software fully up-to-date, or a trusted expert might remotely configure the security settings on a new laptop for a consenting non-expert. Many existing security systems, by contrast, are not designed to enable or encourage social interaction, a situation that often results in confusion and non-compliance. This proposal will involve studies with people to understand how and when cooperation and stewardship might be beneficial, along with the development of a platform that facilitates the evaluation and construction of such systems. The proposed work work should add to our understanding of how to design and engineer effective real-world cybersecurity systems by incorporating social interaction. Furthermore, this project will provide both undergraduate and graduate students an opportunity to participate in interdisciplinary research. This proposal marries ideas from social psychology, human-computer interaction, and design to tackle a simple and timely question in usable security: How can we create systems that facilitate cooperation and stewardship in end-user cybersecurity systems in order to encourage better cybersecurity behaviors? In the context of this proposal, end-users can be thought of as people who directly interface with a security system to protect their own assets; cooperation in end-user security systems allows people to act collectively towards mutually beneficial security goals or benefit, and, stewardship in end-user security systems allow people to act on behalf of others' security goals or benefit. The union of such cooperative and stewarded systems can be said to be sociopetal, or designed to bring people together. The proposed work will encompass three interacting research thrusts: (i) running group interviews and diary studies to model end-users' day-to-day security activities and how they relate to a broader social context; (ii) developing novel sociopetal cybersecurity systems and evaluating those systems with real user groups; and, (iii) creating and releasing a platform for facilitating the development and evaluation of future sociopetal cybersecurity systems.This award reflects NSF's statutory mission and has been deemed worthy of support through evaluation using the Foundation's intellectual merit and broader impacts review criteria.
该提案探讨了通过鼓励合作和管理来改善网络安全系统的机会,人们通过合作和管理共同努力实现互利的网络安全成果。例如,同事可以相互负责,使他们的软件完全保持最新,或者受信任的专家可以为同意的非专家远程配置新笔记本电脑上的安全设置。相比之下,许多现有的安全系统不是为了实现或鼓励社会互动而设计的,这种情况往往导致混乱和不遵守。这项建议将涉及与人们一起进行研究,以了解合作和管理如何以及何时可能有益,同时沿着开发一个平台,促进评价和建设这种系统。拟议的工作应该增加我们对如何通过整合社交互动来设计和设计有效的现实世界网络安全系统的理解。此外,该项目将为本科生和研究生提供参与跨学科研究的机会。该提案结合了社会心理学、人机交互和设计的思想,以解决可用安全中一个简单而及时的问题:我们如何创建促进最终用户网络安全系统中的合作和管理的系统,以鼓励更好的网络安全行为?在本提案的背景下,最终用户可以被认为是直接与安全系统交互以保护自己资产的人;最终用户安全系统中的合作使人们能够共同采取行动,实现互利的安全目标或利益,最终用户安全系统中的管理工作使人们能够代表他人的安全目标或利益采取行动。这种合作和管理系统的结合可以说是社会性的,或者说是为了把人们聚集在一起。拟议的工作将包括三个相互作用的研究重点:㈠进行小组访谈和日记研究,以模拟最终用户的日常安全活动及其与更广泛的社会背景的关系; ㈡开发新的社会网络安全系统,并与真实的用户群体一起评估这些系统;并且,在本发明中,(三)创建并发布一个平台,以促进未来社会网络安全系统的开发和评估。该奖项反映了NSF的法定使命,通过使用基金会的知识价值和更广泛的影响审查标准进行评估,认为值得支持。

项目成果

期刊论文数量(4)
专著数量(0)
科研奖励数量(0)
会议论文数量(0)
专利数量(0)
"We Hold Each Other Accountable": Unpacking How Social Groups Approach Cybersecurity and Privacy Together
“我们互相问责”:揭示社会群体如何共同处理网络安全和隐私问题
Tensions between Access and Control in Makerspaces
创客空间的访问与控制之间的紧张关系
Individually Vulnerable, Collectively Safe: The Security and Privacy Practices of Households with Older Adults
个体脆弱,集体安全:有老年人的家庭的安全和隐私实践
A Typology of Perceived Triggers for End-User Security and Privacy Behaviors
最终用户安全和隐私行为的感知触发因素的类型学
{{ item.title }}
{{ item.translation_title }}
  • DOI:
    {{ item.doi }}
  • 发表时间:
    {{ item.publish_year }}
  • 期刊:
  • 影响因子:
    {{ item.factor }}
  • 作者:
    {{ item.authors }}
  • 通讯作者:
    {{ item.author }}

数据更新时间:{{ journalArticles.updateTime }}

{{ item.title }}
  • 作者:
    {{ item.author }}

数据更新时间:{{ monograph.updateTime }}

{{ item.title }}
  • 作者:
    {{ item.author }}

数据更新时间:{{ sciAawards.updateTime }}

{{ item.title }}
  • 作者:
    {{ item.author }}

数据更新时间:{{ conferencePapers.updateTime }}

{{ item.title }}
  • 作者:
    {{ item.author }}

数据更新时间:{{ patent.updateTime }}

Sauvik Das其他文献

The Slow Violence of Surveillance Capitalism: How Online Behavioral Advertising Harms People
监控资本主义的缓慢暴力:在线行为广告如何伤害人们
The Role of Social Influence in Security Feature Adoption
社会影响力在安全功能采用中的作用
Bit Whisperer: Enabling Ad-hoc, Short-range, Walk-Up-and-Share Data Transmissions via Surface-restricted Acoustics
Bit Whisperer:通过表面受限声学实现临时、短距离、步行和共享数据传输
Low-Power Linear Variable Gain Amplifier
  • DOI:
  • 发表时间:
    2017
  • 期刊:
  • 影响因子:
    0
  • 作者:
    Sauvik Das
  • 通讯作者:
    Sauvik Das
Privacy in the Age of AI
人工智能时代的隐私
  • DOI:
    10.1145/3625254
  • 发表时间:
    2023
  • 期刊:
  • 影响因子:
    22.7
  • 作者:
    Sauvik Das;Hao;J. Forlizzi
  • 通讯作者:
    J. Forlizzi

Sauvik Das的其他文献

{{ item.title }}
{{ item.translation_title }}
  • DOI:
    {{ item.doi }}
  • 发表时间:
    {{ item.publish_year }}
  • 期刊:
  • 影响因子:
    {{ item.factor }}
  • 作者:
    {{ item.authors }}
  • 通讯作者:
    {{ item.author }}

{{ truncateString('Sauvik Das', 18)}}的其他基金

SaTC: CORE: Small: Corporeal Cybersecurity: Improving End-User Security and Privacy with Physicalized Computing Interface
SaTC:核心:小型:实体网络安全:通过物理化计算接口提高最终用户安全和隐私
  • 批准号:
    2316294
  • 财政年份:
    2022
  • 资助金额:
    $ 17.5万
  • 项目类别:
    Standard Grant
Collaborative Research: SaTC: CORE: Medium: Privacy Through Design: A Design Methodology to Promote the Creation of Privacy-Conscious Consumer AI
协作研究:SaTC:核心:媒介:通过设计实现隐私:促进创建具有隐私意识的消费者人工智能的设计方法
  • 批准号:
    2316768
  • 财政年份:
    2022
  • 资助金额:
    $ 17.5万
  • 项目类别:
    Standard Grant
CAREER: Resisting Automated Algorithmic Surveillance with Human-centered Adversarial Machine Learning
职业:通过以人为中心的对抗性机器学习来抵抗自动算法监视
  • 批准号:
    2144988
  • 财政年份:
    2022
  • 资助金额:
    $ 17.5万
  • 项目类别:
    Continuing Grant
CAREER: Resisting Automated Algorithmic Surveillance with Human-centered Adversarial Machine Learning
职业:通过以人为中心的对抗性机器学习来抵抗自动算法监视
  • 批准号:
    2316287
  • 财政年份:
    2022
  • 资助金额:
    $ 17.5万
  • 项目类别:
    Continuing Grant
Collaborative Research: SaTC: CORE: Medium: Privacy Through Design: A Design Methodology to Promote the Creation of Privacy-Conscious Consumer AI
协作研究:SaTC:核心:媒介:通过设计实现隐私:促进创建具有隐私意识的消费者人工智能的设计方法
  • 批准号:
    2126058
  • 财政年份:
    2021
  • 资助金额:
    $ 17.5万
  • 项目类别:
    Standard Grant
SaTC: CORE: Small: Corporeal Cybersecurity: Improving End-User Security and Privacy with Physicalized Computing Interface
SaTC:核心:小型:实体网络安全:通过物理化计算接口提高最终用户安全和隐私
  • 批准号:
    2029519
  • 财政年份:
    2020
  • 资助金额:
    $ 17.5万
  • 项目类别:
    Standard Grant
EAPSI: A Cross-Cultural Exploration and Evaluation of Group-Centric Authentication
EAPSI:以群体为中心的身份验证的跨文化探索和评估
  • 批准号:
    1614200
  • 财政年份:
    2016
  • 资助金额:
    $ 17.5万
  • 项目类别:
    Fellowship Award

相似海外基金

CRII: SaTC: Privacy vs. Accountability--Usable Deniability and Non-Repudiation for Encrypted Messaging Systems
CRII:SaTC:隐私与责任——加密消息系统的可用否认性和不可否认性
  • 批准号:
    2348181
  • 财政年份:
    2024
  • 资助金额:
    $ 17.5万
  • 项目类别:
    Standard Grant
SaTC: CORE: Small: Socio-Technical Approaches for Securing Cyber-Physical Systems from False Claim Attacks
SaTC:核心:小型:保护网络物理系统免受虚假声明攻击的社会技术方法
  • 批准号:
    2310470
  • 财政年份:
    2023
  • 资助金额:
    $ 17.5万
  • 项目类别:
    Standard Grant
SaTC: CORE: Small: Systematic Threat Characterization and Prevention in Open-Domain Dialog Systems
SaTC:核心:小型:开放域对话系统中的系统威胁特征描述和预防
  • 批准号:
    2231002
  • 财政年份:
    2023
  • 资助金额:
    $ 17.5万
  • 项目类别:
    Standard Grant
SaTC: CORE: Small: Mitigating Threats of Physical-Domain Signal Injections on Security, Reliability, and Safety of Sensing and Control Systems
SaTC:核心:小型:减轻物理域信号注入对传感和控制系统的安全性、可靠性和安全性的威胁
  • 批准号:
    2231682
  • 财政年份:
    2023
  • 资助金额:
    $ 17.5万
  • 项目类别:
    Continuing Grant
CRII: SaTC: Toward Secure, Privacy-Preserving, and Efficient Crowdsourcing Systems
CRII:SaTC:迈向安全、隐私保护和高效的众包系统
  • 批准号:
    2246143
  • 财政年份:
    2023
  • 资助金额:
    $ 17.5万
  • 项目类别:
    Standard Grant
CAREER: SaTC: Rethinking Trusted Execution Environments for Embedded and IoT Systems
职业:SaTC:重新思考嵌入式和物联网系统的可信执行环境
  • 批准号:
    2237238
  • 财政年份:
    2023
  • 资助金额:
    $ 17.5万
  • 项目类别:
    Continuing Grant
SaTC: CORE: Small: Security of FPGA-as-a-Service Reconfigurable Systems
SaTC:核心:小型:FPGA 即服务可重构系统的安全性
  • 批准号:
    2310142
  • 财政年份:
    2023
  • 资助金额:
    $ 17.5万
  • 项目类别:
    Standard Grant
Collaborative Research: SaTC: CORE: Medium: Audacity of Exploration: Toward Automated Discovery of Security Flaws in Networked Systems through Intelligent Documentation Analysis
协作研究:SaTC:核心:中:大胆探索:通过智能文档分析自动发现网络系统中的安全缺陷
  • 批准号:
    2409269
  • 财政年份:
    2023
  • 资助金额:
    $ 17.5万
  • 项目类别:
    Standard Grant
Collaborative Research: SaTC: CORE: Medium: Removing Trust Assumptions from Encryption Systems
协作研究:SaTC:核心:中:从加密系统中删除信任假设
  • 批准号:
    2318701
  • 财政年份:
    2023
  • 资助金额:
    $ 17.5万
  • 项目类别:
    Continuing Grant
SaTC: CORE: Medium: Physically Unclonable Wireless Systems (PUWS) for RF Fingerprinting and Physical Layer Security
SaTC:核心:中:用于射频指纹识别和物理层安全的物理不可克隆无线系统 (PUWS)
  • 批准号:
    2233774
  • 财政年份:
    2023
  • 资助金额:
    $ 17.5万
  • 项目类别:
    Standard Grant
{{ showInfoDetail.title }}

作者:{{ showInfoDetail.author }}

知道了