Title
Hide-and-Seek with Website Identity Information.
Abstract
Online security involves user decision-making, so it is important to support users in this process. One important decision users face involves website identity, in order to avoid fraudulent sites. Sophisticated fraudulent sites avoid detection by using familiar names and replicated appearance, and they are active too briefly for safe browsing services to be effective. In these circumstances, website certificate identity information can help users detect fraudulent cites. In this paper we report on two studies to assess how well users are supported in this process by the Google Chrome browser. We first worked with usability evaluators and then conducted a study with real users. 70% of participants chose a fraudulent website before a 5min tutorial. After it, 100% correctly identified the proper website. With a little support, users were able to understand and apply certificate information. We suggest that a little better design, and some brief education, would benefit users.
Year
Venue
Keywords
2018
2018 16TH ANNUAL CONFERENCE ON PRIVACY, SECURITY AND TRUST (PST)
Security,online web certificates,user understanding,developing mental models
Field
DocType
ISSN
Internet privacy,Online security,CITES,Computer science,Usability,A little better,Encryption,Certificate
Conference
1712-364X
Citations 
PageRank 
References 
0
0.34
0
Authors
2
Name
Order
Citations
PageRank
Milica Stojmenovic100.34
Robert Biddle252845.50