Skip to main content

Usability Testing a Malware-Resistant Input Mechanism

Publication ,  Conference
Libonati, A; McCune, JM; Reiter, MK
Published in: Proceedings of the Symposium on Network and Distributed System Security, NDSS 2011
January 1, 2011

We report the results of a usability study of Bumpy, a system that enables a user to provide secret inputs to remote webservers without trusting the computer on which she types those inputs. Achieving this somewhat paradoxical property via Bumpy requires extra diligence from users, raising questions as to whether it is a viable protection for the average user. We evaluate the originally proposed Bumpy design and several new alternatives in a user study involving 85 participants, each of whom utilized one of these designs (or a control design) for roughly four months to protect her password entries to a university course web page. Beyond assessing the usability of Bumpy designs, our study offers insights for designing security-relevant interfaces and training users to successfully utilize them.

Duke Scholars

Published In

Proceedings of the Symposium on Network and Distributed System Security, NDSS 2011

Publication Date

January 1, 2011
 

Citation

APA
Chicago
ICMJE
MLA
NLM
Libonati, A., McCune, J. M., & Reiter, M. K. (2011). Usability Testing a Malware-Resistant Input Mechanism. In Proceedings of the Symposium on Network and Distributed System Security, NDSS 2011.
Libonati, A., J. M. McCune, and M. K. Reiter. “Usability Testing a Malware-Resistant Input Mechanism.” In Proceedings of the Symposium on Network and Distributed System Security, NDSS 2011, 2011.
Libonati A, McCune JM, Reiter MK. Usability Testing a Malware-Resistant Input Mechanism. In: Proceedings of the Symposium on Network and Distributed System Security, NDSS 2011. 2011.
Libonati, A., et al. “Usability Testing a Malware-Resistant Input Mechanism.” Proceedings of the Symposium on Network and Distributed System Security, NDSS 2011, 2011.
Libonati A, McCune JM, Reiter MK. Usability Testing a Malware-Resistant Input Mechanism. Proceedings of the Symposium on Network and Distributed System Security, NDSS 2011. 2011.

Published In

Proceedings of the Symposium on Network and Distributed System Security, NDSS 2011

Publication Date

January 1, 2011