Vision: What johnny learns about password security from videos posted on youtube

Mathieu Christmann, Peter Mayer, Melanie Volkamer

Research output: Contribution to journalConference articleResearchpeer-review

Abstract

The text password is the most pervasive authentication scheme and is unlikely to disappear soon. Companies employ password awareness and training campaigns to reduce the risk of insecure password management endangering these companies. While larger companies may buy measures for those campaigns externally or develop their own ones, small and medium-sized companies (SMEs) are likely to turn to freely available material - most likely videos - as they don't have budget and own experience to handle it like larger companies. We analysed such freely available videos and show their shortcomings. To that end, we aggregated requirements from the existing literature and applied these to a body of 32 freely available YouTube videos using search terms informed by Google Trends. The contributions of this work are two-fold. Firstly, the findings of our analysis show that the best video covers only about half of the requirements, which raises serious concerns regarding the quality of available videos and their suitability for usage in awareness campaigns by SMEs. Secondly, our list of aggregated requirements can inform the design of future videos, which is planned as a follow-up to this work to remedy the concerns uncovered in our analysis.

Original languageEnglish
Book seriesACM International Conference Proceeding Series
Pages (from-to)124-128
Number of pages5
DOIs
Publication statusPublished - 11. Oct 2021
Externally publishedYes
Event2021 European Symposium on Usable Security, EuroUSEC 2021 - Virtual, Online, Germany
Duration: 11. Oct 202112. Oct 2021

Conference

Conference2021 European Symposium on Usable Security, EuroUSEC 2021
Country/TerritoryGermany
CityVirtual, Online
Period11/10/202112/10/2021
SponsorHelmholtz Association-funded Subtopic "Engineering Secure Systems" (KASTEL), Karlsruhe Institute of Technology (KIT), Security Usability Society (SECUSO)

Bibliographical note

Funding Information:
This research was supported by the Helmholtz Association (HGF) through the subtopic Engineering Secure Systems (ESS).

Publisher Copyright:
© 2021 ACM.

Keywords

  • Password Policies
  • Companies
  • Videos

Fingerprint

Dive into the research topics of 'Vision: What johnny learns about password security from videos posted on youtube'. Together they form a unique fingerprint.

Cite this