Close Menu
    Facebook X (Twitter) Instagram
    SciTechDaily
    • Biology
    • Chemistry
    • Earth
    • Health
    • Physics
    • Science
    • Space
    • Technology
    Facebook X (Twitter) Pinterest YouTube RSS
    SciTechDaily
    Home»Technology»Why Is Computer Security Advice So Confusing?
    Technology

    Why Is Computer Security Advice So Confusing?

    By North Carolina State UniversitySeptember 17, 20231 Comment4 Mins Read
    Facebook Twitter Pinterest Telegram LinkedIn WhatsApp Email Reddit
    Share
    Facebook Twitter LinkedIn Pinterest Telegram Email Reddit
    Laptop Cybersecurity
    A recent study identifies issues with current computer security guidelines, suggesting they are often confusing and overwhelming for employees. Researchers recommend a more curated approach, emphasizing key messages and prioritizing vital information to enhance computer security understanding and implementation.

    Confusing Computer Security Guidelines? You’re Not Alone

    If you’ve ever felt baffled by the computer security instructions provided at your workplace, you’re not alone. A recent study underscores a fundamental issue in the crafting of these guidelines and suggests straightforward measures to enhance them – likely leading to better computer safety.

    The concern revolves around the computer security protocols given by institutions, including businesses and government bodies, to their staff. These protocols aim to guide employees in safeguarding both personal and organizational data against dangers like malware and phishing attacks.

    Who’s Writing These Guidelines and Why?

    “As a computer security researcher, I’ve noticed that some of the computer security advice I read online is confusing, misleading, or just plain wrong,” says Brad Reaves, corresponding author of the new study and an assistant professor of computer science at North Carolina State University. “In some cases, I don’t know where the advice is coming from or what it’s based on. That was the impetus for this research. Who’s writing these guidelines? What are they basing their advice on? What’s their process? Is there any way we could do better?”

    For the study, researchers conducted 21 in-depth interviews with professionals who are responsible for writing computer security guidelines for organizations including large corporations, universities, and government agencies.

    “The key takeaway here is that the people writing these guidelines try to give as much information as possible,” Reaves says. “That’s great, in theory. But the writers don’t prioritize the advice that’s most important. Or, more specifically, they don’t deprioritize the points that are significantly less important. And because there is so much security advice to include, the guidelines can be overwhelming – and the most important points get lost in the shuffle.”

    The researchers found that one reason security guidelines can be so overwhelming is that guideline writers tend to incorporate every possible item from a wide variety of authoritative sources.

    “In other words, the guideline writers are compiling security information, rather than curating security information for their readers,” Reaves says.

    Two Simple Fixes for Better Security Guidelines

    Drawing on what they learned from the interviews, the researchers developed two recommendations for improving future security guidelines.

    First, guideline writers need a clear set of best practices on how to curate information so that security guidelines tell users both what they need to know and how to prioritize that information.

    Second, writers – and the computer security community as a whole – need key messages that will make sense to audiences with varying levels of technical competence.

    “Look, computer security is complicated,” Reaves says. “But medicine is even more complicated. Yet during the pandemic, public health experts were able to give the public fairly simple, concise guidelines on how to reduce our risk of contracting COVID. We need to be able to do the same thing for computer security.”

    Ultimately, the researchers find that security advice writers need help.

    “We need research, guidelines, and communities of practice that can support these writers, because they play a key role in turning computer security discoveries into practical advice for real-world application,” Reaves says.

    “I also want to stress that when there’s a computer security incident, we shouldn’t blame an employee because they didn’t comply with one of a thousand security rules we expected them to follow. We need to do a better job of creating guidelines that are easy to understand and implement.”

    Reference: “Who Comes Up with this Stuff? Interviewing Authors to Understand How They Produce Security Advice” by Lorenzo Neil, Harshini Sri Ramulu, Yasemin Acar and Bradley Reaves, 6 August 2023, USENIX Symposium on Usable Privacy and Security.

    Never miss a breakthrough: Join the SciTechDaily newsletter.
    Follow us on Google and Google News.

    Computer Science Computers Cybersecurity North Carolina State University
    Share. Facebook Twitter Pinterest LinkedIn Email Reddit

    Related Articles

    AI’s Achilles’ Heel: Researchers Expose Major Model Security Flaw

    A New Software Tool – Fawkes – Cloaks Your Images to Trick Facial Recognition Algorithms

    More Dynamic, Scalable DNA Data Storage System Developed

    First All-Optical “Stealth” Encryption Technology Developed

    New Technique Could Enable Chips with Thousands of Cores

    New Network Design Exploits Power-Efficient Flash Memory

    Verifying Identity With Patterns Could Make Computers More Secure

    “Inexact” Computer Chip, 15 Times More Efficient than Today’s Technology

    Calculating the Total Capacity of a Data Network

    1 Comment

    1. Ralph Johnson on September 17, 2023 1:35 pm

      I never allow cookies, delete data from operating system when finished, following links is forbidden, never save login ID or passwords, never network with phone, brake the link to internet at least once a day. I am looking in to using a VPN haven’t decided yet.

      Reply
    Leave A Reply Cancel Reply

    • Facebook
    • Twitter
    • Pinterest
    • YouTube

    Don't Miss a Discovery

    Subscribe for the Latest in Science & Tech!

    Trending News

    Scientists Discover How Coffee Impacts Memory, Mood, and Gut Health

    Why Did the Neanderthals Disappear? Scientists Reveal Humans Had a Hidden Advantage

    Physicists Propose Strange Experiment Where Time Goes Quantum

    Magnesium Magic: New Drug Melts Fat Even on a High-Fat, High-Sugar Diet

    Weight-Loss Drugs Like Ozempic May Come With an Unexpected Cost

    Mezcal “Worm” in a Bottle Mystery: DNA Testing Reveals a Surprise

    New Research Reveals That Your Morning Coffee Activates an Ancient Longevity Switch

    This Is What Makes You Irresistible to Mosquitoes

    Follow SciTechDaily
    • Facebook
    • Twitter
    • YouTube
    • Pinterest
    • Newsletter
    • RSS
    SciTech News
    • Biology News
    • Chemistry News
    • Earth News
    • Health News
    • Physics News
    • Science News
    • Space News
    • Technology News
    Recent Posts
    • Harvard Scientists Reveal Secret Structure Behind How You Smell
    • Scientists Just Discovered the Hidden Trick That Keeps Your Cells Alive
    • This Simple Movement Could Be Secretly Cleaning Your Brain
    • Male Birth Control Breakthrough: Scientists Find Way To Turn Sperm Production Off and Back On
    • A Common Vitamin Could Hold the Key to Treating Fatty Liver Disease
    Copyright © 1998 - 2026 SciTechDaily. All Rights Reserved.
    • Science News
    • About
    • Contact
    • Editorial Board
    • Privacy Policy
    • Terms of Use

    Type above and press Enter to search. Press Esc to cancel.