![](https://tgfile.tg-static.com/static/web/img/placeholder.gif)
SOUPS2015 2日目
-
akirakanaoka
- 1955
- 0
- 0
- 0
![](https://tgfile.tg-static.com/static/web/img/placeholder.gif)
#touchid has had no significant impact on #iphone #password DESPITE #apple claims to the contrary. Findings from #soups2015 Cherapau et al
2015-07-25 01:01:37![](https://tgfile.tg-static.com/static/web/img/placeholder.gif)
Users should be assisted to develop a better mental model of how iPhone identification actually works #soups2015
2015-07-25 01:02:16![](https://tgfile.tg-static.com/static/web/img/placeholder.gif)
It reminds me of the idea we've had about re-utilising the airline safety card... goo.gl/vtblQd #soups2015 twitter.com/ameellio/statu…
2015-07-25 01:02:17![](https://tgfile.tg-static.com/static/web/img/placeholder.gif)
Big opportunity to help users get mobile app permissions + security. Text descriptions aren't working. bit.ly/1JD9t47 #soups2015
2015-07-25 00:56:18![](https://tgfile.tg-static.com/static/web/img/placeholder.gif)
Can we agree as a community that forcing a partner to share their login credentials is abusive, controlling behavior? #soups2015
2015-07-25 01:04:10![](https://tgfile.tg-static.com/static/web/img/placeholder.gif)
But is #privacy vs #convenience really the right dimension? Bad #design says so. I think both is possible #soups2015 twitter.com/mariawolters/s…
2015-07-25 01:05:40![](https://tgfile.tg-static.com/static/web/img/placeholder.gif)
Most users of TouchID choose it for convenience #soups2015
2015-07-25 01:00:26![](https://tgfile.tg-static.com/static/web/img/placeholder.gif)
Or might we agree on that no matter who does the forcing? Parents, caregivers - an edge condition. #soups2015 twitter.com/gregnorc/statu…
2015-07-25 01:06:48![](https://tgfile.tg-static.com/static/web/img/placeholder.gif)
Agreed. Ann-Marie Horcher: "I wouldn't share my phone more than I would share my toothbrush." #SOUPS2015 twitter.com/gregnorc/statu…
2015-07-25 01:06:58![](https://tgfile.tg-static.com/static/web/img/placeholder.gif)
Now: @UppaJung (with Joseph Bonneau) on learning assigned secrets for unlocking mobile devices #soups2015
2015-07-25 01:09:15![](https://tgfile.tg-static.com/static/web/img/placeholder.gif)
@uppajung Research Question: can we make users learn assigned pins so easy that users will do it? #mobile #infosec #soups2015
2015-07-25 01:10:51![](https://tgfile.tg-static.com/static/web/img/placeholder.gif)
.@uppajung we need to suggest secrets to users that friend attackers won't know. Teaching using spaced repetition helps. #soups2015
2015-07-25 01:11:49![](https://tgfile.tg-static.com/static/web/img/placeholder.gif)
We can learn #passwords through spaced repetition (like learning #SAT words from #flashcards) #infosec #mobile #soups2015 @uppajung
2015-07-25 01:12:10![](https://tgfile.tg-static.com/static/web/img/placeholder.gif)
.@Uppajung Training during login: people logged in, and then every time asked to type additional little secret #soups2015
2015-07-25 01:13:38![](https://tgfile.tg-static.com/static/web/img/placeholder.gif)
.@Uppajung delay between showing box and secret to be typed got longer and longer until people learned it #soups2015
2015-07-25 01:15:34![](https://tgfile.tg-static.com/static/web/img/placeholder.gif)
Teaching users to memorise the pattern not the content makes it irrelevant whether content was obvious: @uppajung #soups2015
2015-07-25 01:16:43![](https://tgfile.tg-static.com/static/web/img/placeholder.gif)
.@UppaJung new method: pin is entered onto ever changing keypad where pin is mapped to secure secret sequence. #soups2015
2015-07-25 01:16:45![](https://tgfile.tg-static.com/static/web/img/placeholder.gif)
He doesn't mention the #annoyance level during training, though... :) #soups2015 twitter.com/mariawolters/s…
2015-07-25 01:17:37![](https://tgfile.tg-static.com/static/web/img/placeholder.gif)
.@UppaJung Delay btwn seeing keyboard & markers w/ new secret is steadily increased until ppl enter secret correctly immediately. #soups2015
2015-07-25 01:18:04![](https://tgfile.tg-static.com/static/web/img/placeholder.gif)
@mariawolters and as long as you get an incentive at the end, in whichever form. But uptake in broad population? #cynic #soups2015
2015-07-25 01:21:35![](https://tgfile.tg-static.com/static/web/img/placeholder.gif)
@uppajung makes joke on p-values and statistics. Well played in this community #soups2015
2015-07-25 01:22:44![](https://tgfile.tg-static.com/static/web/img/placeholder.gif)
"We actually pay minimum wage, not mechanical turk rates" - @uppajung #UX participant ethics #SOUPS2015
2015-07-25 01:22:58![](https://tgfile.tg-static.com/static/web/img/placeholder.gif)
.@UppaJung the complex mapping is slower to learn than just learning a second PIN - both are recalled perfectly after 3 days #soups2015
2015-07-25 01:24:05![](https://tgfile.tg-static.com/static/web/img/placeholder.gif)
#soups2015 theme: Study participants: Students, Mechanical Turkers, crowdsourced platforms, Craig's List. Ethical + quality implications.
2015-07-25 01:26:08![](https://tgfile.tg-static.com/static/web/img/placeholder.gif)
@mariawolters Good point, but: that is a captive audience. The general public isn't. #soups2015
2015-07-25 01:26:16![](https://tgfile.tg-static.com/static/web/img/placeholder.gif)
New insight in using "mapping" in password creation! bit.ly/1SG7tNb #soups2015 #StuartSchechter #JosephBonneau
2015-07-25 01:30:17