CCS2022
We Are the Experts, and We Are the Problem: The Security Advice Fiasco
Michelle L. Mazurek
被引用 5 次
摘要
In an ideal world, automated tools and systems could manage security and privacy seamlessly and transparently with minimal human input. In the real world, we are nowhere close to that ideal. Instead, in order to achieve good security and privacy outcomes, people need to absorb and apply high-quality security and privacy information and advice. This applies not only to end users, but also to software developers, product managers, and even security operations professionals.