Lydia Kraus

dblp:42/9980 · DBLP profile ↗
← Back
6ranked-venue papers
5as first author
3since 2021 · last 2023
0000-0002-1387-3578ORCID · corroborated

Domains — the database's venue-derived domains; a paper can count in several

Security and privacy · 5 · 4 first-author · 2 since 2021Human-computer interaction and ubiquitous computing · 1 · 1 first-author · 1 since 2021
YearPublicationVenuePosition
2023 Want to Raise Cybersecurity Awareness? Start with Future IT Professionals
abstract
As cyber threats endanger everyone, from regular users to computing professionals, spreading cybersecurity awareness becomes increasingly critical. Therefore, our university designed an innovative cybersecurity awareness course that is freely available online for students, employees, and the general public. The course offers simple, actionable steps that anyone can use to implement defensive countermeasures. Compared to other resources, the course not only suggests learners what to do, but explains why and how to do it. To measure the course impact, we administered it to 138 computer science undergraduates within a compulsory information security and cryptography course. They completed the course as a part of their homework and filled out a questionnaire after each lesson. Analysis of the questionnaire responses revealed that the students valued the course highly. They reported new learning, perspective changes, and transfer to practice. Moreover, they suggested suitable improvements to the course. Based on the results, we have distilled specific insights to help security educators design similar courses. Lessons learned from this study are relevant for cybersecurity instructors, course designers, and educational managers.
Lydia Kraus, Valdemar Svábenský, Martin Horák, Vashek Matyas, Jan Vykopal, Pavel Celeda
ITiCSE (1)1
2022 Usability Insights from Establishing TLS Connections
Lydia Kraus, Matej Grabovský, Martin Ukrop, Katarína Galanská, Vashek Matyas
SEC1
2021 How Do Users Chain Email Accounts Together?
Lydia Kraus, Mária Svidronová, Elizabeth Stobert
SEC1
2019 Will you trust this TLS certificate?: perceptions of people working in IT
abstract
Flawed TLS certificates are not uncommon on the Internet. While they signal a potential issue, in most cases they have benign causes (e.g., misconfiguration or even deliberate deployment). This adds fuzziness to the decision on whether to trust a connection or not. Little is known about perceptions of flawed certificates by IT professionals, even though their decisions impact high numbers of end users. Moreover, it is unclear how much does the content of error messages and documentation influence these perceptions.
Martin Ukrop, Lydia Kraus, Vashek Matyas, Heider A. M. Wahsheh
ACSAC2
2017 On the Use of Emojis in Mobile Authentication
Lydia Kraus, Robert Schmidt 0005, Marcel Walch, Florian Schaub, Sebastian Möller 0001
SEC1
2017 Psychological needs as motivators for security and privacy actions on smartphones
abstract
Much work has been conducted to investigate the obstacles that keep users from using mitigations against security and privacy threats on smartphones. By contrast, we conducted in-depth interviews ( N = 19) to explore users’ motivations for voluntarily applying security and privacy actions on smartphones. Our work focuses on analyzing intrinsic motivation in terms of psychological need fulfillment. The findings from the interview study provide first insights on the salience of basic psychological needs in the context of smartphone security and privacy. They illustrate how security and privacy actions on smartphones are motivated by a variety of psychological needs, only one of them being the need for Security . We further conducted an online survey ( N = 70) in which we used questionnaires on psychological need fulfillment from the literature. The online survey is a first attempt to quantify psychological need fulfillment for security and privacy actions on smartphones. Whereas the results of the interview study indicate that Security and other needs play a role as motivators for employing security and privacy actions on smartphones, the online study does not support the need for Security as an outstanding motivator. Instead, in the online study, other needs such as Keeping the meaningful, Stimulation, Autonomy , and Competence show to be rather salient as motivators for security and privacy actions. Furthermore, the mean need fulfillment for security and privacy actions is in general rather low in the online survey. We conclude that there is scope for improvement to maximize psychological need fulfillment with security and privacy actions. In order to achieve a positive user experience with security and privacy technologies on smartphones, we suggest addressing additional psychological needs, beyond the need for Security , in the design of such technologies.
Lydia Kraus, Ina Wechsung, Sebastian Möller 0001
J. Inf. Secur. Appl.1