Human–computer interaction (security): Difference between revisions

Content deleted Content added
Tag: New redirect
Line 1:
{{Afd-merge#REDIRECT to|[[Human–computer interaction|Human–computer#Current interactionresearch]] (security)|27{{r Junefrom merge}} {{r to 2022section}}
'''HCISec''' is the study of interaction between humans and computers, or [[human–computer interaction]], specifically as it pertains to [[information security]]. Its aim, in plain terms, is to improve the [[usability]] of security features in [[end user]] applications.
 
Unlike HCI, which has roots in the early days of [[Xerox PARC]] during the 1970s, HCISec is a nascent field of study by comparison. Interest in this topic tracks with that of [[Internet security]], which has become an area of broad public concern only in very recent years.
 
When security features exhibit poor usability, the following are common reasons:
 
* they were added in casual afterthought
* they were hastily patched in to address newly discovered [[security bug]]s
* they address very complex [[use case]]s without the benefit of a [[Wizard (software)|software wizard]]
* their interface designers lacked understanding of related security concepts
* their interface designers were not usability experts (often meaning they were the application developers themselves)
 
==Further reading==
*[http://www.simson.net/thesis/ "Design Principles and Patterns for Computer Systems That Are Simultaneously Secure and Usable"], by [[Simson Garfinkel]]
* "[http://zesty.ca/pubs/icics-2002-uidss.pdf User Interaction Design for Secure Systems]" by Ka-Ping Yee
* [https://www.ssi.gouv.fr/uploads/2018/04/salaun-m_these_manuscrit.pdf "Involving the end user in access control: from confined processes to trusted human-computer interface"] {{In lang|fr}} by Mickaël Salaün
 
==External links==
*[https://web.archive.org/web/20080307201951/http://www.gaudior.net/alma/biblio.html HCISec Bibliography]
*[http://tech.groups.yahoo.com/group/hcisec/ HCISec] [[Yahoo! Group]]
*[https://web.archive.org/web/20080224042853/http://usablesecurity.com/ Usable Security Blog]
 
{{DEFAULTSORT:Human-computer interaction (security)}}
[[Category:Human communication]]
[[Category:Human–computer interaction]]
[[Category:Computer security]]