A copy of this work was available on the public web and has been preserved in the Wayback Machine. The capture dates from 2021; you can also visit the original URL.
The file type is application/pdf
.
User Behaviors and Attitudes Under Password Expiration Policies
2018
Symposium On Usable Privacy and Security
Policies that require employees to update their passwords regularly have become common at universities and government organizations. However, prior work has suggested that forced password expiration might have limited security benefits, or could even cause harm. For example, users might react to forced password expiration by picking easy-to-guess passwords or reusing passwords from other accounts. We conducted two surveys on Mechanical Turk through which we examined people's self-reported
dblp:conf/soups/HabibNDOSBCC18
fatcat:gcgpbeubfvcbda4kfd3quloj7a