{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,4,28]],"date-time":"2026-04-28T15:53:47Z","timestamp":1777391627915,"version":"3.51.4"},"reference-count":56,"publisher":"Informa UK Limited","issue":"4","funder":[{"DOI":"10.13039\/100000006","name":"Office of Naval Research","doi-asserted-by":"publisher","id":[{"id":"10.13039\/100000006","id-type":"DOI","asserted-by":"publisher"}]}],"content-domain":{"domain":["www.tandfonline.com"],"crossmark-restriction":true},"short-container-title":["Behaviour &amp; Information Technology"],"published-print":{"date-parts":[[2018,4,3]]},"DOI":"10.1080\/0144929x.2018.1436591","type":"journal-article","created":{"date-parts":[[2018,2,15]],"date-time":"2018-02-15T23:25:24Z","timestamp":1518737124000},"page":"320-334","update-policy":"https:\/\/doi.org\/10.1080\/tandf_crossmark_01","source":"Crossref","is-referenced-by-count":16,"title":["An empirical study examining the perceptions and behaviours of security-conscious users of mobile authentication"],"prefix":"10.1080","volume":"37","author":[{"given":"Flynn","family":"Wolf","sequence":"first","affiliation":[{"name":"UMBC, Baltimore, MD, USA"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Ravi","family":"Kuber","sequence":"additional","affiliation":[{"name":"UMBC, Baltimore, MD, USA"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Adam J","family":"Aviv","sequence":"additional","affiliation":[{"name":"USNA, Annapolis, MD, USA"}],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"301","published-online":{"date-parts":[[2018,2,15]]},"reference":[{"key":"CIT0001","doi-asserted-by":"publisher","DOI":"10.1145\/322796.322806"},{"key":"CIT0002","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-540-77366-5_34"},{"key":"CIT0003","doi-asserted-by":"crossref","unstructured":"Aviv, A. J., and D. Fichter. 2014. \u201cUnderstanding Visual Perceptions of Usability and Security of Android\u2019s Graphical Password Pattern.\u201d Proceedings of the 30th Annual Computer Security Applications Conference, 286\u2013295. ACM, December. doi:10.1145\/2664243.2664253.","DOI":"10.1145\/2664243.2664253"},{"key":"CIT0004","unstructured":"Beautement, A., I. Becker, S. Parkin, K. Krol, and M. A. Sasse. 2016. \u201cProductive Security: A Scalable Methodology for Analysing Employee Security Behaviours.\u201d Twelfth Symposium on Usable Privacy and Security (SOUPS 2016), Denver, CO."},{"key":"CIT0005","doi-asserted-by":"crossref","unstructured":"Blythe, J., and L. J. Camp. 2012. \u201cImplementing Mental Models.\u201d IEEE Symposium on Security and Privacy Workshops (SPW), San Francisco, CA, USA, 86\u201390. IEEE, May.","DOI":"10.1109\/SPW.2012.31"},{"key":"CIT0006","doi-asserted-by":"publisher","DOI":"10.3389\/fpsyg.2017.01929"},{"key":"CIT0007","volume-title":"Successful Qualitative Research: A Practical Guide for Beginners","author":"Braun V.","year":"2013"},{"key":"CIT0008","first-page":"18","volume":"2","author":"Bravo-Lillo C.","year":"2010","journal-title":"IEEE Security & Privacy"},{"key":"CIT0009","doi-asserted-by":"publisher","DOI":"10.1057\/rm.2010.7"},{"key":"CIT0010","unstructured":"Bureau of Labor Statistics, U.S. Department of Labor. 2015. Occupational Outlook Handbook. 2016-17 ed. Information Security Analysts Job Outlook. Accessed 6 December 2016. http:\/\/www.bls.gov\/ooh\/computer-and-information-technology\/information-security-analysts.htm#tab-6."},{"key":"CIT0011","doi-asserted-by":"publisher","DOI":"10.1109\/MTS.2009.934142"},{"key":"CIT0012","doi-asserted-by":"crossref","unstructured":"Chin, E., A. P. Felt, V. Sekar, and D. Wagner. 2012. \u201cMeasuring User Confidence in Smartphone Security and Privacy.\u201d Proceedings of the Eighth Symposium on Usable Privacy and Security, Washington, DC. ACM, July.","DOI":"10.1145\/2335356.2335358"},{"key":"CIT0013","unstructured":"Consumer Reports Magazine. 2013. \u201cKeep Your Phone Safe: How to Protect Yourself from Wireless Threats.\u201d Accessed 7 December 2016. http:\/\/consumerreports.org\/privacy0613."},{"key":"CIT0014","doi-asserted-by":"crossref","unstructured":"De Luca, A., A. Hang, F. Brudy, C. Lindner, and H. Hussmann. 2012. \u201cTouch Me Once and I Know It\u2019s You!: Implicit Authentication Based on Touch Screen Patterns.\u201d Proceedings of the SIGCHI Conference on Human Factors in Computing Systems, 987\u2013996. ACM. doi:10.1145\/2207676.2208544.","DOI":"10.1145\/2207676.2208544"},{"key":"CIT0015","doi-asserted-by":"crossref","unstructured":"De Luca, A., E. von Zezschwitz, and H. Hussman. 2009. \u201cVibrapass: Secure Authentication Based on Shared Lies.\u201d Proceedings of the SIGCHI Conference on Human Factors in Computing Systems, 913\u2013916. ACM. doi:10.1145\/1518701.1518840.","DOI":"10.1145\/1518701.1518840"},{"key":"CIT0016","unstructured":"Diesner, J., P. Kumaraguru, and K. M. Carley. 2005. \u201cMental Models of Data Privacy and Security Extracted from Interviews with Indians.\u201d 55th Annual Conference of the International Communication Association (ICA), New\u00a0York, NY, May."},{"key":"CIT0017","doi-asserted-by":"crossref","unstructured":"Egelman, S., S. Jain, R. S. Portnoff, K. Liao, S. Consolvo, and D. Wagner. 2014. \u201cAre You Ready to Lock?\u201d Proceedings of the 2014 ACM SIGSAC Conference on Computer and Communications Security, 750\u2013761. ACM. doi:10.1145\/2660267.2660273.","DOI":"10.1145\/2660267.2660273"},{"key":"CIT0018","unstructured":"Fagan, M., and M.\u00a0M.\u00a0H. Khan. 2016. \u201cWhy Do They Do What They Do? A Study of What Motivates Users to (Not) Follow Computer Security Advice.\u201d Twelfth Symposium on Usable Privacy and Security (SOUPS 2016)."},{"key":"CIT0019","doi-asserted-by":"crossref","unstructured":"Ferreira, D., V. Kostakos, A. Beresford, J. Lindqvist, and A. K. Dey. 2015. \u201cSecuracy: An Empirical Investigation of Android Applications\u2019 Network Usage, Privacy and Security.\u201d Proceedings of the 8th ACM Conference on Security & Privacy in Wireless and Mobile Networks, 11. ACM. doi:10.1145\/2766498.2766506.","DOI":"10.1145\/2766498.2766506"},{"key":"CIT0020","unstructured":"Forget, A., S. Pearman, J. Thomas, A. Acquisti, N. Christin, L. F. Cranor, S. Egelman, M. Harbach, and R. Telang. 2016. \u201cDo or Do Not, There Is No Try: User Engagement May Not Improve Security Outcomes.\u201d Twelfth Symposium on Usable Privacy and Security (SOUPS 2016), Denver, CO."},{"key":"CIT0021","doi-asserted-by":"crossref","unstructured":"Friedman, B., D. Hurley, D. C. Howe, E. Felten, and H. Nissenbaum. 2002. \u201cUsers\u2019 Conceptions of Web Security: A Comparative Study.\u201d CHI\u2019'02 Extended Abstracts on Human Factors in Computing Systems, 746\u2013747. ACM. doi:10.1145\/506443.506577.","DOI":"10.1145\/506443.506577"},{"key":"CIT0022","doi-asserted-by":"crossref","unstructured":"Hang, A., A. De Luca, and H. Hussmann. 2015. \u201cI Know What You Did Last Week! Do you? Dynamic Security Questions for Fallback Authentication on Smartphones.\u201d Proceedings of the 33rd Annual ACM Conference on Human Factors in Computing Systems, 1383\u20131392. ACM. doi:10.1145\/2702123.2702131.","DOI":"10.1145\/2702123.2702131"},{"key":"#cr-split#-CIT0023.1","unstructured":"Harbach, M., E. von Zezschwitz, A. Fichtner, A. De Luca, and M. Smith. 2014. \"It's a Hard Lock Life: A Field Study of Smartphone"},{"key":"#cr-split#-CIT0023.2","unstructured":"(un) Locking Behavior and Risk Perception.\" Symposium on Usable Privacy and Security (SOUPS 2014), 213-230."},{"key":"CIT0024","doi-asserted-by":"publisher","DOI":"10.1080\/0144929X.2014.934286"},{"key":"CIT0025","unstructured":"Intel Security and the Center for Strategic and International Studies. 2016. \u201cHacking the Skills Shortage: A Study of the International Shortage in Cybersecurity Skills.\u201d Accessed 6 December 2016. http:\/\/www.mcafee.com\/us\/resources\/reports\/rp-hacking-skills-shortage.pdf."},{"key":"CIT0026","unstructured":"Ion, I., R. Reeder, and S. Consolvo. 2015. \u201c\u201c\u2009\u2026\u2009No One Can Hack My Mind\u201d: Comparing Expert and Non-expert Security Practices.\u201d Eleventh Symposium on Usable Privacy and Security (SOUPS 2015), 327\u2013346."},{"key":"CIT0027","unstructured":"Kang, R., L. Dabbish, N. Fruchter, and S. Kiesler. 2015. \u201c\u2018My Data Just Goes Everywhere:\u2019 User Mental Models of the Internet and Implications for Privacy and Security.\u201d Eleventh Symposium on Usable Privacy and Security (SOUPS 2015), 39\u201352."},{"key":"CIT0028","unstructured":"Karatzouni, S., S. Furnell, N. Clarke, and R. A. Botha. 2007. \u201cPerceptions of User Authentication on Mobile Devices.\u201d Proceedings of the ISOneWorld Conference, Las Vegas, USA, April 11\u201313."},{"key":"CIT0029","doi-asserted-by":"crossref","unstructured":"Lin, J., S. Amini, J. Hong, N. Sadeh, J. Lindqvist, and J. Zhang. 2012. \u201cExpectation and Purpose: Understanding Users\u2019 Mental Models of Mobile app Privacy Through Crowdsourcing.\u201d Proceedings of the 2012 ACM Conference on Ubiquitous Computing, 501\u2013510. ACM. doi:10.1145\/2370216.2370290.","DOI":"10.1145\/2370216.2370290"},{"key":"CIT0030","unstructured":"Mare, S., M. Baker, and J. Gummeson. 2016. \u201cA Study of Authentication in Daily Life.\u201d Twelfth Symposium on Usable Privacy and Security (SOUPS 2016), Denver, CO."},{"key":"CIT0031","doi-asserted-by":"crossref","unstructured":"Melicher, W., D. Kurilova, S. M. Segreti, P. Kalvani, R. Shay, B. Ur, and M. Mazurek. 2016. \u201cUsability and Security of Text Passwords on Mobile Devices.\u201d Proceedings of the 2016 Annual ACM Conference on Human Factors in Computing Systems, CHI (Vol. 16). doi:10.1145\/2858036.2858384.","DOI":"10.1145\/2858036.2858384"},{"key":"CIT0032","doi-asserted-by":"publisher","DOI":"10.4018\/978-1-4666-7409-7.ch007"},{"key":"CIT0033","doi-asserted-by":"crossref","unstructured":"Micallef, N., M. Just, L. Baillie, M. Halvey, and H. G. Kayacik. 2015. \u201cWhy Aren\u2019t Users Using Protection? Investigating the Usability of Smartphone Locking.\u201d Proceedings of the 17th International Conference on Human-Computer Interaction with Mobile Devices and Services, 284\u2013294. doi:10.1145\/2785830.2785835.","DOI":"10.1145\/2785830.2785835"},{"key":"CIT0034","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-642-40343-9_15"},{"key":"CIT0035","volume-title":"The Design of Everyday Things: Revised and Expanded Edition","author":"Norman D. A.","year":"2013"},{"key":"CIT0036","doi-asserted-by":"publisher","DOI":"10.1016\/j.im.2014.03.009"},{"issue":"1","key":"CIT0037","first-page":"121","volume":"1","author":"Rader E.","year":"2015","journal-title":"Journal of Cybersecurity"},{"key":"CIT0038","doi-asserted-by":"publisher","DOI":"10.1145\/2335356.2335364"},{"key":"CIT0039","unstructured":"Raytheon and National Cyber Security Alliance. 2016. \u201cSecuring Our Future: Closing the Cybersecurity Talent Gap.\u201d Accessed 5 December 2016. http:\/\/www.raytheoncyber.com\/rtnwcm\/groups\/corporate\/documents\/content\/rtn_335212.pdf."},{"key":"CIT0040","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-319-08506-7_13"},{"key":"CIT0041","doi-asserted-by":"publisher","DOI":"10.1016\/j.cose.2015.05.012"},{"key":"CIT0042","doi-asserted-by":"crossref","unstructured":"Schaub, F., R. Deyhle, and M. Weber. 2012. \u201cPassword Entry Usability and Shoulder Surfing Susceptibility on Different Smartphone Platforms.\u201d Proceedings of the 11th International Conference on Mobile and Ubiquitous Multimedia, 13. ACM. doi:10.1145\/2406367.2406384.","DOI":"10.1145\/2406367.2406384"},{"key":"CIT0043","unstructured":"Stobert, E., and R. Biddle. 2014. \u201cThe Password Life Cycle: User Behaviour in Managing Passwords.\u201d Proceedings of the SOUPS, Menlo Park, CA, July."},{"key":"CIT0044","first-page":"3","volume-title":"International Conference on Passwords","author":"Stobert E.","year":"2015"},{"key":"CIT0045","doi-asserted-by":"crossref","unstructured":"Trewin, S., L. Koved, C. Swart, and K. Singh. 2016. \u201cPerceptions of Risk in Mobile Transactions.\u201d Proceedings of the 2016 IEEE Symposium on Security and Privacy Workshops. (IBM T.J. Watson Research Center). doi:10.1109\/SPW.2016.37.","DOI":"10.1109\/SPW.2016.37"},{"key":"CIT0046","doi-asserted-by":"crossref","unstructured":"Ur, B., J. Bees, S. M. Segreti, L. Bauer, N. Christin, and L. F. Cranor. 2016. \u201cDo Users\u2019 Perceptions of Password Security Match Reality?\u201d Proceedings of the 2016 CHI Conference on Human Factors in Computing Systems (CHI \u201816), 3748\u20133760. New\u00a0York: ACM. doi:10.1145\/2858036.2858546.","DOI":"10.1145\/2858036.2858546"},{"key":"CIT0047","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-642-42001-6_18"},{"key":"CIT0048","doi-asserted-by":"crossref","unstructured":"von Zezschwitz, E., P. Dunphy, and A. de Luca. 2013. \u201cPatterns in the Wild: A Field Study of the Usability of Pattern and pin-Based Authentication on Mobile Devices.\u201d Proceedings of the 15th International Conference on Human-Computer Interaction with Mobile Devices and Services, 261\u2013270. ACM. doi:10.1145\/2493190.2493231.","DOI":"10.1145\/2493190.2493231"},{"key":"CIT0049","unstructured":"Warshaw, J., N. Taft, and A. Woodruff. 2016. \u201cIntuitions, Analytics, and Killing Ants: Inference Literacy of High School-Educated Adults in the US.\u201d Twelfth Symposium on Usable Privacy and Security (SOUPS 2016), Denver, CO."},{"key":"CIT0050","doi-asserted-by":"crossref","unstructured":"Wash, R. 2010. \u201cFolk Models of Home Computer Security.\u201d Proceedings of the Sixth Symposium on Usable Privacy and Security, Redmond, WA, 11. ACM, July.","DOI":"10.1145\/1837110.1837125"},{"key":"CIT0051","unstructured":"Wash, R., E. Rader, R. Berman, and Z. Wellmer. 2016. \u201cUnderstanding Password Choices: How Frequently Entered Passwords are Re-used Across Websites.\u201d Symposium on Usable Privacy and Security (SOUPS), Denver, CO."},{"key":"CIT0052","unstructured":"Whitten, A., and J. D. Tygar. 1999. \u201cWhy Johnny Can\u2019t Encrypt: A Usability Evaluation of PGP 5.0.\u201d Usenix Security (Vol. 1999), Washington, DC."},{"key":"CIT0053","doi-asserted-by":"crossref","unstructured":"Wiese, O., and V. Roth. 2015. \u201cPitfalls of Shoulder Surfing Studies.\u201d Proceedings of NDSS Workshop on Usable Security, San Diego, CA.","DOI":"10.14722\/usec.2015.23007"},{"key":"CIT0054","unstructured":"Wolf, F., R. Kuber, and A. J. Aviv. 2016. \u201cPreliminary Findings from an Exploratory Qualitative Study of Security-conscious Users of Mobile Authentication.\u201d Proceedings of the Second Workshop on Security Information Workers (WSIW) (4 pages), Denver, CO."},{"key":"CIT0055","unstructured":"Yee, K. Y. 2002. \u201cUser Interaction Design for Secure Systems.\u201d Internal Technical Report - UCB\/CSD-02-1184. http:\/\/digitalassets.lib.berkeley.edu\/techreports\/ucb\/text\/CSD-02-1184.pdf."}],"container-title":["Behaviour &amp; Information Technology"],"original-title":[],"language":"en","link":[{"URL":"https:\/\/www.tandfonline.com\/doi\/pdf\/10.1080\/0144929X.2018.1436591","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2021,7,23]],"date-time":"2021-07-23T21:07:32Z","timestamp":1627074452000},"score":1,"resource":{"primary":{"URL":"https:\/\/www.tandfonline.com\/doi\/full\/10.1080\/0144929X.2018.1436591"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2018,2,15]]},"references-count":56,"journal-issue":{"issue":"4","published-print":{"date-parts":[[2018,4,3]]}},"alternative-id":["10.1080\/0144929X.2018.1436591"],"URL":"https:\/\/doi.org\/10.1080\/0144929x.2018.1436591","relation":{},"ISSN":["0144-929X","1362-3001"],"issn-type":[{"value":"0144-929X","type":"print"},{"value":"1362-3001","type":"electronic"}],"subject":[],"published":{"date-parts":[[2018,2,15]]},"assertion":[{"value":"The publishing and review policy for this title is described in its Aims & Scope.","order":1,"name":"peerreview_statement","label":"Peer Review Statement"},{"value":"http:\/\/www.tandfonline.com\/action\/journalInformation?show=aimsScope&journalCode=tbit20","URL":"http:\/\/www.tandfonline.com\/action\/journalInformation?show=aimsScope&journalCode=tbit20","order":2,"name":"aims_and_scope_url","label":"Aim & Scope"},{"value":"2017-03-28","order":0,"name":"received","label":"Received","group":{"name":"publication_history","label":"Publication History"}},{"value":"2018-01-29","order":2,"name":"accepted","label":"Accepted","group":{"name":"publication_history","label":"Publication History"}},{"value":"2018-02-15","order":3,"name":"published","label":"Published","group":{"name":"publication_history","label":"Publication History"}}]}}