arrow
Return

Measuring Security Practices

delete2022-08-19
delete1
delete
OA
AI
L
Louis F. DeKoven *
A
Audrey Randall
A
Ariana Mirian
G
Gautam Akiwate
A
Ansel Blume
L
Lawrence K. Saul
A
Aaron Schulman
G
Geoffrey M. Voelker
S
Stefan Savage
DOI:10.1145/3547133delete
deleteOriginal
deleteOriginal request for help
deleteShare
deleteSave
Abstract

Abstract

En 中文
Users are encouraged to adopt a wide array of technologies and behaviors to reduce their security risk. However, the adoption of these best practices, ranging from the use of antivirus products to keeping software updated, is not well understood, nor is their practical impact on security risk well established. To explore these issues, we conducted a large-scale measurement of 15,000 computers over six months. We use passive monitoring to infer and characterize the prevalence of various security practices as well as a range of other potentially security-relevant behaviors. We then explore the extent to which differences in key security behaviors impact the real-world outcomes (i.e., that a device shows clear evidence of having been compromised).

Journal

Communications of the ACM cover
Communications of the ACM
IF:
12.2
Papers:
1.2W
Citations:
3.7W

Organization

University of California System cover
University of California System
Scholars:
37.5W
Papers: 33.7W
Citations: 6.6K