Stop Trying to Fix the User

Security Design: Stop Trying to Fix the User by Bruce Schneier

We must stop trying to fix the user to achieve security. We'll never get there, and research toward those goals just obscures the real problems. Usable security does not mean "getting people to do what we want." It means creating security that works, given (or despite) what people do. It means security solutions that deliver on users' security goals without­ -- as the 19th-century Dutch cryptographer Auguste Kerckhoffs aptly put it­ -- "stress of mind, or knowledge of a long series of rules."

Old (by Internet standards) but still relevant.

Author: Khürt Williams

Hello, I'm Khürt, a Gen X-er residing near Princeton University in Montgomery Township, New Jersey, with a passion for aquariums, terrariums, and photography, capturing moments with digital and 35mm film cameras. I find solace in the woods through hiking, and my eclectic musical tastes span soca, Afrobeat, calypso, 1990s rap, grunge rock, and alternative genres. My tech interests are towards open-source software, Linux, UNIX, and Apple products, particularly macOS.

One thought on “Stop Trying to Fix the User”

  1. Pingback: Duncan Stephen

Comments are closed.

%d bloggers like this: