Frank Hecker:
> I thought this was an interesting blog post, with obvious implications
> for the issue of warning dialogs in Firefox, Thunderbird, etc.
>
> http://usablesecurity.com/2005/07/19/obedience-to-authority/

Florian Weimer wrote:
> all-too-common security warnings are not effective at all because
> users tend to increase their productivity by blinding clicking away

Lev Walkin wrote:
> Instead of the simple Yes/No warning dialogs, an application could
> display something like:
>
>       In order to proceed with a potentially unsafe choice,
>       please enter the following random dictionary word
>       into an input area below:
>
>               CONTEMPLATE
>
>               +---------+
>               |_        |
>               +---------+

It could, but i suspect that such a measure would quickly become
reviled.  Getting into an arms race against one's own users just
looks like an unpleasant road to go down.

Making the awareness part of the main task is likely to be more
successful.  Admittedly it is a very tricky design challenge to
find clever ways to do that, but it will probably work better than
adding irrelevant chores for users to do.


-- ?!ng
_______________________________________________
Mozilla-security mailing list
Mozilla-security@mozilla.org
http://mail.mozilla.org/listinfo/mozilla-security

Reply via email to