Convenience or Strength? Aiding Optimal Strategies in Password Generation

Conference paper
Part of the Advances in Intelligent Systems and Computing book series (AISC, volume 782)


Passwords are a wide-spread authentication method used almost unanimously. Though the topic of passwords security may seem old, it is more relevant than ever. This study examines current user-password interactions and classifies them in terms of convenience and security. Findings show that users are aware of what constitutes a secure password but may forgo these security measures in terms of more convenient passwords, largely depending on account type. Additionally, responses show that users are very motivated to reuse or create similar passwords, making them easy to remember and including something meaningful to them. Finally, researchers provide discussion of the results along with a conclusion and recommendations.


Security Convenience Password management Cybersecurity 


  1. 1.
    Florencio, D., Herley, C.: A large-scale study of web password habits. In: Proceedings of the 16th International Conference on World Wide Web, pp. 657–666. ACM (2007)Google Scholar
  2. 2.
    Tam, L., Glassman, M., Vandenwauver, M.: The psychology of password management: a tradeoff between security and convenience. Behav. Inf. Technol. 29(3), 233–244 (2010). Scholar
  3. 3.
    Bonneau, J., Herley, C., Van Oorschoto, P.C., Stajano, F.: Passwords and the evolution of imperfect authentication. Commun. ACM 58(7), 78–87 (2015). Scholar
  4. 4.
    Korbar, B., Blythe, J., Koppel, R., Kothari, V., Smith, S.: Validating an agent-based model of human password behavior. In: The Workshops of the Thirtieth AAAI Conference on Artificial Intelligence, pp. 167–174 (2016)Google Scholar
  5. 5.
    Shay, R., Bauer, L., Christin, N., Cranor, L.F., Forget, A., Komanduri, S., Mazurek, M.L., Melicher, W., Segreti, S., Ur, B.: A spoonful of sugar?: The impact of guidance and feedback on password-creation behavior. In: Proceedings of the 33rd Annual ACM Conference on Human Factors in Computing Systems, pp. 2903–2912. ACM, April 2015Google Scholar
  6. 6.
    Scott, C., Wynne, D., Boonthum-Denecke, C.: Examining the privacy of login credentials using web-based single sign-on – are we giving up security and privacy for convenience? In: Symposium Conducted at the IEEE Cybersecurity Symposium (CYBERSEC 2016), Coeur d’Alene, Idaho (2017).

Copyright information

© Springer International Publishing AG, part of Springer Nature 2019

Authors and Affiliations

  1. 1.Fort Hays State UniversityHaysUSA

Personalised recommendations