Nudge or Restraint: How do People Assess Nudging in Cybersecurity—A Representative Study in Germany
摘要
While nudging is a long-established instrument in many contexts, it has more recently emerged to be relevant in cybersecurity as well. For instance, existing research suggests nudges for stronger passwords or safe WiFi connections. However, those nudges are often not as effective as desired. To improve their effectiveness, it is crucial to understand how people assess nudges in cybersecurity, to address potential fears and resulting reactance, and to facilitate voluntary compliance. In other contexts, such as the health sector, studies have already thoroughly explored the attitude towards nudging. To address that matter in cybersecurity, we conducted a representative study in Germany ( \(N = 1,012\) ), asking people about their attitude towards nudging in that specific context. Our findings reveal that 64% rated nudging in cybersecurity as helpful, however several participants expected risks such as intentional misguidance, manipulation, and data exposure as well.