Computer security research with human subjects: Risks, benefits and informed consent

7Citations
Citations of this article
34Readers
Mendeley users who have this article in their library.
Get full text

Abstract

Computer security research frequently entails studying real computer systems and their users; studying deployed systems is critical to understanding real world problems, so is having would-be users test a proposed solution. In this paper we focus on three key concepts in regard to ethics: risks, benefits, and informed consent. Many researchers are required by law to obtain the approval of an ethics committee for research with human subjects, a process which includes addressing the three concepts focused on in this paper. Computer security researchers who conduct human subjects research should be concerned with these aspects of their methodology regardless of whether they are required to by law, it is our ethical responsibility as professionals in this field. We augment previous discourse on the ethics of computer security research by sparking the discussion of how the nature of security research may complicate determining how to treat human subjects ethically. We conclude by suggesting ways the community can move forward. © 2012 Springer-Verlag.

Cite

CITATION STYLE

APA

Johnson, M. L., Bellovin, S. M., & Keromytis, A. D. (2012). Computer security research with human subjects: Risks, benefits and informed consent. In Lecture Notes in Computer Science (including subseries Lecture Notes in Artificial Intelligence and Lecture Notes in Bioinformatics) (Vol. 7126 LNCS, pp. 131–137). https://doi.org/10.1007/978-3-642-29889-9_11

Register to see more suggestions

Mendeley helps you to discover research relevant for your work.

Already have an account?

Save time finding and organizing research with Mendeley

Sign up for free