A Systematic Study of the Consistency of Two-Factor Authentication User Journeys on Top-Ranked Websites

Ghorbani Lyastani, Sanam and Bugiel, Sven and Backes, Michael
(2023) A Systematic Study of the Consistency of Two-Factor Authentication User Journeys on Top-Ranked Websites.
In: Network and Distributed System Security (NDSS) Symposium 2023, 27 February - 3 March 2023, San Diego, CA, USA.
Conference: NDSS Network and Distributed System Security Symposium

[img] Text
Lyastani_NDSS23.pdf

Download (3MB)

Abstract

Heuristics for user experience state that users will transfer their expectations from one product to another. A lack of consistency between products can increase users' cognitive friction, leading to frustration and rejection. This paper presents the first systematic study of the external, functional consistency of two-factor authentication user journeys on top-ranked websites. We find that these websites implement only a minimal number of design aspects consistently (e.g., naming and location of settings) but exhibit mixed design patterns for setup and usage of a second factor. Moreover, we find that some of the more consistently realized aspects, such as descriptions of two-factor authentication, have been described in the literature as problematic and adverse to user experience. Our results advocate for more general UX guidelines for 2FA implementers and raise new research questions about the 2FA user journeys.

Actions

Actions (login required)

View Item View Item