03.Homework3.docx

Homework 3

Due a week after the first class at 11:59 pm

Read the assigned articles in D2L. Answer the questions below. The answers must demonstrate that you have substantively engaged with the material and you haven’t simply goggled the question and copy/pasted the answer.

1. What do systematic violations of rationality (heuristics and biases) have in common? How do those commonalities manifest across heuristics?

2. Why might someone ignore cybersecurity completely when choosing a piece of software?

3. Scenario: Bob, who just got a new laptop, installs the virus scanner. It turns out that it prevents him from installing the software he needs for his important project that is due in two days. What are his options? What is likely to do and why?

4. How can you tell if something is rational?

5. What is the difference between maximizing for a non-monetary utility function and behaving in a boundedly rational fashion?

6. It was recently revealed that many election management software systems that were installed across the US had remote access software installed by the vendor. The vendors’ management claims no knowledge of any remote access software. What is likely to have happened and why?

7. When are dancing pigs more important than security in an app?

8. Why is there no single way to define what is rational in cybersecurity behavior?

9. What the characteristics of security singularities?

10. Provide an example of a security singularity that is not mentioned in the paper and comment on how the example interplays with the concept of bounded rationality.

Page | 1

reative Commons License
This document is licensed with a Creative Commons Attribution 4.0 International License ©2017

Page | 1

Creative Commons License
This document is licensed with a Creative Commons Attribution 4.0 International License ©2018 University of Maryland