  {"id":491,"date":"2025-06-16T09:22:05","date_gmt":"2025-06-16T13:22:05","guid":{"rendered":"https:\/\/www.yorku.ca\/lassonde\/privacy\/?p=491"},"modified":"2025-06-16T09:22:05","modified_gmt":"2025-06-16T13:22:05","slug":"new-paper-measuring-nist-authentication-standards-compliance-by-higher-education-institutions","status":"publish","type":"post","link":"https:\/\/www.yorku.ca\/lassonde\/privacy\/2025\/06\/16\/new-paper-measuring-nist-authentication-standards-compliance-by-higher-education-institutions\/","title":{"rendered":"[New paper] Measuring NIST Authentication Standards Compliance by Higher Education Institutions"},"content":{"rendered":"\n<p>Prof Shvartzshnaider co-authored a paper on \"<a href=\"http:\/\/Prof Shvartzshnaider co-authored a paper on &quot;Measuring NIST Authentication Standards Compliance by Higher Education Institutions&quot; with Noah Apthorpe and Boen Beavers,\u00a0Colgate University \u00a0and Brett Frischmann,\u00a0Villanova University that will appear in the processing of the Twenty-First Symposium on Usable Privacy and Security\">Measuring NIST Authentication Standards Compliance by Higher Education Institutions<\/a>\" with Noah Apthorpe and Boen Beavers,\u00a0<em>Colgate University<\/em> \u00a0and Brett Frischmann,\u00a0<em>Villanova University<\/em> that will appear in the processing of the Twenty-First Symposium on Usable Privacy and Security<\/p>\n\n\n\n<blockquote class=\"wp-block-quote is-layout-flow wp-block-quote-is-layout-flow\" style=\"font-size:14px\">\n<p class=\"has-cyan-bluish-gray-background-color has-background\"><em>\"In this paper, we examine the authentication policies of a diverse set of 135 colleges and universities in the United States and Canada to determine compliance with four standards from NIST Special Publication 800-63 Digital Identity Guidelines.<br>We find widespread, but not universal, deployment of multi-factor authentication across institutions. We also find prevalent outdated use of password expiration, password composition rules, and knowledge-based authentication. These results support further investment and research into incentive structures for standards compliance and the diffusion of expert guidance to practitioners.\"<\/em><\/p>\n<\/blockquote>\n\n\n\n<p><\/p>\n","protected":false},"excerpt":{"rendered":"<p>Prof Shvartzshnaider co-authored a paper on \"Measuring NIST Authentication Standards Compliance by Higher Education Institutions\" with Noah Apthorpe and Boen Beavers,\u00a0Colgate University \u00a0and Brett Frischmann,\u00a0Villanova University that will appear in the processing of the Twenty-First Symposium on Usable Privacy and Security \"In this paper, we examine the authentication policies of a diverse set of 135 [&hellip;]<\/p>\n","protected":false},"author":421,"featured_media":0,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"_kad_blocks_custom_css":"","_kad_blocks_head_custom_js":"","_kad_blocks_body_custom_js":"","_kad_blocks_footer_custom_js":"","footnotes":""},"categories":[5,9,3],"tags":[],"class_list":["post-491","post","type-post","status-publish","format-standard","hentry","category-news","category-paper","category-publications"],"taxonomy_info":{"category":[{"value":5,"label":"News"},{"value":9,"label":"Paper"},{"value":3,"label":"Publications"}]},"featured_image_src_large":false,"author_info":{"display_name":"yansh","author_link":"https:\/\/www.yorku.ca\/lassonde\/privacy\/author\/yansh\/"},"comment_info":"","category_info":[{"term_id":5,"name":"News","slug":"news","term_group":0,"term_taxonomy_id":5,"taxonomy":"category","description":"","parent":0,"count":18,"filter":"raw","cat_ID":5,"category_count":18,"category_description":"","cat_name":"News","category_nicename":"news","category_parent":0},{"term_id":9,"name":"Paper","slug":"paper","term_group":0,"term_taxonomy_id":9,"taxonomy":"category","description":"","parent":3,"count":11,"filter":"raw","cat_ID":9,"category_count":11,"category_description":"","cat_name":"Paper","category_nicename":"paper","category_parent":3},{"term_id":3,"name":"Publications","slug":"publications","term_group":0,"term_taxonomy_id":3,"taxonomy":"category","description":"","parent":0,"count":9,"filter":"raw","cat_ID":3,"category_count":9,"category_description":"","cat_name":"Publications","category_nicename":"publications","category_parent":0}],"tag_info":false,"_links":{"self":[{"href":"https:\/\/www.yorku.ca\/lassonde\/privacy\/wp-json\/wp\/v2\/posts\/491","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.yorku.ca\/lassonde\/privacy\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.yorku.ca\/lassonde\/privacy\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.yorku.ca\/lassonde\/privacy\/wp-json\/wp\/v2\/users\/421"}],"replies":[{"embeddable":true,"href":"https:\/\/www.yorku.ca\/lassonde\/privacy\/wp-json\/wp\/v2\/comments?post=491"}],"version-history":[{"count":1,"href":"https:\/\/www.yorku.ca\/lassonde\/privacy\/wp-json\/wp\/v2\/posts\/491\/revisions"}],"predecessor-version":[{"id":492,"href":"https:\/\/www.yorku.ca\/lassonde\/privacy\/wp-json\/wp\/v2\/posts\/491\/revisions\/492"}],"wp:attachment":[{"href":"https:\/\/www.yorku.ca\/lassonde\/privacy\/wp-json\/wp\/v2\/media?parent=491"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.yorku.ca\/lassonde\/privacy\/wp-json\/wp\/v2\/categories?post=491"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.yorku.ca\/lassonde\/privacy\/wp-json\/wp\/v2\/tags?post=491"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}