Close this search box.

Casimiro M., Segel J., Li L., Wang Y., Cranor L F.



Personal Identification Numbers (PINs), required to authenticate on a multitude of devices, are ubiquitous nowadays. To increase the security and safety of their assets, users are advised to create unique PINs for a lot of accounts they possess. Considering the multiple accounts users hold, remembering a myriad of PINs is often burdensome for users. As a consequence, we suspect users tend to trade-off security for memorability, due to the fear of forgetting their PINs, thus reusing them. To test this hypothesis we conducted a study on MTurk that asked participants about their PIN creation and reuse behaviors. Our results show that users draw inspiration from important dates to create their PINs and that PIN reuse is common practice, even between high and low valued accounts. Participants justify this behavior stating they reuse PINs for convenience and ease of remembrance.