Assessing Students’ Responses to Virus Risks in BYOD Environments: A Protection Motivation Theory Approach
DOI:
https://doi.org/10.53840/e-jpi.v13i2.427Abstract
The increasing use of Bring Your Own Device (BYOD) in educational institutions has introduced cybersecurity risks, particularly virus infections that may compromise personal devices and threaten institutional networks. As students increasingly rely on personal devices for academic activities, understanding the factors that influence their responses to virus threats is essential for developing effective cybersecurity strategies within BYOD environments. Therefore, this research examines the factors influencing students’ security intention and protective behaviour toward virus threats using the Protection Motivation Theory (PMT) framework. A quantitative research approach was employed, and data were collected from 200 undergraduate students at Universiti Sains Islam Malaysia (USIM) using an online questionnaire. The data were analysed using Statistical Package for the Social Sciences (SPSS) and Partial Least Squares Structural Equation Modelling (PLS-SEM) through SmartPLS. The findings revealed that perceived vulnerability, response efficacy, and self-efficacy significantly influenced security intention, whereas perceived severity and response cost were not significant predictors. In addition, security intention was found to have a significant positive influence on protective behaviour. These findings provide insights for educational institutions in developing more effective cybersecurity awareness initiatives and BYOD security policies.
Downloads
References
Alenezi, M. N., Alabdulrazzaq, H., Alshaher, A. A., & Alkharang, M. M. (2020). Evolution of malware threats and techniques: A review. *International Journal of Communication Networks and Information Security, 12*(3), 326–337.
Alhelaly, Y., Dhillon, G., & Oliveira, T. (2024). Mobile identity protection: The moderation role of self-efficacy. *Australasian Journal of Information Systems, 28*. https://doi.org/10.3127/ajis.v28.4397
Aljuaid, T. A., Abdul Wahab, A. W., & Idris, M. Y. (2023). Systematic literature review on security access control policies and techniques based on privacy requirements in a BYOD environment: State of the art and future directions. *Applied Sciences, 13*(14), 8048. https://doi.org/10.3390/app13148048
Alqahtani, M. (2022). Factors affecting cybersecurity awareness among university students. *Applied Sciences, 12*(5), 2589. https://doi.org/10.3390/app12052589
Alqarni, S. (2025). Humans as a weak link to malware distribution. *International Journal of Computer Applications, 187*, 94–99. https://doi.org/10.5120/ijca2025925564
Alrawhani, E. M., Romli, A., & Al-Sharafi, M. A. (2025). Evaluating the role of protection motivation theory in information security policy compliance: Insights from the banking sector using PLS-SEM approach. *Journal of Open Innovation: Technology, Market, and Complexity, 11*(1), 100463.
Carter, T., & McNealey, R. L. (2025). Protection motivation and cybersecurity intentions: A visual conjoint experiment. *Journal of Experimental Criminology*. Advance online publication. https://doi.org/10.1007/s11292-025-09717-1
Chang, H. H., Wong, K. H., & Lee, H. C. (2022). Peer privacy protection motivation and action on social networking sites. *Electronic Commerce Research and Applications, 54*, 101176.
Chilton, D., Wilson, K., & Dutton, J. (2025). A case study of students' and teachers' attitudes towards BYOD and its use within their history classrooms. *Education and Information Technologies, 30*(4), 4795–4824. https://doi.org/10.1007/s10639-024-13006-1
Conner, M., & Norman, P. (2022). Understanding the intention-behavior gap: The role of intention strength. *Frontiers in Psychology, 13*, 923464. https://doi.org/10.3389/fpsyg.2022.923464
Creswell, J. W., & Creswell, J. D. (2023). *Research design: Qualitative, quantitative, and mixed methods approaches* (6th ed.). Sage.
Díaz-Oreiro, I., López, G., Quesada, L., & Guerrero, L. A. (2021). UX evaluation with standardized questionnaires in ubiquitous computing and ambient intelligence: A systematic literature review. *Advances in Human-Computer Interaction, 2021*, Article 5518722. https://doi.org/10.1155/2021/5518722
Dillman, D. A., Smyth, J. D., & Christian, L. M. (2022). *Internet, phone, mail, and mixed-mode surveys: The tailored design method* (5th ed.). Wiley.
Dodge, H. R., Burruss, G. W., Holt, T. J., & Bossler, A. M. (2023). What motivates users to adopt cybersecurity practices? A survey experiment assessing protection motivation theory. *Criminology & Public Policy, 22*(4), 777–806. https://doi.org/10.1111/1745-9133.12641
Farooq, A., Ahmad, F., Khadam, N., Lorenz, B., & Isoaho, J. (2020). The impact of perceived security on intention to use e-learning among students. In *2020 IEEE 20th International Conference on Advanced Learning Technologies (ICALT)* (pp. 360–364). IEEE. https://doi.org/10.1109/ICALT49669.2020.00115
Felicia, F., Noraini, M. Y., & Nurul, H. A. (2022). Worm-based malware threats in network environments. *Research in Management of Technology and Business, 3*(2), 85–86.
Gustara, M., Cahyadi, E. R., & Sartono, B. (2025). Cybersecurity awareness and behavior using PMT. *Indonesian Interdisciplinary Journal of Sharia Economics, 8*(3), 13552–13565.
Gwenhure, A. K. (2025). University students' security behavior against phishing attacks. *Journal of Cybersecurity, 11*(1).
Hair, J. F., Hult, G. T. M., Ringle, C. M., & Sarstedt, M. (2022). *A primer on partial least squares structural equation modeling (PLS-SEM)* (3rd ed.). Sage.
Han, M., Zhao, H., Ma, X., & Shi, R. (2025). Influencing factors of information security behavior among college students based on protection motivation theory: Evidence from China. *Frontiers in Public Health, 13*, 1677024. https://doi.org/10.3389/fpubh.2025.1677024
Henseler, J., Ringle, C. M., & Sarstedt, M. (2015). A new criterion for assessing discriminant validity in variance-based structural equation modeling. Journal of the Academy of Marketing Science, 43(1), 115–135. https://doi.org/10.1007/s11747-014-0403-8
Jones, K. S., Lodinger, N. R., Widlus, B. P., Namin, A. S., Maw, E., & Armstrong, M. (2022). Perceived severity of cyber-attack consequences. *Journal on Multimodal User Interfaces, 16*(4), 399–412.
Jansen, J., Van Schaik, P., & Thompson, M. (2020). Protection motivation and cybersecurity behavior: The role of coping appraisal in security compliance intentions. Computers in Human Behavior, 105, 106229. https://doi.org/10.1016/j.chb.2019.106229
Khan, N. F., Ikram, N., Murtaza, H., & Javed, M. (2023). PMT-based cybersecurity awareness training. *Computers & Security, 125*, 103049.
Kiran, U., Khan, N. F., Murtaza, H., Farooq, A., & Pirkkalainen, H. (2025). Modeling cybersecurity behaviors using PMT. *Computers & Security, 149*, 104204.
Morwitz, V. G., & Munz, K. P. (2021). Intentions. *Consumer Psychology Review, 4*(1), 26–41. https://doi.org/10.1002/arcp.1061
Mou, J., Cohen, J. F., Bhattacherjee, A., & Kim, J. (2022). A test of protection motivation theory in the information security literature: A meta-analytic structural equation modeling approach. *Journal of the Association for Information Systems, 23*(1), 196–236. https://doi.org/10.17705/1jais.00723
Ng, K. C., Zhang, X., Thong, J. Y., & Tam, K. Y. (2021). Threats to information security. *Journal of Management Information Systems, 38*(3), 732–764.
Rachmayanti, T. S., Sari, P. K., & Candiwan, C. (2024). Motivations for cybersecurity learning. In *Proceedings of ICITSI 2024* (pp. 517–522).
Rahman, A., & Muktadir, M. G. (2021). SPSS as a quantitative analysis tool. *International Journal of Research and Innovation in Social Science, 5*(10), 300–302.
Sackey, E. (2026). *Privacy concerns in a BYOD environment: Investigating user awareness, privacy expectations, and institutional surveillance in tertiary education in Ghana*. https://doi.org/10.13140/RG.2.2.17699.92968
Saleh, T. (2024). *Factors affecting cybersecurity awareness* (Doctoral dissertation, Westcliff University).
Siponen, M., Rönkkö, M., Fufan, L., Haag, S., & Laatikainen, G. (2024). Protection motivation theory in information security behavior research: Reconsidering the fundamentals. *Communications of the Association for Information Systems, 53*, 1136–1165. https://doi.org/10.17705/1CAIS.05348
Sulaiman, N. S., Fauzi, M. A., Hussain, S., & Wider, W. (2022). Cybersecurity behavior among government employees. *Information, 13*(9), 413.
Takona, J. P. (2024). Research design: Qualitative, quantitative, and mixed methods approaches / sixth edition. *Quality & Quantity, 58*(1), 1011–1013. https://doi.org/10.1007/s11135-023-01798-2
Vortia, W. (2025). Modelling cybersecurity awareness, perceived threats and secure online behavioral intentions among Ghanaian university students: A PLS-SEM approach. *Magna Scientia Advanced Research and Reviews, 14*(2), 96–111. https://doi.org/10.30574/msarr.2025.14.2.0094
Downloads
Published
Issue
Section
License
Copyright (c) 2026 e-Jurnal Penyelidikan dan Inovasi

This work is licensed under a Creative Commons Attribution-NonCommercial 4.0 International License.










