arXiv Science⌕ Search

arXiv · 2609.31815

Anatomy of a Spreadsheet Failure, Analysing the EuSpRIG Horror Story Corpus

Abstract

Spreadsheet disasters have been documented for more than thirty years, but they have not gone away. This paper examines the EuSpRIG horror stories archive as evidence of how ordinary spreadsheets fail and the consequences that follow. After cleaning and deduplication, 121 incidents from 1995 to 2026 were classified into twelve failure categories and analysed by mechanism, context and consequence. Formula errors, data-entry slips and data-handling mistakes account for 71 cases and recur across the whole period, from Fidelity's missing minus sign in 1995 to a mistyped date that cost Norway's sovereign wealth fund about $92 million in 2024. A second pattern concerns information present in a workbook but not visible to the recipient: hidden rows, hidden sheets, pivot-table caches, embedded objects and retained source layers can cause harm even when no calculation is wrong. The clearest rise in reported cases is in this hidden or embedded data category, whose most serious example is the 2022 Ministry of Defence spreadsheet that exposed details of roughly 18,700 Afghan applicants through hidden rows. The paper argues that spreadsheet risk is no longer only a problem of wrong numbers. It also involves visibility, disclosure, governance and trust. Existing taxonomies remain useful for formula, entry and handling errors, but do not fully capture the public harm caused by spreadsheets used as uncontrolled operational infrastructure. The same mistakes have persisted for three decades, what has changed is the authority organisations give to the spreadsheets that contain them.

Explore related subjects

Keep this discovery

Explore connections, maps & timelines

BibTeXRIS

Simon Thorne, Angela Collins. 2026-09-25. Anatomy of a Spreadsheet Failure, Analysing the EuSpRIG Horror Story Corpus. https://arxiv.org/abs/2609.31815

Cite the original work for its findings. Save a collection to share your selection of sources.

KEEP EXPLORING

Related papers

Meme Template Identification in the Wild: Comparing Methods for Semi-Open-Set Recognition

Image-with-text memes are a dominant form of online communication, and much of their spread happens through meme templates which are recurring visual formats that users adapt with new text or imagery. Most prior work scores memes individually for engagement or harmful content, an approach that is structurally blind to templates. Templates might amplify these patterns and enable coordinated harassment, which becomes visible only when memes are grouped by shared template. We formalize meme template identification as a semi-open-set recognition problem, requiring methods to both classify known templates and reject template-free memes and non-meme content. We introduce an evaluation framework spanning a controlled setting (1,704 ImgFlip templates) and a heterogeneous real-world social media sample, comparing supervised CNN- and distance-based methods, unsupervised density-based clustering, a novel fused SigLIP2+DINOv2 representation, and a retrieval-augmented LLM pipeline. In real-world social media sources dedicated to meme sharing, we find that only 21% of images use a known template, while 58% are template-free and 21% are not memes at all; identification performance also drops sharply from the controlled setting (best MCC 0.974 to 0.684). The loss comes mainly from deciding whether an image is a template-based meme at all, rather than identifying the template. Our dataset of 1.1M soft-labeled social media images, together with code for reproducibility, is available upon request.

cs.CY↗

(Mis-)Informed Consent: Predatory Apps and the Exploitation of Populations with Limited Literacy

Among populations with limited literacy in emerging digital markets, the adoption of mobile phones, combined with comprehension barriers and poor cybersecurity hygiene, has created hidden privacy risks. This paper examines how informed consent is often abused by predatory financial applications, leading to financial scams that disproportionately affect users with low literacy. We focus on predatory loan, gambling, and trading apps, analyzing a dataset of 50 Google Play Store apps to measure how many omit or obfuscate critical privacy disclosures. We also evaluate comprehension gaps among users with low literacy via a targeted user study and assess whether Large Language Model (LLM)-generated summaries, translations, and visual cues can improve consent clarity. Our findings show that 85% of study participants did not understand basic app permissions, underscoring the urgent need for stronger regulatory oversight and scalable LLM-driven privacy-literacy tools.

cs.CY↗

Validated Behavioral Hypotheses as a Lens for Evaluating Participant Simulation

We propose using validated behavioral hypotheses as a lens for evaluating LLM agents as simulated human participants. This approach makes behavioral agreement in participant simulation measurable and decomposable, revealing which human effects agents reproduce, where they diverge, and how agent design changes that agreement. To operationalize this idea, we build HumanStudy-Bench, an open benchmarking platform that reconstructs experimental protocols from published human studies and administers these protocols to agents serving as silicon participants. The benchmark compares population-level effects derived from agent responses with the corresponding published human findings using two metrics: the Probability Alignment Score (PAS) for inferential agreement and the Effect Consistency Score (ECS) for effect-magnitude agreement. We apply HumanStudy-Bench across 12 human studies, evaluating 10 models under four agent designs, with 6,588 simulated participants per agent configuration. By making published human studies and their validated behavioral hypotheses reusable for evaluating simulated participants, we hope to make the behavioral assumptions underlying LLM-based social simulations and their sensitivity to agent design explicit and empirically testable.

cs.CY↗