Design and evaluation of a shoulder-surfing resistant graphical password scheme

AVI '06: Proceedings of the working conference on Advanced visual interfaces(2006)

引用 532|浏览3
暂无评分
摘要
When users input their passwords in a public place, they may be at risk of attackers stealing their password. An attacker can capture a password by direct observation or by recording the individual's authentication session. This is referred to as shoulder-surfing and is a known risk, of special concern when authenticating in public places. Until recently, the only defense against shoulder-surfing has been vigilance on the part of the user. This paper reports on the design and evaluation of a game-like graphical method of authentication that is resistant to shoulder-surfing. The Convex Hull Click (CHC) scheme allows a user to prove knowledge of the graphical password safely in an insecure location because users never have to click directly on their password images. Usability testing of the CHC scheme showed that novice users were able to enter their graphical password accurately and to remember it over time. However, the protection against shoulder-surfing comes at the price of longer time to carry out the authentication.
更多
查看译文
关键词
authentication session,chc scheme,password image,game-like graphical method,shoulder-surfing resistant graphical password,novice user,graphical password,users input,public place,longer time,known risk,usability testing,shoulder surfing,convex hull,authentication,password security
AI 理解论文
溯源树
样例
生成溯源树,研究论文发展脉络
Chat Paper
正在生成论文摘要