【24h】

Explore-a-Nation: Combining Graphical and Alphanumeric Authentication

机译:国家探索:图形和字母数字身份验证相结合

获取原文

摘要

Graphical authentication has been a proposed solution to the usability and memorability issues seen with traditional alphanumeric passwords. However, graphical authentication schemes are often criticized for their susceptibility to Over-the-Shoulder Attacks (OSAs). This research proposes and evaluates Explore-a-Nation (EaN), a unique hybrid authentication scheme that attempts to bridge the gap between graphical authentication passcodes and strong alphanumeric passwords. EaN takes advantage of the known security and efficiency associated with passwords along with the enhanced recognition benefit of graphical schemes. The EaN scheme provides users with a static image consisting of a map wherein an icon passcode path is hidden amongst other distractor icons. Following the icon path allows users to generate their strong password. This study compared our EaN prototype to alphanumeric password standards and to Use Your Illusion (UYI) across the dimensions of efficiency, accuracy, OSA resistance, and subjective usability. User login times for both EaN and UYI met the efficiency usability standards established by alphanumeric passwords. Results for UYI (99%) login accuracy were significantly better than EaN (91%). And, UYI obtained a significantly higher Subjective Usability Survey score than EaN, with both schemes exceeding our usability requirement. Notably, EaN was shown to be resistant to OSAs while UYI was not. We suggest EaN might prove to be an effective next-generation authentication scheme for both frequent and intermittent users.
机译:图形身份验证是针对传统字母数字密码出现的可用性和记忆性问题的建议解决方案。但是,图形身份验证方案经常因其对越过肩膀攻击(OSA)的敏感性而受到批评。这项研究提出并评估了探索国家(EaN),这是一种独特的混合身份验证方案,旨在弥合图形身份验证密码和强字母数字密码之间的差距。 EaN利用了与密码相关的已知安全性和效率以及图形方案的增强识别优势。 EaN方案为用户提供了由地图组成的静态图像,其中图标密码路径隐藏在其他干扰因素图标中。跟随图标路径可以使用户生成其强密码。这项研究将我们的EaN原型与字母数字密码标准进行了比较,并在效率,准确性,OSA抵抗性和主观可用性等维度上使用了您的幻觉(UYI)。 EaN和UYI的用户登录时间均符合字母数字密码建立的效率可用性标准。 UYI(99%)登录准确性的结果显着优于EaN(91%)。而且,UYI获得的主观可用性调查得分明显高于EaN,这两种方案均超出了我们的可用性要求。值得注意的是,EaN被证明对OSA有抵抗力,而UYI没有。我们建议EaN可能被证明对于频繁和间歇使用的用户都是有效的下一代身份验证方案。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号