首页> 外文会议>International Conference on Applied Human Factors and Ergonomics >Swipe Authentication: Exploring Over-the-Shoulder Attack Performance
【24h】

Swipe Authentication: Exploring Over-the-Shoulder Attack Performance

机译:滑动身份验证:探索过度肩部攻击性能

获取原文

摘要

Swipe passwords are a popular method for authenticating on mobile phones. In public, these passwords may become visible to attackers who engage in shoulder surfing. There is a need for strategies that protect swipe passwords from over-the-shoulder attacks (OSAs). We empirically explored the impact of providing gesture visual feedback on OSA performance during successful and unsuccessful swipe login attempts on mobile phones. We found evidence that entry visual feedback facilitates OSAs. As users are biased towards symmetrical swipe patterns, we investigated their impact on attack performance. We found that symmetrical swipe patterns were less vulnerable than asymmetrical patterns, possibly due to the speed of entry. As users tend toward simple patterns, we investigated the impact that nonadjacent, diagonal knight moves have on OSAs. We found that knight moves significantly decreased OSA performance. We recommend users turn off gesture entry visual feedback and use knight moves for greater password security.
机译:滑动密码是一种在移动电话上进行身份验证的流行方法。在公共场合,这些密码可能会对肩部冲浪的攻击者可见。需要保护从肩部攻击(OSAS)的滑动密码的策略。我们经验探索了在移动电话上成功和不成功的滑动登录尝试期间提供了在OSA性能下提供手势视觉反馈的影响。我们发现进入视觉反馈有助于OSA的证据。由于用户偏向对称的滑动模式,我们调查了对攻击性能的影响。我们发现对称滑动模式的易感性不如不对称模式,可能是由于进入速度。随着用户倾向于简单的模式,我们调查了非附带,对角线骑士移动对OSA的影响。我们发现骑士动作显着降低了OSA性能。我们建议用户关闭手势输入可视反馈并使用骑士移动以获得更大的密码安全性。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号