首页> 外文期刊>Computers & Security >DRAW-A-PIN: Authentication using finger-drawn PIN on touch devices
【24h】

DRAW-A-PIN: Authentication using finger-drawn PIN on touch devices

机译:DRAW-A-PIN:在触摸设备上使用手指PIN进行身份验证

获取原文
获取原文并翻译 | 示例

摘要

This paper presents Draw-A-PIN, a user authentication system on a device with a touch interface that supports the use of PINs. In the proposed system, the user is asked to draw her PIN on the touch screen instead of typing it on a keypad. Consequently, Draw-A-PIN could offer better security by utilizing drawing traits or behavioral biometrics as an additional authentication factor beyond just the secrecy of the PIN. In addition, Draw-A-PIN inherently provides acceptability and usability by leveraging user familiarity with PINs. To evaluate the security and usability of the approach, Draw-A-PIN was implemented on Android phones and 3203 legitimate finger-drawn PINs and 4655 forgery samples were collected through an extensive and unsupervised field experiment over 10 consecutive days. Experimental results show that Draw-A-PIN achieves an equal error rate of 4.84% in a scenario where the attacker already knows the PIN by shoulder surfing. Finally, results from a user study based on the System Usability Scale questionnaire confirm that Draw-A-PIN is highly usable.
机译:本文介绍了Draw-A-PIN,这是一种具有支持PIN的触摸界面的设备上的用户身份验证系统。在提出的系统中,要求用户在触摸屏上画出她的PIN,而不是在键盘上输入。因此,Draw-A-PIN可以通过利用绘画特征或行为生物特征作为PIN以外的其他验证因素来提供更好的安全性。另外,通过利用用户对PIN的熟悉程度,Draw-A-PIN固有地提供了可接受性和可用性。为了评估该方法的安全性和可用性,已在Android手机上实施了Draw-A-PIN,并通过连续10天的广泛且无监督的现场实验,收集了3203个合法的手指PIN和4655个伪造样本。实验结果表明,在攻击者已经通过肩膀冲浪知道PIN的情况下,Draw-A-PIN的平均错误率为4.84%。最后,基于系统可用性量表调查表的用户研究结果证实Draw-A-PIN的可用性很高。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号