...
首页> 外文期刊>Computers & Security >TinyLock: Affordable defense against smudge attacks on smartphone pattern lock systems
【24h】

TinyLock: Affordable defense against smudge attacks on smartphone pattern lock systems

机译:TinyLock:针对智能手机图案锁定系统上的污迹攻击提供经济实惠的防御

获取原文
获取原文并翻译 | 示例
           

摘要

A pattern lock system is a widely used graphical password mechanism in today's mobile computing environment. To unlock a smartphone, a user draws a memorized graphical pattern with a finger on a flat touchscreen whereas the finger actually leaves its oily residues, also called smudges, on the surface of the touchscreen. The smudges can be exploited by adversaries to reproduce the secret pattern. Unfortunately, however, security is still dependent on a user's behavior that is to carefully remove them after use. In this paper, we study an affordable defense to resist the smudge attacks without losing the ease-of-use property of the pattern lock system and without demanding user's attentional behavior after use. We present TinyLock as our main result. TinyLock is a simple tweak of the user interface under the existing pattern lock paradigm but it can effectively resist the smudge attacks. Furthermore, TinyLock can be more resilient to shoulder-surfing attacks than the contemporary pattern lock systems. Our user study shows that TinyLock can significantly improve security of the pattern lock system while incurring minimal cost increase in terms of unlocking time.
机译:模式锁定系统是当今移动计算环境中广泛使用的图形密码机制。为了解锁智能手机,用户用手指在平面触摸屏上绘制一个记忆的图形模式,而手指实际上将其油性残留物(也称为污迹)留在触摸屏的表面上。对手可以利用这些污迹来复制秘密模式。但是,不幸的是,安全性仍然取决于用户的行为,即在使用后将其小心删除。在本文中,我们研究了一种可承受的防御措施,可抵御污迹攻击,而又不会失去模式锁定系统的易用性,并且在使用后不要求用户注意行为。我们将TinyLock作为主要结果。 TinyLock是现有模式锁定范例下用户界面的简单调整,但可以有效抵御污迹攻击。此外,TinyLock比现代模式锁定系统更能抵御肩膀冲浪攻击。我们的用户研究表明,TinyLock可以显着提高模式锁定系统的安全性,同时在解锁时间方面的成本增加最小。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号