透過您的圖書館登入
IP:3.143.247.55
  • 期刊

A NEW PASSWORD AUTHENTICATION SCHEME RESISTANT AGAINST SHOULDER SURFING ATTACK

摘要


Personal Identification Number (PIN) is one of the simplest ways for user authentication that is commonly used to protect user information through online information systems such as ATMs. PINs are vulnerable to several types of attacks. Usually, users tend to choose easy passwords or short passwords to make them easier to remember. However, this makes passwords vulnerable to multiple forms of attack, such as camera recording attacks and shoulder surfing attacks. This research presents a new textual password authentication technique that can be used as a competitive scheme to both traditional textual and graphical password schemes. In the proposed technique, a new 6 × 6 keyboard has been designed as an alternative to the traditional keyboard to be used by the user to enter password characters. The user does not need to press the keys that represent the password characters. The proposed technique was tested on a group of users and the recorded results of the experiments have been evaluated using a specific set of criteria. Based on the evaluation of the tests, the proposed technique succeeded to provide a more secure session for the user to enter the password. Moreover, the proposed technique helps to solve most of the defects, especially the shoulder surfing attack that exists in the authentication systems use textual or graphical passwords.

參考文獻


Schaub, F.,Deyhle, R.,Weber, M.(2012).Password Entry Usability and Shoulder Surfing Susceptibility on Different Smartphone Platforms.Proceedings of the 11th international conference on mobile and ubiquitous multimedia, Ulm, Germary, 4-6 Dec 2012.(Proceedings of the 11th international conference on mobile and ubiquitous multimedia, Ulm, Germary, 4-6 Dec 2012).:
Khodadadi, T.,Islam, A. M.,Baharun, S.,Komaki, S.(2016).Evaluation of Recognition-Based Graphical Password Schemes in Terms of Usability and Security Attributes.International Journal of Electrical and Computer Engineering.6(6),2939-2948.
Kwon, T.,Hong, J.(2015).Analysis and Improvement of A Pin-Entry Method Resilient to Shoulder-Surfing and Recording Attacks.IEEE Transactions on Information Forensics and Security.10(2),278-292.
Suo, X.,Zhu, Y.,Owen, G. S.(2005).Graphical Passwords: A Survey.IEEE proceedings of 21st annual Computer security applications conference, Tucson, AZ, USA, 5-9 Dec 2005.(IEEE proceedings of 21st annual Computer security applications conference, Tucson, AZ, USA, 5-9 Dec 2005).:
Narayanan, A.,Shmatikov, V.(2005).Fast Dictionary Attacks on Passwords Using Time-Space Tradeoff.Proceedings of the 12th ACM conference on Computer and communications security, Alexandria, VA, USA, 7-11 Nov 2005.(Proceedings of the 12th ACM conference on Computer and communications security, Alexandria, VA, USA, 7-11 Nov 2005).:

延伸閱讀