On the Usability and Security of Graphical Password Schemes
نویسندگان
چکیده
In recent years, graphical passwords have been proposed as an alternative to traditional alphanumeric passwords, which demonstrate weakness in necessitating exact recall and thereby promoting the selection of insecure passwords. Because there is much evidence to suggest that humans have a greater capacity to recall images as compared to text, graphical passwords hold promise as a form of authentication having increased memorability. At the same time, graphical passwords are more di cult to describe than textual passwords, and can hence o↵er enhanced phishing defenses. Prior studies have revealed certain problems associated with graphical password schemes, such as a bias in user selection of passwords. The goal of my user study is to evaluate memorability and bias in three common graphical password schemes while avoiding some of the pitfalls identified by previous research. My results demonstrate high levels of memorability for all password schemes investigated. A significant bias was observed, which reduced password security by a factor between 4 and 8.
منابع مشابه
A survey on the use of graphical passwords in security
Beginning around 1996, numerous graphical password schemes have been proposed, motivated by improving password usability and security, two key factors in password scheme evaluation. In this paper, we focus on the security aspects of existing graphical password schemes, which not only gives a simple introduction of attack methods but also intends to provide an in-depth analysis with specific sch...
متن کاملModelling the Security of Recognition-Based Graphical Passwords
Recognition-based graphical passwords have received attention in recent research as an alternative authentication mechanism. The research often presents new schemes, usability studies or proposes countermeasures for specific attacks. Whilst this is beneficial, it does not allow for consistent comparison of the security of recognition-based graphical password schemes. This paper contributes a pr...
متن کاملUsability and Security of Recognition based Graphical Password Scheme
Authentication is the first line of defense against compromising confidentiality and integrity. People can remember pictures better and for longer periods than alphanumeric passwords. All graphical passwords have two different aspects which are usability and security. Woefully none of these schemes were being able to fulfill both of these aspects at the same time. We analyze the known attack me...
متن کاملModelling the security of recognition-based graphical password schemes
Recognition-based graphical passwords are a suggested alternative authentication mechanism which have received substantial attention in research literature. The literature often presents new schemes, usability studies or propose countermeasures for specific attacks. Whilst this is beneficial, it does not allow for consistent comparison of the security of recognition-based graphical password sch...
متن کاملA Survey on Recognition Based Graphical User Authentication Algorithms
Nowadays, user authentication is one of the important topics in information security. Strong text-based password schemes could provide with certain degree of security. However, the fact that strong passwords are difficult to memorize often leads their owners to write them down on papers or even save them in a computer file. Graphical authentication has been proposed as a possible alternative so...
متن کامل