On the Deployment of Password Hints Using Pre-Attentive Visual Priming for One- Time Passwords
نویسندگان
چکیده
Password based security is still the most prevalent form of controlling access to trusted resources accessed through computers. There are several difficulties associated with password based systems, the predominant one being password memorability. The average person has approximately 15 passwords to maintain, which engenders a significant cognitive burden if passwords are selected and utilised properly. One potential solution to the memorability issue is to provide users with password hints. For instance, literal hints in the form of a displaying a subset of the actual password characters in situ during have been deployed commercially. Although potentially effective, this approach compromises the password coverage space, effectively weakening the password. Further, this approach may render the password susceptible to shoulder surfing and other means of surveillance. In this work, a compromise was sought between enhancing password memorability while reducing the likelihood of successful surveillance based attacks. The scheme deployed in this work is based on a one-time password scheme (OTP). To enhance memorability, password hints are utilised, which are deployed in the form of pre-attentive hinting. The question explored in this work is whether pre-attentive hinting is sufficient to enhance memorability, without rendering the approach susceptible to a surveillance based attack.
منابع مشابه
لبخوانی: روش جدید احراز هویت در برنامههای کاربردی گوشیهای تلفن همراه اندروید
Today, mobile phones are one of the first instruments every individual person interacts with. There are lots of mobile applications used by people to achieve their goals. One of the most-used applications is mobile banks. Security in m-bank applications is very important, therefore modern methods of authentication is required. Most of m-bank applications use text passwords which can be stolen b...
متن کاملRemembering Multiple Passwords by Way of Minimal- Feedback Hints: Replication and Further Analysis
Passwords are a prominent mechanism for user authentication but entail a conflict between ease of use and security in that passwords must be both easy to remember for the password holder and difficult to guess for everybody else. To support users in remembering their passwords minimal-feedback hints for remote authentication (MiFA) provide users with a couple of the password characters when use...
متن کاملOne-Time Passwords in Everything (OPIE): Experiences with Building and Using Strong Authentication
The U. S. Naval Research Laboratory's OPIE (Onetime Passwords In Everything) Software Distribution is an enhancement of Bellcore's S/Key 1.0 package. OPIE improves on S/Key in several areas, including FTP service with one-time passwords, and a stronger algorithm for generating one-time passwords. OPIE diverges from S/Key in select design decisions and in the behavior of certain programs. While ...
متن کاملBetter Authentication: Password Revolution by Evolution
We explore the extent to which we can address three issues with passwords today: the weakness of user-chosen passwords, reuse of passwords across security domains, and the revocation of credentials. We do so while restricting ourselves to changing the password verification function on the server, introducing the use of existing key-servers, and providing users with a password management tool. O...
متن کاملGaze guidance for improved password recollection
Most computer systems require user authentication, which has led to an increase in the number of passwords one has to remember. In this paper we explore if spatial visual cues can be used to improve password recollection. Specifically, we consider if associating each character in a password to user-defined spatial regions in an image facilitates better recollection. We conduct a user study wher...
متن کامل