Please use this identifier to cite or link to this item: http://hdl.handle.net/10125/71481

A Shoulder-Surfing Resistant Scheme Embedded in Traditional Passwords

File Size Format  
0698.pdf 713.58 kB Adobe PDF View/Open

Item Summary

Title:A Shoulder-Surfing Resistant Scheme Embedded in Traditional Passwords
Authors:Lai, Jianwei
Arko, Ernest
Keywords:Security and Privacy Aspects of Human-Computer-Interactions
shoulder-surfing resistant
password
mobile phone
partial password
Date Issued:05 Jan 2021
Abstract:Typing passwords is vulnerable to shoulder-surfing attacks. We proposed a shoulder-surfing resistant scheme embedded in traditional textual passwords in this study. With the proposed scheme, when the password field is on focus, a pattern appears in it as a hint to tell the user how to enter a password. Following the hint, the user needs to skip some characters while typing the password. The characters to be skipped are randomly selected so that an observer will not be able to see the whole password even if the authentication procedure was recorded. We evaluated the proposed scheme in a usability study. Compared to traditional passwords, our scheme achieved a similar level of accuracy while only required marginal additional time to authenticate users. Participants also expressed significantly higher acceptance of the new technique for security-sensitive applications and gave it significantly higher ratings in perceived security, shoulders-surfing resistance, camera-recording resistance, and guess-attack resistance.
Pages/Duration:9 pages
URI:http://hdl.handle.net/10125/71481
ISBN:978-0-9981331-4-0
DOI:10.24251/HICSS.2021.860
Rights:Attribution-NonCommercial-NoDerivatives 4.0 International
https://creativecommons.org/licenses/by-nc-nd/4.0/
Appears in Collections: Security and Privacy Aspects of Human-Computer-Interactions


Please email libraryada-l@lists.hawaii.edu if you need this content in ADA-compliant format.

This item is licensed under a Creative Commons License Creative Commons