arrow
Return

Graphical password: prevent shoulder-surfing attack using digraph substitution rules

delete2017-10-18
delete22
PRE
AI
L
Lip Yee Por *
C
Chin Soon Ku
A
Amanul Islam
T
Tan Fong Ang
DOI:10.1007/s11704-016-5472-zdelete
deleteOriginal
deleteOriginal request for help
deleteShare
deleteSave
Abstract

Abstract

En 中文
In this paper, a new scheme that uses digraph substitution rules to conceal the mechanism or activity required to derive password-images is proposed. In the proposed method, a user is only required to click on one of the pass-image instead of both pass-images shown in each challenge set for three consecutive sets.While this activity is simple enough to reduce login time, the images clicked appear to be random and can only be obtained with complete knowledge of the registered password along with the activity rules. Thus, it becomes impossible for shoulder-surfing attackers to obtain the information about which password images and pass-images are used by the user. Although the attackers may know about the digraph substitution rules used in the proposed method, the scenario information used in each challenge set remains. User study results reveal an average login process of less than half a minute. In addition, the proposed method is resistant to shoulder-surfing attacks.
Keywords:
graphical password
authentication
shoulder-surfing
data and computer security
digraph substitution rules
AI Summary

AI Summary

Key information extracted from the uploaded paper, including a brief overview, abstract, background, key highlights, visual analysis, and future outlook.

Journal

Frontiers of Computer Science cover
Frontiers of Computer Science
IF:
4.6
Papers:
1.6K
Citations:
2.8K

Organization

U
Universiti Malaya
Scholars:
2.1W
Papers: 1.8W
Citations: 182