"I Can't Believe It's Not Custodial!" Usable Trustless Decentralized Key Management

被引:0
|
作者
Sharma, Tanusree [1 ]
Nair, Vivek C. [2 ]
Wang, Henry [3 ]
Wang, Yang [4 ]
Song, Dawn [2 ]
机构
[1] Univ Illinois, Informat, Urbana, IL 61801 USA
[2] Univ Calif Berkeley, Berkeley, CA 94720 USA
[3] Univ Illinois, Lab High Sch, Chicago, IL 60680 USA
[4] Univ Illinois, Informat Sci, Urbana, IL USA
基金
美国国家科学基金会;
关键词
D O I
10.1145/3613904.3642464
中图分类号
TP18 [人工智能理论];
学科分类号
081104 ; 0812 ; 0835 ; 1405 ;
摘要
Key management has long remained a difficult unsolved problem in the field of usable security. While password-based key derivation functions (PBKDFs) are widely used to solve this problem in centralized applications, their low entropy and lack of a recovery mechanism make them unsuitable for use in decentralized contexts. The multi-factor key derivation function (MFKDF) is a recently proposed cryptographic primitive that aims to address these deficiencies by incorporating commonly used authentication factors into the key derivation process. In this paper, we implement an MFKDF-based Ethereum wallet and perform a user study with 27 participants to directly compare its usability against traditional cryptocurrency wallet architectures. Our results show that MFKDF-based applications outperform conventional key management approaches on both subjective and objective metrics, with a 37% higher average SUS score (p < 0.0001) and 71% faster task completion times (p < 0.0001) for the MFKDF-based wallet.
引用
收藏
页数:16
相关论文
共 50 条