Sweet-Spotting Security and Usability for Intelligent Graphical Authentication Mechanisms

被引:12
|
作者
Belk, Marios [1 ,2 ]
Pamboris, Andreas [2 ,3 ]
Fidas, Christos [4 ]
Katsini, Christina [5 ]
Avouris, Nikolaos [5 ]
Samaras, George [6 ]
机构
[1] Cognit UX GmbH, Heiligkreuzsteinach, Germany
[2] Univ Cyprus, Dept Comp Sci, Nicosia, Cyprus
[3] Univ Cent Lancashire, Sch Sci, Preston, Lancs, England
[4] Univ Patras, Dept Cultural Heritage Management & New Technol, Patras, Greece
[5] Univ Patras, Dept Elect & Comp Engn, HCI Grp, Patras, Greece
[6] Univ Cyprus, Dept Comp Sci, Dipartimento Fis & Geol, Nicosia, Cyprus
基金
欧盟地平线“2020”;
关键词
Recognition-based Graphical Authentication; Security; Usability; User Study; Eye-tracking; SUPERIORITY;
D O I
10.1145/3106426.3106488
中图分类号
TP18 [人工智能理论];
学科分类号
081104 ; 0812 ; 0835 ; 1405 ;
摘要
This paper investigates the trade-off between security and usability in recognition-based graphical authentication mechanisms. Through a user study (N=103) based on a real usage scenario, it draws insights about the security strength and memorability of a chosen password with respect to the amount of images presented to users during sign-up. In particular, it reveals the users' predisposition in following predictable patterns when selecting graphical passwords, and its effect on practical security strength. It also demonstrates that a "sweetspot" exists between security and usability in graphical authentication approaches on the basis of adjusting accordingly the image grid size presented to users when creating passwords. The results of the study can be leveraged by researchers and practitioners engaged in designing intelligent graphical authentication user interfaces for striking an appropriate balance between security and usability.
引用
收藏
页码:252 / 259
页数:8
相关论文
共 50 条
  • [1] Security and Usability: A Naturalistic Experimental Evaluation of a Graphical Authentication System
    Zouinar, Moustapha
    Salembier, Pascal
    Heron, Robin
    Mathias, Christophe
    Lorant, Guirec
    Wary, Jean-Philippe
    PROCEEDINGS OF THE 20TH CONGRESS OF THE INTERNATIONAL ERGONOMICS ASSOCIATION (IEA 2018), VOL V: HUMAN SIMULATION AND VIRTUAL ENVIRONMENTS, WORK WITH COMPUTING SYSTEMS (WWCS), PROCESS CONTROL, 2019, 822 : 550 - 558
  • [2] A survey on usability and security features in graphical user authentication algorithms
    Lashkari, Arash Habibi
    Farmand, Samaneh
    INTERNATIONAL JOURNAL OF COMPUTER SCIENCE AND NETWORK SECURITY, 2009, 9 (09): : 195 - 204
  • [3] Security in Graphical Authentication
    Rittenhouse, Robert G.
    Chaudry, Junaid Ahsenali
    Lee, Malrey
    INTERNATIONAL JOURNAL OF SECURITY AND ITS APPLICATIONS, 2013, 7 (03): : 347 - 355
  • [4] Bridging the Gap Between Usability and Security: Cultural Adaptation of a Graphical User Authentication
    Kamegne, Yvonne
    Owusu, Eric
    Chakraborty, Joyram
    UNIVERSAL ACCESS IN HUMAN-COMPUTER INTERACTION: NOVEL DESIGN APPROACHES AND TECHNOLOGIES, UAHCI 2022, PT I, 2022, 13308 : 260 - 269
  • [5] A Novel Hybrid Textual-Graphical Authentication Scheme With Better Security, Memorability, and Usability
    Nizamani, Shah Zaman
    Hassan, Syed Raheel
    Shaikh, Riaz Ahmed
    Abozinadah, Ehab Atif
    Mehmood, Rashid
    IEEE ACCESS, 2021, 9 : 51294 - 51312
  • [6] Usability versus security of authentication
    Hub, Miloslav
    Capek, Jan
    Myskova, Renata
    Roudny, Radim
    COMMUNICATION AND MANAGEMENT IN TECHNOLOGICAL INNOVATION AND ACADEMIC GLOBALIZATION, 2010, : 34 - 38
  • [7] Biometric authentication -: Security and usability
    Matyas, V
    Ríha, Z
    ADVANCED COMMUNICATIONS AND MULTIMEDIA SECURITY, 2002, 100 : 227 - 239
  • [8] Quantifying Usability and Security in Authentication
    Mihajlov, Martin
    Blazic, Borka Jerman
    Josimovski, Saso
    2011 35TH IEEE ANNUAL INTERNATIONAL COMPUTER SOFTWARE AND APPLICATIONS CONFERENCE (COMPSAC), 2011, : 626 - 629
  • [9] Balancing Usability and Security of Graphical Passwords
    Lapin, Kristina
    Siurkus, Manfredas
    DIGITAL INTERACTION AND MACHINE INTELLIGENCE, MIDI 2021, 2022, 440 : 153 - 160
  • [10] A Generic Multimodels-Based Approach for the Analysis of Usability and Security of Authentication Mechanisms
    Broders, Nicolas
    Martinie, Celia
    Palanque, Philippe
    Winckler, Marco
    Halunen, Kimmo
    HUMAN-CENTERED SOFTWARE ENGINEERING, HCSE 2020, 2020, 12481 : 61 - 83