Security Evaluation for Graphical Password

被引:0
作者
Lashkari, Arash Habibi [1 ]
Manaf, Azizah Abdul [1 ]
Masrom, Maslin [2 ]
Daud, Salwani Mohd [1 ]
机构
[1] Univ Technol Malaysia, Adv Informat Sch, Kuala Lumpur, Malaysia
[2] Univ Techn Malaysia, Razak Sch Engn & Adv Techn, George Town, Malaysia
来源
DIGITAL INFORMATION AND COMMUNICATION TECHNOLOGY AND ITS APPLICATIONS, PT I | 2011年 / 166卷
关键词
Pure Recall-Based GUA; Cued Recall-Based GUA; Recognition Based GUA; Graphical Password; Security; Attack Patterns; Brute force; Dictionary attack; Guessing Attack; Spyware; Shoulder surfing; Social engineering Attack; Password Entropy; Password Space;
D O I
暂无
中图分类号
TP3 [计算技术、计算机技术];
学科分类号
0812 ;
摘要
Nowadays, user authentication is one of the important topics in information security. Text-based strong password schemes could provide with certain degree of security. However, the fact that strong passwords being difficult to memorize often leads their owners to write them down on papers or even save them in a computer file. Graphical Password or Graphical user authentication (GUA) has been proposed as a possible alternative solution to text-based authentication, motivated particularly by the fact that humans can remember images better than text. All of Graphical Password algorithms have two different aspects which are usability and security. This paper focuses on security aspects of algorithms that most of researchers work on this part and try to define security features and attributes. Unfortunately, till now there isn't a complete evaluation criterion for graphical password security. At first, this paper tries to study on most of GUA algorithm. Then, collects the major security attributes in GUA and proposed an evaluation criterion.
引用
收藏
页码:431 / +
页数:3
相关论文
共 50 条
  • [31] Bu-Dash: A Universal and Dynamic Graphical Password Scheme
    Andriotis, Panagiotis
    Kirby, Myles
    Takasu, Atsuhiro
    HCI FOR CYBERSECURITY, PRIVACY AND TRUST, HCI-CPT 2022, 2022, 13333 : 209 - 227
  • [32] Pict-Place Authentication: Recognition-based Graphical Password using Image Layout for Better Balance of Security and Operation Time
    Takada, Tetsuji
    Yoshida, Mitsuhiro
    PROCEEDINGS OF THE 14TH BIANNUAL CONFERENCE OF THE ITALIAN SIGCHI CHAPTER (CHIITALY 2021), 2021,
  • [33] Password Security: Password Behavior Analysis at a Small University
    Awad, Mohammed
    Al-Qudah, Zakaria
    Idwan, Sahar
    Jallad, Abdul Halim
    2016 5TH INTERNATIONAL CONFERENCE ON ELECTRONIC DEVICES, SYSTEMS AND APPLICATIONS (ICEDSA), 2016,
  • [34] Easy-Auth: Graphical Password Authentication using a Randomization Method
    Harshini, Mudarabilli
    Sai, Padigala Lakshman
    Chennamma, Singam
    Thanuja
    Reddy, Alavalapati Goutham
    Kim, Hyun Sung
    2021 IEEE LATIN-AMERICAN CONFERENCE ON COMMUNICATIONS (LATINCOM 2021), 2021,
  • [35] User authentication by secured graphical password implementation
    Bandyopadhyay, Samir Kumar
    Bhattacharyya, Debnath
    Das, Poulami
    2008 7TH ASIA-PACIFIC SYMPOSIUM ON INFORMATION AND TELECOMMUNICATION TECHNOLOGIES, 2008, : 7 - +
  • [36] Token-based graphical password authentication
    Gyorffy, John Charles
    Tappenden, Andrew F.
    Miller, James
    INTERNATIONAL JOURNAL OF INFORMATION SECURITY, 2011, 10 (06) : 321 - 336
  • [37] Token-based graphical password authentication
    John Charles Gyorffy
    Andrew F. Tappenden
    James Miller
    International Journal of Information Security, 2011, 10 : 321 - 336
  • [38] A Three-Step One-Time Password, Textual and Recall-Based Graphical Password for an Online Authentication
    Adamu, Haruna
    Mohammed, Abdulmalik Danlami
    Adepoju, Solomon Adelowo
    Aderiike, Abisoye Opeyemi
    2022 IEEE NIGERIA 4TH INTERNATIONAL CONFERENCE ON DISRUPTIVE TECHNOLOGIES FOR SUSTAINABLE DEVELOPMENT (IEEE NIGERCON), 2022, : 36 - 40
  • [39] A Cued-Recall and Emotion Classification Graphical Password Authentication Scheme
    Vieira, Danilo E.
    Mesquita Abreu, Tonny L.
    Vizcarra Melgar, Max E.
    Santander, Luz A. M.
    2017 IEEE COLOMBIAN CONFERENCE ON COMMUNICATIONS AND COMPUTING (COLCOM), 2017,
  • [40] EvoPass: Evolvable graphical password against shoulder-surfing attacks
    Yu, Xingjie
    Wang, Zhan
    Li, Yingjiu
    Li, Liang
    Zhu, Wen Tao
    Song, Li
    COMPUTERS & SECURITY, 2017, 70 : 179 - 198