Optimal Discretization for High-Entropy Graphical Passwords

被引:0
作者
Bicakci, Kemal [1 ]
机构
[1] TOBB Univ Econ & Technol, Dept Elect & Elect Engn, Ankara, Turkey
来源
23RD INTERNATIONAL SYMPOSIUM ON COMPUTER AND INFORMATION SCIENCES | 2008年
关键词
authentication; password security; graphical passwords; discretization;
D O I
暂无
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
In click-based graphical password schemes that allow arbitrary click locations on image, a click should be verified as correct if it is close within a predefined distance to the originally chosen location. This condition should hold even when for security reasons the password hash is stored in the system, not the password itself. To solve this problem, a robust discretization method has been proposed [4], recently. In this paper, we show that previous work on discretization does not give optimal results with respect to the entropy of the graphical passwords and propose a new discretization method to increase the password space. To improve the security further, we also present several methods that use multiple hash computations for password verification.
引用
收藏
页码:48 / 53
页数:6
相关论文
共 7 条
[1]   Graphical passwords based on robust discretization [J].
Birget, Jean-Camille ;
Hong, Dawei ;
Memon, Nasir .
IEEE TRANSACTIONS ON INFORMATION FORENSICS AND SECURITY, 2006, 1 (03) :395-399
[2]  
Blonder GE, 1996, US Patent, Patent No. [5,559,961, 5559961, US 5559961]
[3]  
CHIASSON J, 2008, CTR DISCRETIZATION A
[4]  
Chiasson S, 2007, LECT NOTES COMPUT SC, V4734, P359
[5]  
Thorpe J., 2007, P 16 USENIX SEC S AU
[6]   PassPoints: Design and longitudinal evaluation of a graphical password system [J].
Wiedenbeck, S ;
Waters, J ;
Birget, JC ;
Brodskiy, A ;
Memon, N .
INTERNATIONAL JOURNAL OF HUMAN-COMPUTER STUDIES, 2005, 63 (1-2) :102-127
[7]  
WIEDENBECK S, 2005, P S US PRIV SEC JUL