Stop to Unlock - Improving the Security of Android Unlock Patterns

Alexander Suchan, E. V. Zezschwitz, Katharina Krombholz
{"title":"Stop to Unlock - Improving the Security of Android Unlock Patterns","authors":"Alexander Suchan, E. V. Zezschwitz, Katharina Krombholz","doi":"10.14722/usec.2019.23017","DOIUrl":null,"url":null,"abstract":"Android unlock patterns are among the most common authentication mechanisms on mobile devices. They are fast \nand easy to use but also lack security as user-chosen gestures \nare easy to guess and easy to observe. To improve the traditional \npattern approach, we propose Stop2Unlock, a usable but more \nsecure modification of the traditional pattern lock. Stop2Unlock \nallows users to define nodes where they stop for a limited amount \nof time before swiping to the next node. We performed a lab \nstudy (n=40) and a field study (n=14) to show that this small \nchange in user interaction can have a significant impact on \nsecurity with a minimal impact on usability. That is, user-selected \nStop2Unlock patterns are significantly harder to guess while being \ncomparable in terms of usability. Additional analysis showed that \nusers perceived the stop component as a rhythmic and memorable \ncue which supported the selection of higher entropy patterns.","PeriodicalId":215851,"journal":{"name":"Proceedings 2019 Workshop on Usable Security","volume":"38 1","pages":"0"},"PeriodicalIF":0.0000,"publicationDate":"2019-02-24","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":"1","resultStr":null,"platform":"Semanticscholar","paperid":null,"PeriodicalName":"Proceedings 2019 Workshop on Usable Security","FirstCategoryId":"1085","ListUrlMain":"https://doi.org/10.14722/usec.2019.23017","RegionNum":0,"RegionCategory":null,"ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":null,"EPubDate":"","PubModel":"","JCR":"","JCRName":"","Score":null,"Total":0}
引用次数: 1

Abstract

Android unlock patterns are among the most common authentication mechanisms on mobile devices. They are fast and easy to use but also lack security as user-chosen gestures are easy to guess and easy to observe. To improve the traditional pattern approach, we propose Stop2Unlock, a usable but more secure modification of the traditional pattern lock. Stop2Unlock allows users to define nodes where they stop for a limited amount of time before swiping to the next node. We performed a lab study (n=40) and a field study (n=14) to show that this small change in user interaction can have a significant impact on security with a minimal impact on usability. That is, user-selected Stop2Unlock patterns are significantly harder to guess while being comparable in terms of usability. Additional analysis showed that users perceived the stop component as a rhythmic and memorable cue which supported the selection of higher entropy patterns.
停止解锁-提高Android解锁模式的安全性
Android解锁模式是移动设备上最常见的身份验证机制之一。它们快速且易于使用,但也缺乏安全性,因为用户选择的手势很容易被猜测和观察。为了改进传统的模式锁方法,我们提出了Stop2Unlock,这是对传统模式锁的一种可用但更安全的修改。Stop2Unlock允许用户定义节点,在滑动到下一个节点之前,他们停止有限的时间。我们进行了一项实验室研究(n=40)和一项现场研究(n=14),以表明用户交互中的这个小变化可以对安全性产生重大影响,而对可用性的影响最小。也就是说,用户选择的Stop2Unlock模式很难猜测,但在可用性方面却具有可比性。进一步的分析表明,用户认为停止成分是一个有节奏和难忘的线索,这支持了更高熵模式的选择。
本文章由计算机程序翻译,如有差异,请以英文原文为准。
求助全文
约1分钟内获得全文 求助全文
来源期刊
自引率
0.00%
发文量
0
×
引用
GB/T 7714-2015
复制
MLA
复制
APA
复制
导出至
BibTeX EndNote RefMan NoteFirst NoteExpress
×
提示
您的信息不完整,为了账户安全,请先补充。
现在去补充
×
提示
您因"违规操作"
具体请查看互助需知
我知道了
×
提示
确定
请完成安全验证×
copy
已复制链接
快去分享给好友吧!
我知道了
右上角分享
点击右上角分享
0
联系我们:info@booksci.cn Book学术提供免费学术资源搜索服务,方便国内外学者检索中英文文献。致力于提供最便捷和优质的服务体验。 Copyright © 2023 布克学术 All rights reserved.
京ICP备2023020795号-1
ghs 京公网安备 11010802042870号
Book学术文献互助
Book学术文献互助群
群 号:604180095
Book学术官方微信