停止解锁-提高Android解锁模式的安全性

Alexander Suchan, E. V. Zezschwitz, Katharina Krombholz
{"title":"停止解锁-提高Android解锁模式的安全性","authors":"Alexander Suchan, E. V. Zezschwitz, Katharina Krombholz","doi":"10.14722/usec.2019.23017","DOIUrl":null,"url":null,"abstract":"Android unlock patterns are among the most common authentication mechanisms on mobile devices. They are fast \nand easy to use but also lack security as user-chosen gestures \nare easy to guess and easy to observe. To improve the traditional \npattern approach, we propose Stop2Unlock, a usable but more \nsecure modification of the traditional pattern lock. Stop2Unlock \nallows users to define nodes where they stop for a limited amount \nof time before swiping to the next node. We performed a lab \nstudy (n=40) and a field study (n=14) to show that this small \nchange in user interaction can have a significant impact on \nsecurity with a minimal impact on usability. That is, user-selected \nStop2Unlock patterns are significantly harder to guess while being \ncomparable in terms of usability. Additional analysis showed that \nusers perceived the stop component as a rhythmic and memorable \ncue which supported the selection of higher entropy patterns.","PeriodicalId":215851,"journal":{"name":"Proceedings 2019 Workshop on Usable Security","volume":"38 1","pages":"0"},"PeriodicalIF":0.0000,"publicationDate":"2019-02-24","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":"1","resultStr":"{\"title\":\"Stop to Unlock - Improving the Security of Android Unlock Patterns\",\"authors\":\"Alexander Suchan, E. V. Zezschwitz, Katharina Krombholz\",\"doi\":\"10.14722/usec.2019.23017\",\"DOIUrl\":null,\"url\":null,\"abstract\":\"Android unlock patterns are among the most common authentication mechanisms on mobile devices. They are fast \\nand easy to use but also lack security as user-chosen gestures \\nare easy to guess and easy to observe. To improve the traditional \\npattern approach, we propose Stop2Unlock, a usable but more \\nsecure modification of the traditional pattern lock. Stop2Unlock \\nallows users to define nodes where they stop for a limited amount \\nof time before swiping to the next node. We performed a lab \\nstudy (n=40) and a field study (n=14) to show that this small \\nchange in user interaction can have a significant impact on \\nsecurity with a minimal impact on usability. That is, user-selected \\nStop2Unlock patterns are significantly harder to guess while being \\ncomparable in terms of usability. Additional analysis showed that \\nusers perceived the stop component as a rhythmic and memorable \\ncue which supported the selection of higher entropy patterns.\",\"PeriodicalId\":215851,\"journal\":{\"name\":\"Proceedings 2019 Workshop on Usable Security\",\"volume\":\"38 1\",\"pages\":\"0\"},\"PeriodicalIF\":0.0000,\"publicationDate\":\"2019-02-24\",\"publicationTypes\":\"Journal Article\",\"fieldsOfStudy\":null,\"isOpenAccess\":false,\"openAccessPdf\":\"\",\"citationCount\":\"1\",\"resultStr\":null,\"platform\":\"Semanticscholar\",\"paperid\":null,\"PeriodicalName\":\"Proceedings 2019 Workshop on Usable Security\",\"FirstCategoryId\":\"1085\",\"ListUrlMain\":\"https://doi.org/10.14722/usec.2019.23017\",\"RegionNum\":0,\"RegionCategory\":null,\"ArticlePicture\":[],\"TitleCN\":null,\"AbstractTextCN\":null,\"PMCID\":null,\"EPubDate\":\"\",\"PubModel\":\"\",\"JCR\":\"\",\"JCRName\":\"\",\"Score\":null,\"Total\":0}","platform":"Semanticscholar","paperid":null,"PeriodicalName":"Proceedings 2019 Workshop on Usable Security","FirstCategoryId":"1085","ListUrlMain":"https://doi.org/10.14722/usec.2019.23017","RegionNum":0,"RegionCategory":null,"ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":null,"EPubDate":"","PubModel":"","JCR":"","JCRName":"","Score":null,"Total":0}
引用次数: 1

摘要

Android解锁模式是移动设备上最常见的身份验证机制之一。它们快速且易于使用,但也缺乏安全性,因为用户选择的手势很容易被猜测和观察。为了改进传统的模式锁方法,我们提出了Stop2Unlock,这是对传统模式锁的一种可用但更安全的修改。Stop2Unlock允许用户定义节点,在滑动到下一个节点之前,他们停止有限的时间。我们进行了一项实验室研究(n=40)和一项现场研究(n=14),以表明用户交互中的这个小变化可以对安全性产生重大影响,而对可用性的影响最小。也就是说,用户选择的Stop2Unlock模式很难猜测,但在可用性方面却具有可比性。进一步的分析表明,用户认为停止成分是一个有节奏和难忘的线索,这支持了更高熵模式的选择。
本文章由计算机程序翻译,如有差异,请以英文原文为准。
Stop to Unlock - Improving the Security of Android Unlock Patterns
Android unlock patterns are among the most common authentication mechanisms on mobile devices. They are fast and easy to use but also lack security as user-chosen gestures are easy to guess and easy to observe. To improve the traditional pattern approach, we propose Stop2Unlock, a usable but more secure modification of the traditional pattern lock. Stop2Unlock allows users to define nodes where they stop for a limited amount of time before swiping to the next node. We performed a lab study (n=40) and a field study (n=14) to show that this small change in user interaction can have a significant impact on security with a minimal impact on usability. That is, user-selected Stop2Unlock patterns are significantly harder to guess while being comparable in terms of usability. Additional analysis showed that users perceived the stop component as a rhythmic and memorable cue which supported the selection of higher entropy patterns.
求助全文
通过发布文献求助,成功后即可免费获取论文全文。 去求助
来源期刊
自引率
0.00%
发文量
0
×
引用
GB/T 7714-2015
复制
MLA
复制
APA
复制
导出至
BibTeX EndNote RefMan NoteFirst NoteExpress
×
提示
您的信息不完整,为了账户安全,请先补充。
现在去补充
×
提示
您因"违规操作"
具体请查看互助需知
我知道了
×
提示
确定
请完成安全验证×
copy
已复制链接
快去分享给好友吧!
我知道了
右上角分享
点击右上角分享
0
联系我们:info@booksci.cn Book学术提供免费学术资源搜索服务,方便国内外学者检索中英文文献。致力于提供最便捷和优质的服务体验。 Copyright © 2023 布克学术 All rights reserved.
京ICP备2023020795号-1
ghs 京公网安备 11010802042870号
Book学术文献互助
Book学术文献互助群
群 号:604180095
Book学术官方微信