CipherCard: A Token-Based Approach Against Camera-Based Shoulder Surfing Attacks on Common Touchscreen Devices - Inria - Institut national de recherche en sciences et technologies du numérique Accéder directement au contenu
Communication Dans Un Congrès Année : 2015

CipherCard: A Token-Based Approach Against Camera-Based Shoulder Surfing Attacks on Common Touchscreen Devices

Teddy Seyed
  • Fonction : Auteur
  • PersonId : 1018427
Xing-Dong Yang
  • Fonction : Auteur
  • PersonId : 1018428
Anthony Tang
  • Fonction : Auteur
  • PersonId : 935948
Saul Greenberg
  • Fonction : Auteur
  • PersonId : 1018429
Jiawei Gu
  • Fonction : Auteur
  • PersonId : 1018430
Bin Zhu
  • Fonction : Auteur
  • PersonId : 1018431
Xiang Cao
  • Fonction : Auteur
  • PersonId : 1018432

Résumé

We present CipherCard, a physical token that defends against shoulder-surfing attacks on user authentication on capacitive touchscreen devices. When CipherCard is placed over a touchscreen’s pin-pad, it remaps a user’s touch point on the physical token to a different location on the pin-pad. It hence translates a visible user password into a different system password received by a touchscreen, but is hidden from observers as well as the user. CipherCard enhances authentication security through Two-Factor Authentication (TFA), in that both the correct user password and a specific card are needed for successful authentication. We explore the design space of CipherCard, and describe three implemented variations each with unique capabilities. Based on user feedback, we discuss the security and usability implications of CipherCard, and describe several avenues for continued exploration.
Fichier principal
Vignette du fichier
346942_1_En_34_Chapter.pdf (430.56 Ko) Télécharger le fichier
Origine : Fichiers produits par l'(les) auteur(s)
Loading...

Dates et versions

hal-01599857 , version 1 (02-10-2017)

Licence

Paternité

Identifiants

Citer

Teddy Seyed, Xing-Dong Yang, Anthony Tang, Saul Greenberg, Jiawei Gu, et al.. CipherCard: A Token-Based Approach Against Camera-Based Shoulder Surfing Attacks on Common Touchscreen Devices. 15th Human-Computer Interaction (INTERACT), Sep 2015, Bamberg, Germany. pp.436-454, ⟨10.1007/978-3-319-22668-2_34⟩. ⟨hal-01599857⟩
92 Consultations
162 Téléchargements

Altmetric

Partager

Gmail Facebook X LinkedIn More