Abstract
Graphical password based authentication systems are now becoming one of the potential alternatives to alleviate current over-reliance on traditional text-based password authentication. With the rapid development of mobile devices (i.e., the increase of computing power), this kind of authentication systems has been implemented on mobile phones to authenticate legitimate users and detect impostors. But in real deployment, we notice that users can utilize more actions like multi-touch on a mobile phone than on a common computer. The action of multi-touch, which refers to the process of touching a touchscreen with multiple fingers at the same time, is a distinguished feature on a touchscreen mobile phone. In this paper, we therefore attempt to explore the effect of multi-touch on creating graphical passwords in the aspect of security and usability. In particular, we conduct a study of using click-draw based graphical passwords in the evaluation, which combines current input types in the area of graphical passwords, and we further develop a multi-touch enabled scheme on mobile phones. Three experiments were conducted with 60 participants and the experimental results indicate that, by integrating the action of multi-touch, graphical passwords can be generally enhanced in the aspect of both security and usability. Copyright © 2013 IFIP International Federation for Information Processing.
Original language | English |
---|---|
Title of host publication | Security and privacy protection in information processing systems: 28th IFIP TC 11 International Conference, SEC 2013, Auckland, New Zealand, July 8-10, 2013, proceedings |
Editors | Lech J. JANCZEWSKI, Henry B. WOLFE, Sujeet SHENOI |
Place of Publication | Berlin |
Publisher | Springer |
Pages | 55-68 |
ISBN (Electronic) | 9783642392184 |
ISBN (Print) | 9783642392177 |
DOIs | |
Publication status | Published - 2013 |
Citation
Meng, Y., Li, W., & Kwok, L.-F. (2013). Enhancing click-draw based graphical passwords using multi-touch on mobile phones. In L. J. Janczewski, H. B. Wolfe, & S. Shenoi (Eds.), Security and privacy protection in information processing systems: 28th IFIP TC 11 International Conference, SEC 2013, Auckland, New Zealand, July 8-10, 2013, proceedings (pp. 55-68). Springer. https://doi.org/10.1007/978-3-642-39218-4_5Keywords
- Graphical passwords
- User authentication
- Multi-touch
- Human factors
- Mobile phones
- Mobile security