skip to main content
10.1145/2536853.2536944acmotherconferencesArticle/Chapter ViewAbstractPublication PagesmommConference Proceedingsconference-collections
research-article

Extended PIN Authentication Scheme Allowing Multi-Touch Key Input

Authors Info & Claims
Published:02 December 2013Publication History

ABSTRACT

In this paper, we report our trial to make a better form of personal identification number(PIN) authentication for a mobile device. We think that mobile users should be given a more secure alternative authentication because PIN authentication has well-known flaws. However, proposed alternative schemes change the authentication method drastically and that may discomfort mobile users. Our approach is to just change the input operation of PIN authentication by allowing more than one number at a time using a multi-touch enabled screen. We implemented a web-based prototype system and conducted an informal user study using it. The results of the study indicate that PIN input time, input errors and secret memorability of the proposed scheme were no worse than those of conventional PIN authentication. We also discuss the mathematical security level and other advantages of the scheme.

References

  1. A. J. Aviv, K. Gibson, E. Mossop, M. Blaze, and J. M. Smith. Smudge attacks on smartphone touch screens. In Proc. of the 4th USENIX conference on Offensive technologies, WOOT'10, pages 1--7, 2010. Google ScholarGoogle ScholarDigital LibraryDigital Library
  2. S. Azenkot, K. Rector, R. Ladner, and J. Wobbrock. Passchords: secure multi-touch authentication for blind people. In Proc. of the 14th int'l ACM SIGACCESS conference on Computers and accessibility, ASSETS '12, pages 159--166, 2012. Google ScholarGoogle ScholarDigital LibraryDigital Library
  3. M. K. Chong, G. Marsden, and H. Gellersen. Gesturepin: using discrete gestures for associating mobile devices. In Proc. of the 12th int'l conference on Human computer interaction with mobile devices and services, MobileHCI '10, pages 261--264, 2010. Google ScholarGoogle ScholarDigital LibraryDigital Library
  4. A. De Luca, K. Hertzschuch, and H. Hussmann. Colorpin: securing pin entry through indirect input. In Proc. of the SIGCHI Conference on Human Factors in Computing Systems, CHI '10, pages 1103--1106, 2010. Google ScholarGoogle ScholarDigital LibraryDigital Library
  5. P. Dunphy and J. Yan. Is facepin secure and usable? In Proc. of the 3rd symposium on Usable privacy and security, SOUPS '07, pages 165--166, 2007. Google ScholarGoogle ScholarDigital LibraryDigital Library
  6. D. Kim, P. Dunphy, P. Briggs, J. Hook, J. W. Ni cholson, J. Nicholson, and P. Olivier. Multi-touch authentication on tabletops. In Proc. of the SIGCHI Conf. on Human Factors in Computing Systems, CHI '10, pages 1093--1102, 2010. Google ScholarGoogle ScholarDigital LibraryDigital Library
  7. D. Ritter, F. Schaub, M. Walch, and M. Weber. Miba: multitouch image-based authentication on smartphones. In CHI '13 Extended Abstracts on Human Factors in Computing Systems, CHI EA '13, pages 787--792, 2013. Google ScholarGoogle ScholarDigital LibraryDigital Library
  8. O. Riva, C. Qin, K. Strauss, and D. i. Lymberopoulos. Progressive authentication: Deciding when to authenticate on mobile phones. In Proc. of the 21st USENIX Security Symposium, USENIX Security '12, pages 165--166, 2012. Google ScholarGoogle ScholarDigital LibraryDigital Library

Index Terms

  1. Extended PIN Authentication Scheme Allowing Multi-Touch Key Input

        Recommendations

        Comments

        Login options

        Check if you have access through your login credentials or your institution to get full access on this article.

        Sign in
        • Published in

          cover image ACM Other conferences
          MoMM '13: Proceedings of International Conference on Advances in Mobile Computing & Multimedia
          December 2013
          599 pages
          ISBN:9781450321068
          DOI:10.1145/2536853

          Copyright © 2013 ACM

          Permission to make digital or hard copies of all or part of this work for personal or classroom use is granted without fee provided that copies are not made or distributed for profit or commercial advantage and that copies bear this notice and the full citation on the first page. Copyrights for components of this work owned by others than ACM must be honored. Abstracting with credit is permitted. To copy otherwise, or republish, to post on servers or to redistribute to lists, requires prior specific permission and/or a fee. Request permissions from [email protected]

          Publisher

          Association for Computing Machinery

          New York, NY, United States

          Publication History

          • Published: 2 December 2013

          Permissions

          Request permissions about this article.

          Request Permissions

          Check for updates

          Qualifiers

          • research-article
          • Research
          • Refereed limited

        PDF Format

        View or Download as a PDF file.

        PDF

        eReader

        View online with eReader.

        eReader