Increasing the Security of Weak Passwords: the SPARTAN Interface

05/20/2019
by   Sarah C. Helble, et al.
0

Password authentication suffers from the well-known tradeoff between security and usability. Secure passwords are difficult for users to remember, and memorable passwords are often easy to guess. SPARse Two-dimensional AuthenticatioN (SPARTAN) allows users to input their textual passwords in a two-dimensional grid instead of a linear textbox. This interface enables relatively short passwords to have a higher calculated level of security due to the need for an attacker to determine both the text of the password and the location of each character in the grid. We created a SPARTAN prototype and conducted a preliminary user study to evaluate the actual usability and security of the SPARTAN interface compared to the linear password entry interface. We find that while user-created SPARTAN passwords tend to be shorter than their linear counterparts, the calculated security of user-created SPARTAN passwords is higher than that of user-created linear passwords. We also asked participants to complete a survey on the usability of the SPARTAN interface and identified some areas of improvement, while prototype interaction provided evidence of users becoming more familiar with SPARTAN over time. Finally, we performed an investigation into password-cracking tools, and assert that SPARTAN passwords require more resources to crack than their linear counterparts. These findings suggest that SPARTAN is a promising alternative to linear passwords from a security standpoint. Usability of the interface and memorability of SPARTAN passwords is an interesting research question and should be further investigated in future work.

READ FULL TEXT

page 1

page 2

page 7

research
07/01/2019

Geographical Security Questions for Fallback Authentication

Fallback authentication is the backup authentication method used when th...
research
08/27/2022

Kuchibashi: 3D-Printed Tweezers Bioinspired by the New Caledonian Crow's Beak

In this study we implemented Kuchibashi, the New Caledonian Crow beak-li...
research
10/18/2021

Long Passphrases: Potentials and Limits

Passphrases offer an alternative to traditional passwords which aim to b...
research
07/12/2021

Don't Touch Me! A Comparison of Usability on Touch and Non-Touch Inputs

Public touchscreens are filthy and, regardless of how often they are cle...
research
04/06/2019

Usability in the Larger Reality: A Contrarian Argument for the Importance of Social and Political Considerations

Usability engineering is situated in a much larger social and institutio...
research
03/10/2020

This PIN Can Be Easily Guessed

In this paper, we provide the first comprehensive study of user-chosen 4...
research
12/09/2019

Extended- Force vs Nudge : Comparing Users' Pattern Choices on SysPal and TinPal

Android's 3X3 graphical pattern lock scheme is one of the widely used au...

Please sign up or login with your details

Forgot password? Click here to reset