graphical-passwords authentication

download graphical-passwords authentication

of 15

Transcript of graphical-passwords authentication

  • 7/29/2019 graphical-passwords authentication

    1/15

    Graphical Passwords

  • 7/29/2019 graphical-passwords authentication

    2/15

    Graphical Passwords

    (1) Why graphical passwords? Pictures are easy to remember or recognizedthan text..

    (2) Are graphical passwords as secure as textpasswords?

    (3) What are the major design and implementation

    issues for graphical passwords?

  • 7/29/2019 graphical-passwords authentication

    3/15

    Random Image

    Based on hash visualization techniques.

  • 7/29/2019 graphical-passwords authentication

    4/15

    Passfaces

  • 7/29/2019 graphical-passwords authentication

    5/15

    Passlogix

  • 7/29/2019 graphical-passwords authentication

    6/15

    Pass Point

  • 7/29/2019 graphical-passwords authentication

    7/15

    Based on JPEG

    2000

  • 7/29/2019 graphical-passwords authentication

    8/15

    Random Image

  • 7/29/2019 graphical-passwords authentication

    9/15

    Random Image

    Based on hash visualization techniques.

  • 7/29/2019 graphical-passwords authentication

    10/15

    Draw-A-Secret (DAS)

  • 7/29/2019 graphical-passwords authentication

    11/15

    Drawing Grid

  • 7/29/2019 graphical-passwords authentication

    12/15

    Graphical Passwords Design

    Recognition Based Techniques

    Recall Based Techniques(1) Produce a drawing(2) Repeat a sequence of actions

  • 7/29/2019 graphical-passwords authentication

    13/15

    Attack on Graphical Passwords

    (1) Brute force search(2) Dictionary attacks(3)Guessing * diferent person has diferent choice. * human have some common selections.(4) Spy ware(5)Shoulder surfing(6) Social engineering

  • 7/29/2019 graphical-passwords authentication

    14/15

    Research on Graphical Passwords

    (1) Design a new graphical password scheme * can return a random length text password

    (2) Use graphical password in public keycryptosystem. * User generate a big number from graphicalpassword. * Convert the big number into a signing private

    key. * Get a certificate from CA with the generatedkey. * Embed graphical password into applicationsuch as webmail. * User log on webmail, generate his signing key

  • 7/29/2019 graphical-passwords authentication

    15/15

    owHtWU1sJNld3yTAIYhDIiEhwaFc9tJtbVW1WBuPLLunep0ea7S0UD1o+TFTbldVetQededFZHu1hRkx50hcIJccc0E5RdyCFI4oHDkhhISQkLiCEMcc896r71fvs7o8

    O7H89+501fv+1f/7//7mt772wVe/8bMf/2Twix/+9O1X/v6Dr/zaP377q9/+9rNv/uApePD09S/7APdPjxAfAj1CfAj0CPEh0CPEh0CPEB8CPUJ8CPQI8SHQI8SHQI8Q