A graphical-based password keystroke dynamic authentication system for touch screen handheld mobile devices

被引:81
作者
Chang, Ting-Yi [1 ]
Tsai, Cheng-Jung [2 ]
Lin, Jyun-Hao [1 ]
机构
[1] Natl Changhua Univ Educ, Grad Inst ELearning, Changhua 500, Taiwan
[2] Natl Changhua Univ Educ, Dept Math, Changhua 500, Taiwan
关键词
User authentication; Keystroke dynamics authentication; Keystroke feature; Graphical-based password authentication; USER AUTHENTICATION; BIOMETRICS;
D O I
10.1016/j.jss.2011.12.044
中图分类号
TP31 [计算机软件];
学科分类号
081202 ; 0835 ;
摘要
Since touch screen handheld mobile devices have become widely used, people are able to access various data and information anywhere and anytime. Most user authentication methods for these mobile devices use PIN-based (Personal Identification Number) authentication, since they do not employ a standard QWERTY keyboard for conveniently entering text-based passwords. However, PINs provide a small password space size, which is vulnerable to attacks. Many studies have employed the KDA (Keystroke Dynamic-based Authentication) system, which is based on keystroke time features to enhance the security of PIN-based authentication. Unfortunately, unlike the text-based password KDA systems in QWERTY keyboards, different keypad sizes or layouts of mobile devices affect the PIN-based KDA system utility. This paper proposes a new graphical-based password KDA system for touch screen handheld mobile devices. The graphical password enlarges the password space size and promotes the KDA utility in touch screen handheld mobile devices. In addition, this paper explores a pressure feature, which is easy to use in touch screen handheld mobile devices, and applies it in the proposed system. The experiment results show: (1) EER is 12.2% in the graphical-based password KDA proposed system. Compared with related schemes in mobile devices, this effectively promotes KDA system utility; (2) EER is reduced to 6.9% when the pressure feature is used in the proposed system. The accuracy of authenticating keystroke time and pressure features is not affected by inconsistent keypads since the graphical passwords are entered via an identical size (SO min X 60 mm) human-computer interface for satisfying the lowest touch screen size and a GUI of this size is displayed on all mobile devices. (C) 2011 Elsevier Inc. All rights reserved.
引用
收藏
页码:1157 / 1165
页数:9
相关论文
共 36 条
[1]  
[Anonymous], 2000, 9 USENIX SEC S
[2]   User authentication through typing biometrics features [J].
Araújo, LCF ;
Sucupira, LHR ;
Lizárraga, MG ;
Ling, LL ;
Yabu-Uti, JBT .
IEEE TRANSACTIONS ON SIGNAL PROCESSING, 2005, 53 (02) :851-855
[3]  
Bergadano F., 2002, ACM Transactions on Information and Systems Security, V5, P367, DOI 10.1145/581271.581272
[4]   COMPUTER-ACCESS SECURITY SYSTEMS USING KEYSTROKE DYNAMICS [J].
BLEHA, S ;
SLIVINSKY, C ;
HUSSIEN, B .
IEEE TRANSACTIONS ON PATTERN ANALYSIS AND MACHINE INTELLIGENCE, 1990, 12 (12) :1217-1222
[5]  
Blonder GE, 1996, Graphical Password U.S. Patent, Patent No. [5559961, US 5559961]
[6]  
Boechat GC, 2007, ICIAS 2007: INTERNATIONAL CONFERENCE ON INTELLIGENT & ADVANCED SYSTEMS, VOLS 1-3, PROCEEDINGS, P254
[7]  
Brostoff S, 2000, BCS CONFERENCE S, P405
[8]   User authentication using keystroke dynamics for cellular phones [J].
Campisi, P. ;
Maiorana, E. ;
Lo Bosco, M. ;
Neri, A. .
IET SIGNAL PROCESSING, 2009, 3 (04) :333-341
[9]  
Chang T.Y., J INTERNET IN PRESS
[10]  
Chernick M., 2007, Wiley Series in Probability and Statistics