Using hash visualization for real-time user-governed password validation
dc.contributor.author | Fietkau, Julian | |
dc.contributor.author | Balthasar, Mandy | |
dc.date.accessioned | 2019-08-30T03:46:37Z | |
dc.date.available | 2019-08-30T03:46:37Z | |
dc.date.issued | 2019 | |
dc.description.abstract | Building upon work by Perrig & Song [21], we propose a novel hash visualization algorithm and examine its usefulness for user-governed password validation in real time. In contrast to network-based password authentication and the best practices for security which have been developed with that paradigm in mind, we are concerned with use cases that require user-governed password validation in nonnetworked untrusted contexts, i.e. to allow a user to verify that they have typed their password correctly without ever storing a record of the correct password between sessions (not even a hash). To that end, we showcase a newly designed hash visualization algorithm named MosaicVisualHash and describe how hash visualization algorithms can be used to perform user-governed password validation. We also provide a set of design recommendations for systems where hash visualization for password validation is performed in real time, i.e. as the user is in the process of typing their password. | en |
dc.identifier.doi | 10.18420/muc2019-ws-302-04 | |
dc.identifier.uri | https://dl.gi.de/handle/20.500.12116/25105 | |
dc.language.iso | en | |
dc.publisher | Gesellschaft für Informatik e.V. | |
dc.relation.ispartof | Mensch und Computer 2019 - Workshopband | |
dc.relation.ispartofseries | Mensch und Computer | |
dc.subject | hash visualization | |
dc.subject | image recognition | |
dc.subject | password masking | |
dc.subject | usable security | |
dc.subject | authentication | |
dc.subject | human-computer interaction | |
dc.title | Using hash visualization for real-time user-governed password validation | en |
dc.type | Text/Workshop Paper | |
gi.citation.publisherPlace | Bonn | |
gi.conference.date | 8.-11. September 2019 | |
gi.conference.location | Hamburg | |
gi.conference.sessiontitle | MCI-WS08: 5. Usable Security und Privacy Workshop | |
gi.document.quality | digidoc |
Dateien
Originalbündel
1 - 1 von 1