查詢結果分析
來源資料
頁籤選單縮合
| 題 名 | 可抵擋肩窺攻擊的圖形通行碼設計之研製=A Graphical Password Scheme Resistant to Shoulder-surfing Attacks |
|---|---|
| 作 者 | 曹茂勁; | 書刊名 | 東南學報 |
| 卷 期 | 34 2009.07[民98.07] |
| 頁 次 | 頁13-22 |
| 分類號 | 312.76 |
| 關鍵詞 | 肩窺攻擊; 圖形通行碼; Shoulder-surfing attacks; Graphical passwords; |
| 語 文 | 中文(Chinese) |
| 中文摘要 | 摘 要 肩窺攻擊(shoulder-surfing attack) 對傳統文字通行碼或圖形通行碼(graphical password)而言是一種常見而有效的攻擊方式。肩窺攻擊為直接利用觀察或側錄技術以 取得通行碼的一種攻擊,其過程就好像透過使用者的肩膀窺探其私密資訊。以往為了 抵擋肩窺攻擊,使用者必須以其它方式遮蔽住其所輸入的文字通行碼,但由於使用者 必須改變其操作習慣及注意周遭環境,因此造成了使用者操作上的不便。故有一類圖 形通行碼設計結合了圖形化容易記憶的優點及提供抵擋肩窺攻擊為其設計理念,此類 設計以Convex-hull Click 設計為代表,本論文介紹及分析Convex-hull Click 設計,進 而提出一可改進Convex-hull Click 設計之圖形通行碼設計-Rectangular Keyin 設計, Rectangular Keyin 的優點為設計使用鍵盤輸入挑戰,如此可更進一步防止肩窺攻擊及提 昇系統的使用度。 |
| 英文摘要 | Abstract The appeal of graphical passwords is primarily due to people's better memory of pictures over texts. Conventional dictionary attacks on graphical passwords are infeasible because workable dictionaries for graphical information are rare. Most graphical password schemes are vulnerable to shoulder-surfing attacks. The Convex-hull Click scheme is proposed to resist shoulder-surfing attacks. However, I find there is a potential weakness in the Convexhull Click scheme. During the login process, the user must locate at least three pass icons. Sometimes, the user may carelessly use his mouse to point and stay momentarily at the location near the pass icon for his convenience. In this case, a shoulder surfer has a big chance to find out the pass icons. In this paper, I propose a variant of the Cnvex-hull Cick scheme, the Rctangular Keyin scheme. I will show that the proposed scheme can eliminate the weakness of the Convex-hull Click scheme. The usability of the proposed scheme is better than the Convex-hull Click scheme. |
本系統中英文摘要資訊取自各篇刊載內容。