Poster: The MVP web-based framework for user studies in authentication

نویسندگان

  • Sonia Chiasson
  • Chris Deschamps
  • Max Hlywa
  • Gerry Chan
  • Elizabeth Stobert
  • Robert Biddle
چکیده

Despite the ubiquity of password systems, knowledge-based authentication remains an important and active research area. Many current systems have low security, and even then users often devise insecure coping strategies in order to compensate for memorability and usability problems. Alternative authentication systems, including various graphical password schemes, have received considerable attention in response. We have conducted a systematic review of the literature on graphical passwords [2], and found no consistency in the usability and security evaluation of different schemes. The situation is similar for text passwords, rendering fair comparison between schemes nearly impossible. In our earlier authentication research, we have used both controlled lab studies and more extensive field studies. Lab studies can reduce the number of confounding variables and show whether more extensive studies are justifiable. However, the tasks of creating and logging in are typically in the foreground, whereas in real-life these are secondary tasks that receive little attention. Issues surrounding memorability and memory interference are also difficult to evaluate in a lab setting. Our lab studies used a typical approach involving a simple structure with repeated tasks. Field studies present more complex challenges. In this paper, we present MVP (Multiple Versatile Passwords), a new framework for conducting user studies of authentication schemes thst can easily be deployed in both lab and field environments. It addresses ecological validity issues by using real websites with real content, making authentication a secondary task. MVP differs from systems such as OpenID [1] or single sign-on; its goal is specifically to serve as an instrumented platform for testing and comparing multiple authentication schemes.

برای دانلود رایگان متن کامل این مقاله و بیش از 32 میلیون مقاله دیگر ابتدا ثبت نام کنید

ثبت نام

اگر عضو سایت هستید لطفا وارد حساب کاربری خود شوید

منابع مشابه

The MVP Web-based Authentication Framework

MVP is a new framework for allowing websites to use diverse knowledge-based authentication schemes. One application is its use in conducting ecologically valid user studies of authentication schemes under the same experimental conditions. We introduce MVP and its key characteristics, discuss implementation of several authentication schemes, and report on a user study successfully comparing four...

متن کامل

[Short Paper] The MVP Web-based Authentication Framework

MVP is a framework allowing websites to use diverse knowledgebased authentication schemes. One application is its use in conducting ecologically valid user studies of authentication under the same experimental conditions. We introduce MVP and its key characteristics, discuss several authentication schemes, and offer lessons learned from running 9 hybrid (lab/online) and 3 MTurk user studies ove...

متن کامل

A Mutual Authentication Method for Internet of Things

Today, we are witnessing the expansion of various Internet of Things (IoT) applications and services such as surveillance and health. These services are delivered to users via smart devices anywhere and anytime. Forecasts show that the IoT, which is controlled online in the user environment, will reach 25 billion devices worldwide by 2020. Data security is one of the main concerns in the IoT. ...

متن کامل

RESCUE: Reputation based Service for Cloud User Environment

Exceptional characteristics of Cloud computing has replaced all traditional computing. With reduced resource management and without in-advance investment, it has been victorious in making the IT world to migrate towards it. Microsoft announced its office package as Cloud, which can prevent people moving from Windows to Linux. As this drift is escalating in an exponential rate, the cloud environ...

متن کامل

Web pages ranking algorithm based on reinforcement learning and user feedback

The main challenge of a search engine is ranking web documents to provide the best response to a user`s query. Despite the huge number of the extracted results for user`s query, only a small number of the first results are examined by users; therefore, the insertion of the related results in the first ranks is of great importance. In this paper, a ranking algorithm based on the reinforcement le...

متن کامل

ذخیره در منابع من


  با ذخیره ی این منبع در منابع من، دسترسی به آن را برای استفاده های بعدی آسان تر کنید

عنوان ژورنال:

دوره   شماره 

صفحات  -

تاریخ انتشار 2010