Spaced Repetition and Mnemonics Enable Recall of Multiple Strong Passwords

نویسندگان

  • Jeremiah Blocki
  • Saranga Komanduri
  • Lorrie Faith Cranor
  • Anupam Datta
چکیده

We report on a user study that provides evidence that spaced repetition and a specific mnemonic technique enable users to successfully recall multiple strong passwords over time. Remote research participants were asked to memorize 4 PersonAction-Object (PAO) stories where they chose a famous person from a drop-down list and were given machine-generated random action-object pairs. Users were also shown a photo of a scene and asked to imagine the PAO story taking place in the scene (e.g., Bill Gates—swallowing—bike on a beach). Subsequently, they were asked to recall the action-object pairs when prompted with the associated scene-person pairs following a spaced repetition schedule over a period of 100+ days. While we evaluated several spaced repetition schedules, the best results were obtained when users initially returned after 12 hours and then in 1.5× increasing intervals: 77.1% of the participants successfully recalled all 4 stories in 9 tests over a period of 102 days. Much of the forgetting happened in the first test period (12 hours): on average 94.9% of the participants who had remembered the stories in earlier rounds successfully remembered them in subsequent rounds. These findings, coupled with recent results on naturally rehearsing password schemes, suggest that 4 PAO stories could be used to create usable and strong passwords for 14 sensitive accounts following this spaced repetition schedule, possibly with a few extra upfront rehearsals. In addition, we find statistically significant evidence that initially (8 tests over 64 days) users who were asked to memorize 4 PAO stories outperform users who are given 4 random action-object pairs, but eventually (9 tests over 128 days) the advantage is not significant. Furthermore, there is an interference effect across multiple PAO stories: the recall rate of 100% for participants who were asked to memorize 1 or 2 PAO stories is significantly better than that for 4 PAO stories. These findings yield concrete advice for improving constructions of password management schemes and future user studies.

برای دانلود رایگان متن کامل این مقاله و بیش از 32 میلیون مقاله دیگر ابتدا ثبت نام کنید

ثبت نام

اگر عضو سایت هستید لطفا وارد حساب کاربری خود شوید

منابع مشابه

Effect of Spaced Repetition on Iranian EFL Learners’ Form Recall of English Single Words and Collocations

Acquiring vocabulary has always been recognized as a significant and challenging part of language learning process. In this study, the researcher examined the extent to which form recall of target lexical items by learners of English as a foreign language (EFL) is affected by a) repetition and b) by the type of target item; single words versus collocations. The treatment consisted of non-commun...

متن کامل

Effect of Spaced Repetition on Iranian EFL Learners’ Form Recall of English Single Words and Collocations

Acquiring vocabulary has always been recognized as a significant and challenging part of language learning process. In this study, the researcher examined the extent to which form recall of target lexical items by learners of English as a foreign language (EFL) is affected by a) repetition and b) by the type of target item; single words versus collocations. The treatment consisted of non-commun...

متن کامل

Learning System-assigned Passwords (up to 56 Bits) in a Single Registration Session with the Methods of Cognitive Psychology

System-assigned random passwords offer security guarantees against guessing attacks but suffer from poor memorability. In this work, we review the cognitive psychology literature and identify two training methods appropriate to aid users in memorizing system-assigned passwords. The method of loci exploits users’ spatial and visual memory, while the link method helps users by creating a chain of...

متن کامل

Testing Computer-Aided Mnemonics and Feedback for Fast Memorization of High-Value Secrets

People sometimes require very strong passwords for high-value accounts (e.g., master passwords for password managers and encryption keys), but often cannot create these strong passwords. Assigning them provably strong secrets is one solution, and prior work has shown that people can learn these assigned secrets through rote learning, though learning the secrets takes some time and they are quic...

متن کامل

Semantic relations and repetition of items enhance the free recall of words by multiple sclerosis patients.

We compared 25 patients with multiple sclerosis (MS) and 24 normal controls on a test of free recall of words. Some lists contained words that were all unrelated, while in others the intermediary words were semantically related. In another set, the mid-list words were repeated across the lists, or, in addition to the repetition, were semantically associated. Immediate recall was assessed using ...

متن کامل

ذخیره در منابع من


  با ذخیره ی این منبع در منابع من، دسترسی به آن را برای استفاده های بعدی آسان تر کنید

عنوان ژورنال:
  • CoRR

دوره abs/1410.1490  شماره 

صفحات  -

تاریخ انتشار 2015