Password Fallback Authentication › Resource resorted to when users forget their passwords ...

6
Usable Security Password Fallback Authentication COMP6620 – User Interface Design Shaneé Dawkins Robert Voitle

Transcript of Password Fallback Authentication › Resource resorted to when users forget their passwords ...

Page 1: Password Fallback Authentication › Resource resorted to when users forget their passwords  Existing Tools › CAPTCHA › Pre-defined questions › User-defined.

Usable Security – Password Fallback

AuthenticationCOMP6620 – User Interface Design

Shaneé DawkinsRobert Voitle

Page 2: Password Fallback Authentication › Resource resorted to when users forget their passwords  Existing Tools › CAPTCHA › Pre-defined questions › User-defined.

Project Background

Password Fallback Authentication› Resource resorted to when users forget

their passwords Existing Tools

› CAPTCHA› Pre-defined questions› User-defined questions› Preference based authentication

Page 3: Password Fallback Authentication › Resource resorted to when users forget their passwords  Existing Tools › CAPTCHA › Pre-defined questions › User-defined.

Project Overview

Preference-based Method› User chosen images

How it works› User selects 8 preferences during account

set up (likes & dislikes)› User is presented with preferences if

password forgotten› User must make selections› No obscure question answers to memorize

Page 4: Password Fallback Authentication › Resource resorted to when users forget their passwords  Existing Tools › CAPTCHA › Pre-defined questions › User-defined.

Account Set Up

Page 5: Password Fallback Authentication › Resource resorted to when users forget their passwords  Existing Tools › CAPTCHA › Pre-defined questions › User-defined.

Forgot Password

Page 6: Password Fallback Authentication › Resource resorted to when users forget their passwords  Existing Tools › CAPTCHA › Pre-defined questions › User-defined.

Evaluation Usability Study

› Memorability (2 phase study)› Learnability (ease of use)› Safety (security)› Efficiency (time to select preferences)› Effectiveness (completion)› Utility (real world application)

Heuristics› Color blind› Security?