Managing the Trade-off Between Usability and Security in Knowledge-Based Authentication

被引:0
|
作者
Alabdullatif, Raghad [1 ]
Alsubait, Tahani [1 ]
机构
[1] Umm Al Qura Univ, Coll Comp & Informat Syst, POB 715, Mecca, Saudi Arabia
关键词
Security; Usability; Knowledge-based authentication; User study; MEMORY;
D O I
暂无
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Knowledge-based authentication (KBA) is the process where users authenticate their identities by having knowledge of a specific secret which confirms the authentication e.g. passwords. Humans have issues with remembering non-meaningful strings, so they keep choosing weak passwords. This clearly shows the trade-off between usability and security where a decrease in usability might negatively impact security. To overcome this issue, user authentication approaches should find a way to reduce the burden on user's memory so they can choose stronger passwords. The relation between security and usability is much complicated than that. For example, increasing security measures might decrease usability. So, in this paper we argue that this trade-off must be managed effectively. A hybrid authentication system is proposed as an alternative to the traditional password-based authentication. A user study was used to investigate the feasibility of this alternative system by integrating it into a students' university portal.
引用
收藏
页码:175 / 181
页数:7
相关论文
共 50 条
  • [1] Security and Usability in Knowledge-based User Authentication: A Review
    Katsini, Christina
    Belk, Marios
    Fidas, Christos
    Avouris, Nikolaos
    Samaras, George
    [J]. 20TH PAN-HELLENIC CONFERENCE ON INFORMATICS (PCI 2016), 2016,
  • [2] Designing a trade-off between usability and security: A metrics based-model
    Braz, Christina
    Seffah, Ahmed
    M'Raihi, David
    [J]. HUMAN-COMPUTER INTERACTION - INTERACT 2007, PT 2, PROCEEDINGS, 2007, 4663 : 114 - +
  • [3] Examining Security and Usability Aspects of Knowledge-based Authentication Methods
    Bosnjak, L.
    Brumen, B.
    [J]. 2019 42ND INTERNATIONAL CONVENTION ON INFORMATION AND COMMUNICATION TECHNOLOGY, ELECTRONICS AND MICROELECTRONICS (MIPRO), 2019, : 1181 - 1186
  • [4] Usability and Security of Knowledge-based Authentication Systems: A State-of-the-Art Review
    Wasfi, Hassan
    Stone, Richard
    [J]. INTERNATIONAL JOURNAL OF ADVANCED COMPUTER SCIENCE AND APPLICATIONS, 2023, 14 (05) : 16 - 25
  • [5] BrFAST: a Tool to Select Browser Fingerprinting Attributes for Web Authentication According to a Usability-Security Trade-off
    Andriamilanto, Nampoina
    Allard, Tristan
    [J]. WEB CONFERENCE 2021: COMPANION OF THE WORLD WIDE WEB CONFERENCE (WWW 2021), 2021, : 701 - 704
  • [6] Performance and Security Strength Trade-Off in Machine Learning Based Biometric Authentication Systems
    Sadeghi, Koosha
    Banerjee, Ayan
    Sohankar, Javad
    Gupta, Sandeep K. S.
    [J]. 2017 16TH IEEE INTERNATIONAL CONFERENCE ON MACHINE LEARNING AND APPLICATIONS (ICMLA), 2017, : 1045 - 1048
  • [7] Managing the KM trade-off:: Knowledge centralization versus distribution
    Bonifacio, M
    Camussone, P
    Zini, C
    [J]. JOURNAL OF UNIVERSAL COMPUTER SCIENCE, 2004, 10 (03) : 162 - 175
  • [8] Managing the Trade-off between Security and Power Consumption for Smart CPS-IoT Networks
    Sailer, Patrizia
    Schmittner, Christoph
    Tauber, Markus
    [J]. ERCIM NEWS, 2019, (119): : 23 - 24
  • [9] Reasoning About the Trade-Off Between Security and Performance
    Koepf, Boris
    [J]. QUANTITATIVE EVALUATION OF SYSTEMS, 2015, 9259 : XI - XII
  • [10] Evaluating knowledge-based security questions for fallback authentication
    AlHusain R.
    Alkhalifah A.
    [J]. PeerJ Computer Science, 2022, 8