A systematic review of PIN-entry methods resistant to shoulder-surfing attacks

被引:22
|
作者
Binbeshr, Farid [1 ,3 ]
Kiah, M. L. Mat [1 ]
Por, Lip Yee [1 ]
Zaidan, A. A. [2 ]
机构
[1] Univ Malaya, Fac Comp Sci & Informat Technol, Kuala Lumpur 50603, Malaysia
[2] Sultan Idris Univ Educ UPSI, Dept Comp, Tanjong Malim, Malaysia
[3] Hadhramout Univ, Al Mukalla 50512, Hadhramout, Yemen
关键词
PIN; Password; Shoulder surfing; Recording attack; Observation attack; Authentication; SECURITY;
D O I
10.1016/j.cose.2020.102116
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Although conventional PIN-entry methods are widely used in many daily authentication procedures, they are highly susceptible to shoulder-surfing attacks. A plethora of PIN-entry methods have been proposed in the literature to mitigate such attacks. Unfortunately, none of these methods is capable of replacing the conventional PIN-entry method. This study presents the results of a systematic review of PIN-entry methods resistant to shoulder-surfing attacks so that the main challenges that impede their adoption can be provided along with opportunities for future research. A systematic search was conducted on seven databases using predefined criteria. A test-retest approach was performed by a single author to extract data. A total of 55 articles were included in this review. The review results manifest that PIN-entry methods are classified mainly into direct and indirect inputs. The user study was the standard research method, and error rate and PIN-entry time were the most frequently adopted usability measures. The review argues that a recording-based shoulder-surfing attack is a major threat to PIN-entry methods. Error rate and PIN-entry time are widely adopted criteria for usability. The review indicates that most PIN-entry methods require a high error rate and PIN-entry time than the conventional method. Moreover, the lack of a standard evaluation framework should be addressed. (C) 2020 Elsevier Ltd. All rights reserved.
引用
收藏
页数:14
相关论文
共 50 条
  • [1] Analysis and Improvement of a PIN-Entry Method Resilient to Shoulder-Surfing and Recording Attacks
    Kwon, Taekyoung
    Hong, Jin
    IEEE TRANSACTIONS ON INFORMATION FORENSICS AND SECURITY, 2015, 10 (02) : 278 - 292
  • [2] Security Notions and Advanced Method for Human Shoulder-Surfing Resistant PIN-Entry
    Lee, Mun-Kyu
    IEEE TRANSACTIONS ON INFORMATION FORENSICS AND SECURITY, 2014, 9 (04) : 695 - 708
  • [3] A systematic review of graphical password methods resistant to shoulder-surfing attacks
    Binbeshr, Farid
    Siong, Khaw Chee
    Por, Lip Yee
    Imam, Muhammad
    Al-Saggaf, Alawi A.
    Abudaqa, Anas A.
    INTERNATIONAL JOURNAL OF INFORMATION SECURITY, 2025, 24 (01)
  • [4] A PIN Entry Scheme Resistant to Recording-based Shoulder-Surfing
    Shi, Peipei
    Zhu, Bo
    Youssef, Amr
    2009 THIRD INTERNATIONAL CONFERENCE ON EMERGING SECURITY INFORMATION, SYSTEMS, AND TECHNOLOGIES, 2009, : 237 - 241
  • [5] The Phone Lock: Audio and Haptic Shoulder-Surfing Resistant PIN Entry Methods for Mobile Devices
    Bianchi, Andrea
    Oakley, Ian
    Kostakos, Vassilis
    Kwon, Dong Soo
    TEI 2011: PROCEEDINGS OF THE FIFTH INTERNATIONAL CONFERENCE ON TANGIBLE EMBEDDED AND EMBODIED INTERACTION, 2011, : 197 - 200
  • [6] An Access Control Resistant to Shoulder-Surfing
    Jang, Jae-Jin
    Jung, Im Y.
    2015 IEEE INTERNATIONAL CONFERENCE ON INTELLIGENCE AND SECURITY INFORMATICS (ISI), 2015, : 196 - 196
  • [7] Advanced Pin Entry Method By Resisting Shoulder Surfing Attacks
    Mali, Yogesh Kisan
    Mohanpurkar, Arti
    2015 IEEE INTERNATIONAL CONFERENCE ON INFORMATION PROCESSING (ICIP), 2015, : 37 - 42
  • [8] A Textual Password Entry Method Resistant to Human Shoulder-Surfing Attack
    Chen, Shudi
    Zhu, Youwen
    CYBERSPACE SAFETY AND SECURITY, PT II, 2019, 11983 : 409 - 420
  • [9] A Simple Observation Attacks Resistant PIN-Entry Scheme Employing Audios
    Dan, Yu-Xuan
    Ku, Wei-Chi
    2017 IEEE 9TH INTERNATIONAL CONFERENCE ON COMMUNICATION SOFTWARE AND NETWORKS (ICCSN), 2017, : 1410 - 1413
  • [10] A two-layers automultiscopic display as a resistant device to shoulder-surfing attacks
    Carmona-Ballester, David
    Bonaque-Gonzalez, Sergio
    Trujillo-Sevilla, Juan M.
    Gomez-Cardenes, Oscar
    Rodriguez-Ramos, Jose M.
    OPTICA PURA Y APLICADA, 2022, 55 (04):