Enhancing Cybersecurity Through Graphical Password Authentication: A Hybrid Approach to Usability and Security

Authors

  • Soheil Fakheri Department of Computer Engineering, Ayandegan Higher of Education Institute, Tonekabon, Iran. https://orcid.org/0000-0001-5751-6997
  • Omar Mar Cornelio Centro de Estudio de Matematica Computacional, Universidad de las Ciencias Inform aticas, La Habana, Cuba. https://orcid.org/0000-0002-0689-6341
  • Haoran Yu School of Economics and Management, China Three Gorges University, China.

DOI:

https://doi.org/10.48314/ceti.v1i3.37

Keywords:

Authentication process, Graphical password, Keylogger, Shoulder surfing

Abstract

Graphical Password (GP) is one of technic for authentication of computer security. Now days digital/computer security is most important things in computer science for protected user or customer data. And shoulder-surfing is a one of the  threats where a criminal can steal a password by direct observation or by recording the authentication session. There are several techniques available for this authentication, the most prevalent and simple of  which is the GP technique. So, we suggest a new technique to combat this problem. We have developed two concepts to combat shoulder surfing attacks. First, the user must register if the registration does not exist. Second, you must log in with a valid user ID and password. The password is a grouping of characters and numbers. Third, user has to cross Image-Based (IB) authentication where user can choose their password and this method have higher chances to offset each other. You should choose password according to the registration password, it must to match at Login time. In color base authentication, there should be several color base passwords and depending on the color, you need to remember the password sequence. And its like three-factor authentication. So, here is proposed a new GP authentication technique that is resilient to shoulder surfing and also to other types of probable attacks.

References

Zakaria, N. H., Griffiths, D., Brostoff, S., & Yan, J. (2011). Shoulder surfing defence for recall-based graphical passwords. Soups 2011-proceedings of the 7th symposium on usable privacy and security, 6, 1–12. http://dx.doi.org/10.1145/2078827.2078835

Bhand, A., Desale, V., Shirke, S., & Shirke, S. P. (2015). Enhancement of password authentication system using graphical images. 2015 international conference on information processing (ICIP) (pp. 217–219). IEEE. https://doi.org/10.1109/INFOP.2015.7489381

Darbanian, E., & others. (2015). A graphical password against spyware and shoulder-surfing attacks. 2015 international symposium on computer science and software engineering (CSSE) (pp. 1–6). IEEE. https://doi.org/10.1109/CSICSSE.2015.7369239

Gao, H., Ren, Z., Chang, X., Liu, X., & Aickelin, U. (2010). A new graphical password scheme resistant to shoulder-surfing. 2010 international conference on cyberworlds (pp. 194–199). IEEE. https://doi.org/10.1109/CW.2010.34

Gokhale, M. A. S., & Waghmare, V. S. (2016). The shoulder surfing resistant graphical password authentication technique. Procedia computer science, 79, 490–498. https://doi.org/10.1016/j.procs.2016.03.063

Biddle, R., Chiasson, S., & Van Oorschot, P. C. (2012). Graphical passwords: learning from the first twelve years. ACM computing surveys (CSUR), 44(4), 1–41. https://doi.org/10.1145/2333112.2333114

Irfan, K., Anas, A., Malik, S., & Amir, S. (2018). Text based graphical password system to obscure shoulder surfing. 2018 15th international bhurban conference on applied sciences and technology (IBCAST) (pp. 422–426). IEEE. https://doi.org/10.1109/IBCAST.2018.8312258

Shammee, T., Mou, M., Chowdhury, F., & Ferdous, M. S. (2020). A Systematic literature review of graphical password schemes. Journal of computing science and engineering, 14, 163–185. http://dx.doi.org/10.5626/JCSE.2020.14.4.163

Sonkar, S., Paikrao, R., Kumar, A., & Deshmukh, M. S. (2014). Minimizing shoulder surfing attack using text and color based graphical password scheme. International journal of engineering research and technology, 3, 835–839. https://B2n.ir/e98988

Nandi, P., & Savant, P. (2022). Graphical password authentication system. International Journal for Research in Applied Science & Engineering Technology (IJRASET), 10(5).https://doi.org/10.22214/ijraset.2022.41621

Published

2024-09-21

How to Cite

Enhancing Cybersecurity Through Graphical Password Authentication: A Hybrid Approach to Usability and Security. (2024). Computational Engineering and Technology Innovations, 1(3), 170-177. https://doi.org/10.48314/ceti.v1i3.37