Geographical Security Questions for Fallback Authentication

07/01/2019
by   Alaadin Addas, et al.
0

Fallback authentication is the backup authentication method used when the primary authentication method (e.g., passwords, fingerprints, etc.) fails. Currently, widely-deployed fallback authentication methods (e.g., security questions, email resets, and SMS resets) suffer from documented security and usability flaws that threaten the security of accounts. These flaws motivate us to design and study Geographical Security Questions (GeoSQ), a system for fallback authentication. GeoSQ is an Android application that utilizes autobiographical location data for fallback authentication. We performed security and usability analyses of GeoSQ through an in-person two-session lab study (n=36,18 pairs). Our results indicate that GeoSQ exceeds the security of its counterparts, while its usability (specifically login time) has room for improvement.

READ FULL TEXT
research
10/01/2020

More Than Just Good Passwords? A Study on Usability and Security Perceptions of Risk-based Authentication

Risk-based Authentication (RBA) is an adaptive security measure to stren...
research
02/15/2023

FIDO2 the Rescue? Platform vs. Roaming Authentication on Smartphones

Modern smartphones support FIDO2 passwordless authentication using eithe...
research
05/20/2019

Increasing the Security of Weak Passwords: the SPARTAN Interface

Password authentication suffers from the well-known tradeoff between sec...
research
03/16/2021

A Study on Priming Methods for Graphical Passwords

Recent work suggests that a type of nudge or priming technique called th...
research
02/23/2021

Usability and Security of Different Authentication Methods for an Electronic Health Records System

We conducted a survey of 67 graduate students enrolled in the Privacy an...
research
09/24/2017

Changing users' security behaviour towards security questions: A game based learning approach

Fallback authentication is used to retrieve forgotten passwords. Securit...
research
08/10/2023

Usability Assessment of the OnlyKey Hardware Two-Factor Authentication Key Among Low Vision or Blind Users

Hardware security keys undoubtedly have advantage for users as "usabilit...

Please sign up or login with your details

Forgot password? Click here to reset