Character Strings, Memory and Passwords: What a Recall Study Can Tell Us

作者: Brian C. Stanton , Kristen K. Greene

DOI: 10.1007/978-3-319-07620-1_18

关键词:

摘要: Many users must authenticate to multiple systems and applications, often using different passwords, on a daily basis. At the same time, recommendations of security experts are driving increases in required character length complexity passwords. The thinking is that longer passwords will result greater "entropy," or randomness, making them more difficult guess. requires inclusion upper- lower-case letters, numerals, special characters. How interact cope with topic significant interest both computer science cognitive research communities. Using experimental methodology from behavioral sciences, we set out answer following question: how memorable complex strings lengths might be used as higher-entropy passwords? In this experiment, participants were asked memorize series ten type repeatedly into program. Character string varied random characters made up alphanumeric order mimic Not surprisingly, our findings indicate is, it takes for person recall it, likely they make an error when trying re-type string. These effects particularly pronounced eight longer.

参考文章(12)
Donald R. Gentner, Skilled Finger Movements in Typing. ,(1981)
Timothy A. Salthouse, Perceptual, cognitive, and motoric aspects of transcription typing. Psychological Bulletin. ,vol. 99, pp. 303- 319 ,(1986) , 10.1037/0033-2909.99.3.303
Kim-Phuong L. Vu, Robert W. Proctor, Abhilasha Bhargav-Spantzel, Bik-Lam (Belin) Tai, Joshua Cook, E. Eugene Schultz, Improving password security and memorability to protect personal and organizational information International Journal of Human-computer Studies \/ International Journal of Man-machine Studies. ,vol. 65, pp. 744- 757 ,(2007) , 10.1016/J.IJHCS.2007.03.007
J. Yan, A. Blackwell, R. Anderson, A. Grant, Password memorability and security: empirical results ieee symposium on security and privacy. ,vol. 2, pp. 25- 31 ,(2004) , 10.1109/MSP.2004.81
Timothy A. Salthouse, Effects of age and skill in typing. Journal of Experimental Psychology: General. ,vol. 113, pp. 345- 371 ,(1984) , 10.1037/0096-3445.113.3.345
E.F. Gehringer, Choosing passwords: security and human factors international symposium on technology and society. pp. 369- 373 ,(2002) , 10.1109/ISTAS.2002.1013839
Alain Forget, Robert Biddle, Memorability of persuasive passwords human factors in computing systems. pp. 3759- 3764 ,(2008) , 10.1145/1358628.1358926
Sonia Chiasson, Alain Forget, Elizabeth Stobert, P. C. van Oorschot, Robert Biddle, Multiple password interference in text passwords and click-based graphical passwords computer and communications security. pp. 500- 511 ,(2009) , 10.1145/1653662.1653722
Dinei Florencio, Cormac Herley, A large-scale study of web password habits the web conference. pp. 657- 666 ,(2007) , 10.1145/1242572.1242661