larry shi computer science department graduate research mini talk
TRANSCRIPT
My ResearchWhen people ask my research
Basic research is what I am doing when I don’t know what I am doing.
My researchSecure systems
below OS levelIdentity management
for mobile devicesAssistive technologies
using wearable devices
Usability and Security
No keyboard
Small screen
Touch based interface
Change password frequently
Use password with strong entropy
No automatically sign in on boot-up
Instant access
Interaction speedNo "remember
me"
Avoid same pw for different sites
Usability often wins this battle in smartphones (It is economy!!!)
Password Doesn’t Solve the Problem
4.7% of users have the password password;8.5% have the passwords password or 123456;9.8% have the passwords password, 123456 or 12345678;14% have a password from the top 10 passwords40% have a password from the top 100 passwords79% have a password from the top 500 passwords91% have a password from the top 1000 passwords
http://xato.net/security/passwords
Smartphone Has Many Sensors
Accelerometer
GPS
Touchscreen
Microphone
• Cell ID/GPS history.• Touchscreen
outputs.• Voices (speaker
recognition). • Accelerometer. • Camera.
Sensor Based User Authentication
Touch Based Authentication
Multi-touch Driver
Shape Drawing Login
Manager
Multi-touch GestureEngine
Virtual Keyboard
Enhance Shape Drawing Access with User Specific Touch
Features
Touch Gesture Based
Authentication
Virtual Typing Dynamics Based Authentication
Touchscreen
Context-Aware Touch Screen Based User Identity Recognition Under Uncontrolled Environment
04/20/23
Data Variation (3 users’ data in Launcher)
Result of 8 Users