Comparing Video Based Shoulder Surfing with Live Simulation
dc.contributor.author | Aviv, Adam J. | |
dc.contributor.author | Wolf, Flynn | |
dc.contributor.author | Kuber, Ravi | |
dc.date.accessioned | 2020-10-13T17:51:18Z | |
dc.date.available | 2020-10-13T17:51:18Z | |
dc.date.issued | 2018-12 | |
dc.description | ACSAC ’18, December 3–7, 2018, San Juan, PR, USA | en_US |
dc.description.abstract | We analyze the claims that video recreations of shoulder surfing attacks offer a suitable alternative and a baseline, as compared to evaluation in a live setting. We recreated a subset of the factors of a prior video-simulation experiment conducted by Aviv et al. (ACSAC 2017), and model the same scenario using live participants (n = 36) instead (i.e., the victim and attacker were both present). The live experiment confirmed that for Android's graphical patterns video simulation is consistent with the live setting for attacker success rates. However, both 4- and 6-digit PINs demonstrate statistically significant differences in attacker performance, with live attackers performing as much 1.9x better than in the video simulation. The security benefits gained from removing feedback lines in Android's graphical patterns are also greatly diminished in the live setting, particularly under multiple attacker observations, but overall, the data suggests that video recreations can provide a suitable baseline measure for attacker success rate. However, we caution that researchers should consider that these baselines may greatly underestimate the threat of an attacker in live settings. | en_US |
dc.description.sponsorship | This work was supported by the O$ce of Naval Research. The authors wish to thank Chukwuemeka KC Marume and John T. Davin for their assistance conducting the study. | en_US |
dc.description.uri | https://dl.acm.org/doi/10.1145/3274694.3274702 | en_US |
dc.format.extent | 14 pages | en_US |
dc.genre | conference papers and proceedings | en_US |
dc.identifier | doi:10.13016/m22zen-hbea | |
dc.identifier.citation | Aviv, Adam J.; Wolf, Flynn; Kuber, Ravi; Comparing Video Based Shoulder Surfing with Live Simulation; ACSAC '18: Proceedings of the 34th Annual Computer Security Applications Conference, December 2018, Pages 453–466; https://dl.acm.org/doi/10.1145/3274694.3274702 | en_US |
dc.identifier.uri | https://doi.org/10.1145/3274694.3274702 | |
dc.identifier.uri | http://hdl.handle.net/11603/19829 | |
dc.language.iso | en_US | en_US |
dc.publisher | Association for Computing Machinery | en_US |
dc.relation.isAvailableAt | The University of Maryland, Baltimore County (UMBC) | |
dc.relation.ispartof | UMBC Information Systems Department Collection | |
dc.relation.ispartof | UMBC Student Collection | |
dc.relation.ispartof | UMBC Faculty Collection | |
dc.rights | This item is likely protected under Title 17 of the U.S. Copyright Law. Unless on a Creative Commons license, for uses protected by Copyright Law, contact the copyright holder or the author. | |
dc.rights | Public Domain Mark 1.0 | * |
dc.rights | This work was written as part of one of the author's official duties as an Employee of the United States Government and is therefore a work of the United States Government. In accordance with 17 U.S.C. 105, no copyright protection is available for such works under U.S. Law. | |
dc.rights.uri | http://creativecommons.org/publicdomain/mark/1.0/ | * |
dc.title | Comparing Video Based Shoulder Surfing with Live Simulation | en_US |
dc.title.alternative | Replicating Video Based Shoulder Surfing for Mobile Unlock Authentication with Live Simulation | |
dc.type | Text | en_US |