Against spyware using CAPTCHA in graphical password scheme

Text-based password schemes have inherent security and usability problems, leading to the development of graphical password schemes. However, most of these alternate schemes are vulnerable to spyware attacks. We propose a new scheme, using CAPTCHA (Completely Automated Public Turing tests to tell C...

Full description

Bibliographic Details
Main Authors: Wang, Liming, Chang, Xiuling, Ren, Zhongjie, Haichang, Gao, Liu, Xiyang, Aickelin, Uwe
Format: Article
Published: IEEE 2010
Online Access:https://eprints.nottingham.ac.uk/1342/
Description
Summary:Text-based password schemes have inherent security and usability problems, leading to the development of graphical password schemes. However, most of these alternate schemes are vulnerable to spyware attacks. We propose a new scheme, using CAPTCHA (Completely Automated Public Turing tests to tell Computers and Humans Apart) that retaining the advantages of graphical password schemes, while simultaneously raising the cost of adversaries by orders of magnitude. Furthermore, some primary experiments are conducted and the results indicate that the usability should be improved in the future work.