GazeTouchPIN: Protecting Sensitive Data on Mobile Devices Using Secure Multimodal Authentication

Khamis, M. , Hassib, M., Zezschwitz, E. v., Bulling, A. and Alt, F. (2017) GazeTouchPIN: Protecting Sensitive Data on Mobile Devices Using Secure Multimodal Authentication. In: 19th ACM International Conference on Multimodal Interaction (ICMI 2017), Glasgow, Scotland, 13-17 Nov 2017, pp. 446-450. ISBN 9781450355438 (doi: 10.1145/3136755.3136809)

[img]
Preview
Text
170215.pdf - Accepted Version

1MB

Abstract

Although mobile devices provide access to a plethora of sensitive data, most users still only protect them with PINs or patterns, which are vulnerable to side-channel attacks (e.g., shoulder surfing). How-ever, prior research has shown that privacy-aware users are willing to take further steps to protect their private data. We propose GazeTouchPIN, a novel secure authentication scheme for mobile devices that combines gaze and touch input. Our multimodal approach complicates shoulder-surfing attacks by requiring attackers to ob-serve the screen as well as the user’s eyes to and the password. We evaluate the security and usability of GazeTouchPIN in two user studies (N=30). We found that while GazeTouchPIN requires longer entry times, privacy aware users would use it on-demand when feeling observed or when accessing sensitive data. The results show that successful shoulder surfing attack rate drops from 68% to 10.4%when using GazeTouchPIN.

Item Type:Conference Proceedings
Additional Information:This work was partially funded by the Bavarian State Ministry of Education, Science and the Arts in the framework of the Centre Digitisation.Bavaria (ZD.B), and by the Cluster of Excellence on Multimodal Computing and Interaction (MMCI) at Saarland University, Germany.
Keywords:Gaze gestures, multimodal authentication, usable security.
Status:Published
Refereed:Yes
Glasgow Author(s) Enlighten ID:Khamis, Dr Mohamed
Authors: Khamis, M., Hassib, M., Zezschwitz, E. v., Bulling, A., and Alt, F.
College/School:College of Science and Engineering > School of Computing Science
Publisher:ACM
ISBN:9781450355438
Copyright Holders:Copyright © 2017 The Authors
First Published:First published in 19th ACM International Conference on Multimodal Interaction (ICMI 2017): 446-450
Publisher Policy:Reproduced in accordance with the publisher copyright policy

University Staff: Request a correction | Enlighten Editors: Update this record