首页> 外文会议>International Conference on Energy, Communication, Data Analytics and Soft Computing >An RTOS based implementation of SteganoPIN for safe PIN entry
【24h】

An RTOS based implementation of SteganoPIN for safe PIN entry

机译:SteganoPIN的基于RTOS的实现,用于安全PIN输入

获取原文

摘要

Users often use the same PIN (personal identification number) number for multiple systems and in multiple sessions. Direct entries are highly vulnerable to shoulder surfing attacks as attackers effectively monitor with hidden cameras. To ensure security and ease of use, a convenient indirect PIN code entry method called SteganoPIN is used. The man-machine interface of SteganoPIN consists of two numeric keypads, one is standard keypad and the other is a random keypad. The random keypad permutes ten numeric keys due to ultrasonic sensor. The permutation occurs to physically block shoulder attacks along with concealed camera attacks. The user enters the original PIN on standard keypad referring to the random keypad. i.e. for every transaction, permutation of ten numeric keys occurs in the random keypad. The user has to map the positions of the PIN entry on the standard keypad referring to the random keypad. This indirect PIN entry system is significantly different from that of standard PIN entry system. SteganoPIN is flexible for camera-based surfing attacks on several authentication sessions.
机译:用户经常在多个系统和多个会话中使用相同的PIN(个人标识号)号码。由于攻击者使用隐藏的摄像机进行有效监视,因此直接进入极易受到肩膀冲浪攻击的攻击。为了确保安全性和易用性,使用了一种称为SteganoPIN的便捷的间接PIN码输入方法。 SteganoPIN的人机界面由两个数字键盘组成,一个是标准键盘,另一个是随机键盘。随机键盘由于超声波传感器而排列了十个数字键。排列发生在物理上阻止了肩膀的攻击以及暗藏的相机攻击。用户参考随机键盘在标准键盘上输入原始PIN。即,对于每笔交易,随机键盘中都会排列十个数字键。用户必须参考随机键盘在标准键盘上映射PIN条目的位置。此间接PIN输入系统与标准PIN输入系统显着不同。 SteganoPIN可以灵活地针对多个身份验证会话进行基于相机的冲浪攻击。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号