首页> 外文学位 >Authentication for humans: The design and evaluation of usable security systems.
【24h】

Authentication for humans: The design and evaluation of usable security systems.

机译:对人的身份验证:可用安全系统的设计和评估。

获取原文
获取原文并翻译 | 示例

摘要

How can we make computer security systems usable by human users? Computer security demands that we establish the identity of human users who access individual computers and online services. Conversely, human users need to be able to authenticate the identity of online services reached over a computer network.;This dissertation presents highly usable solutions for both the problems of human-computer authentication and computer-human authentication. The dissertation begins by presenting an overview of the usability and security problem. It explores the issues of human authentication by presenting a system called Deja Vu that uses graphical passwords to authenticate human users. It presents the results of a usability experiment that compares graphical passwords to traditional passwords.;Next, the dissertation considers the problem of phishing, the use of bogus websites that appear to be legitimate websites associated with financial institutions or other organizations to collect personal information. It presents the results of an empirical study that examines which attack strategies are successful and what proportion of users they fool.;Next, the dissertation presents a system called Dynamic Security Skins (DSS) that effectively allows online services to authenticate to human users, and vice versa. It presents an analysis and usability study of DSS.;Finally, the dissertation concludes with a discussion open problems in the area of usability and security.
机译:我们如何使计算机安全系统可供人类用户使用?计算机安全要求我们建立访问单个计算机和在线服务的人类用户的身份。相反,人类用户需要能够对通过计算机网络访问的在线服务的身份进行身份验证。;本文提出了针对人机身份验证和计算机人身份验证问题的高度可用的解决方案。本文首先介绍了可用性和安全性问题。通过介绍一个使用图形密码对人类用户进行身份验证的Deja Vu系统,探讨了人类身份验证的问题。它提出了将图形密码与传统密码进行比较的可用性实验的结果。接下来,本文考虑了网络钓鱼的问题,即使用伪造的网站,这些网站似乎是与金融机构或其他组织关联的合法网站,用于收集个人信息。它提供了一项实证研究的结果,该研究检查了哪种攻击策略成功以及他们欺骗的用户比例。接下来,本文提出了一种称为动态安全皮肤(DSS)的系统,该系统可以有效地使在线服务向人类用户进行身份验证,以及反之亦然。最后对DSS进行了分析和可用性研究。最后,本文对可用性和安全性方面存在的问题进行了讨论。

著录项

  • 作者

    Dhamija, Rachna.;

  • 作者单位

    University of California, Berkeley.;

  • 授予单位 University of California, Berkeley.;
  • 学科 Computer Science.;Information Science.
  • 学位 Ph.D.
  • 年度 2005
  • 页码 258 p.
  • 总页数 258
  • 原文格式 PDF
  • 正文语种 eng
  • 中图分类
  • 关键词

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号