Fastwords

12
Fastwords Markus Jakobsson Ruj Akavipat

description

Fastwords. Markus Jakobsson Ruj Akavipat. A Bit about Authentication. Difficulty customizing settings. Difficulty authenticating. Short battery life. Lack of coverage. 1 2 3 4 5. - PowerPoint PPT Presentation

Transcript of Fastwords

Page 1: Fastwords

FastwordsMarkus Jakobsson

Ruj Akavipat

Page 2: Fastwords

A Bit about Authentication

2

1 2 3 4 5

Short battery life

Slow Web connection

Lack of coverage

Poor voice quality

Small screen

size

Difficulty customizing

settings

Difficulty authenticating

Page 3: Fastwords

Jakobsson/Akavipat: www.fastword.me

People hate passwords – especially on handsets

• Slow to enter … … and then you realize you mistyped something!

• At the same time, recall rates are low for passwords … and reset is difficult / insecure / expensive

• PINs are faster … … but not very secure … and reuse is rampant

Problems

Page 4: Fastwords

Jakobsson/Akavipat: www.fastword.me

Q. Why are passwords more painful than text? A. Text uses auto-correction/completion!

Understanding usability issues

Page 5: Fastwords

Jakobsson/Akavipat: www.fastword.me

Q. Why are (good) passwords hard to recall? A. Good passwords are weird!

(Ebbinghausen, 1885)

Understanding recall issues

Page 6: Fastwords

Jakobsson/Akavipat: www.fastword.me

Not so secure, you say?Approx. 64k words only.

Auto correct works

frogfroffrofrffrof

A stab at a solution

Page 7: Fastwords

Jakobsson/Akavipat: www.fastword.me

Auto correct works

frog flat work

Improved solution

Page 8: Fastwords

Jakobsson/Akavipat: www.fastword.me

Looking at speed

Page 9: Fastwords

Jakobsson/Akavipat: www.fastword.me

Average password

Average fastword

Looking at security

Page 10: Fastwords

Jakobsson/Akavipat: www.fastword.meEFFECTIVE RECALL: 0.36+(1-0.36)*0.48=0.67 …. 67%

Forgot fastword? Hint: first word

Page 11: Fastwords

Jakobsson/Akavipat: www.fastword.me

Average fastword

Average password

Forgot fastword? Hint: first word

Page 12: Fastwords

We can improve as basic things as passwords – if we ask “why”.

Jakobsson/Akavipat: www.fastword.me

Big-picture insight