Securing online password guessing attack

Post on 15-Apr-2017

90 views 5 download

transcript

1

Defenses Against Password Guessing Attacks By Using Persuasive Click Point Presentation On :-

Presented By :-Saurav Sinha(Computer Science Engg.)

2 Contents Objective Traditional Graphical Password System Classification of Passwords Disadvantages of Existing System Persuasive Cued Click Points (PCCP) System Architecture Advantages Conclusion References

3

Objective To force users to select more random, and difficult passwords

to guess.

To provide better security and easy to remember passwords in the form of pictures.

To provide more secure authentication.

To provide user friendly environment to create password.

4 Traditional Graphical Password System

1. Recognition Based Techniques

2. Recall based techniques :-Pass Points (PP)

5 Classifications of passwords

6 Disadvantages Of Existing

System Token based system requires support of knowledge

based system (Keys, Smartcards etc.)

Knowledge based passwords are easily cracked by brute force and dictionary attacks (Text & Alphanumeric numbers)

Biometrics based system is more complex and costly (Fingerprint, Retina, Face Geometry etc.)

7Persuasive Cued Click Point (PCCP)

Select a click-point within the view port.

Shuffle button to randomly reposition the view port

View port guides users to select more random passwords

8

System Architecture

9

10

Advantages Better to remember a picture then an alphanumeric passwords.

More restrictive against brute force and dictionary attacks

More effective in preventing password guessing attacks

11 Conclusion There is a growing interest for Graphical passwords since they are

better than Text based passwords, although the main argument for graphical passwords is that people are better at memorizing graphical passwords than text-based passwords

Persuasive Click point method provides greater security than other password methods.

12 References Wikipedia

Google

13

Thank You