User Authentication for Emerging Interfaces Nasir Memon Tandon - - PowerPoint PPT Presentation

user authentication for
SMART_READER_LITE
LIVE PREVIEW

User Authentication for Emerging Interfaces Nasir Memon Tandon - - PowerPoint PPT Presentation

User Authentication for Emerging Interfaces Nasir Memon Tandon School of Engineering New York University Identity Identity and Authentication What is identity? A computers representation of an unique entity (principal). What is


slide-1
SLIDE 1

User Authentication for Emerging Interfaces

Nasir Memon Tandon School of Engineering New York University

slide-2
SLIDE 2

Identity

slide-3
SLIDE 3

Identity and Authentication

  • What is identity?

– A computer’s representation of an unique entity (principal).

  • What is authentication?

– Binding principal to system’s internal representation of identity.

  • Why do we need identity?

– Accountability – Access control

slide-4
SLIDE 4

Authenticating Computers and Humans

slide-5
SLIDE 5
slide-6
SLIDE 6

SOMETHING YOU ARE - Biometrics

slide-7
SLIDE 7

Shoulder surfing or Insiders Usability

slide-8
SLIDE 8

What You Know

slide-9
SLIDE 9

Guessing Passwords

slide-10
SLIDE 10

RAINBOW TABLES ??

slide-11
SLIDE 11

Recent Leaks

slide-12
SLIDE 12

Password policies

slide-13
SLIDE 13

Password are hard to replace

slide-14
SLIDE 14

Why?? Usability

  • Memorywise Effortless
  • Scalable for users
  • Nothing-to-Carry
  • Physically-Effortless
  • Easy-to-Learn
  • Efficient-to-Use
  • Infrequent-Errors
  • Easy-Recovery-from-Loss

14 Bonneau, Herley, Oorschot and Stajano

slide-15
SLIDE 15

Why?? Security

  • Resilient-to-Physical-Observation
  • Resilient-to-Targeted-Impersonation
  • Resilient-to-Throttled-Guessing
  • Resilient-to-Unthrottled-Guessing
  • Resilient-to-Internal-Observation
  • Resilient-to-Leaks-from-Other-Verifiers
  • Resilient-to-Phishing
  • Resilient-to-Theft
  • No-Trusted-Third-Party
  • Requiring-Explicit-Consent
  • Unlinkable

15

slide-16
SLIDE 16

Why?? Deployability

  • Accessible
  • Negligible-Cost-per-User
  • Server compatible
  • Browser compatible
  • Mature

16

slide-17
SLIDE 17

But it is not due to lack of trying …

slide-18
SLIDE 18

Google’s attempt …

slide-19
SLIDE 19

And academics and startups …

slide-20
SLIDE 20

Game Changer? - Emerging Interfaces

slide-21
SLIDE 21

Emerging Interfaces

slide-22
SLIDE 22

Emerging Interfaces

slide-23
SLIDE 23

Emerging Interfaces

slide-24
SLIDE 24

Game Changer - Mobility

slide-25
SLIDE 25

Continuous Authentication

slide-26
SLIDE 26

Different Approaches

slide-27
SLIDE 27

Evaluation - Security

  • Random Guessing
  • False positives
  • Shoulder surfing
  • Insider threat
  • Replay attack
slide-28
SLIDE 28

Evaluation - Usability

  • Memorability
  • True positives
  • Efficiency
  • Satisfaction
  • Universality
slide-29
SLIDE 29

Touch interface

slide-30
SLIDE 30

Android Pattern Lock – Recall Based

slide-31
SLIDE 31

Windows 8 Picture Password

slide-32
SLIDE 32

Single Finger Touch – Online Signatures

slide-33
SLIDE 33
  • What is this about?

9/30/2016 33

Single Finger Touch – Draw-a-PIN

slide-34
SLIDE 34

Touch motion

slide-35
SLIDE 35

Multi-touch gestures

slide-36
SLIDE 36

Camera interface

slide-37
SLIDE 37

Face Recognition

slide-38
SLIDE 38

Authentication with body gestures

Access point Database

𝑍 𝑊 𝑎 Similar?

Slide courtesy of Konrad and Easwar

slide-39
SLIDE 39

Hand Gestures

slide-40
SLIDE 40

SSIP 2009

Eye Gaze

40

slide-41
SLIDE 41

Camera and Private Display

slide-42
SLIDE 42

Motion Sensor

slide-43
SLIDE 43

Motion Sensors

slide-44
SLIDE 44

Leap Motion Gestures

slide-45
SLIDE 45

Leap Motion Sensor

slide-46
SLIDE 46

Waving a device

slide-47
SLIDE 47

Head Banger!

slide-48
SLIDE 48

Electroencephalograph - EEG

  • Brain has continuous

electrical activity that can be recorded

  • Pairs of electrodes

attached to scalp form distinct channels

  • Weak signal ~millivolts is

sent thru amplifier

  • Continuous output

recorded via galvanometer.

slide-49
SLIDE 49

NeuroSky Mindset

slide-50
SLIDE 50

Summary

slide-51
SLIDE 51

Summary

slide-52
SLIDE 52

Summary

slide-53
SLIDE 53

Also - Fingerprint Sensors

slide-54
SLIDE 54

Partial Fingerprints

slide-55
SLIDE 55

Master Prints

slide-56
SLIDE 56

Thank you!!

Questions? memon@nyu.edu