Taplock: Exploit Finger Tap Events For Enhancing Attack Resilience Of Smartphone Passwords

Hongji Yang,Lin Chen,Kaigui Bian,Yang Tian,Fan Ye,Wei Yan,Tong Zhao,Xiaoming Li
DOI: https://doi.org/10.1109/ICC.2015.7249465
2015-01-01
Abstract:In this paper, we present TapLock as a smartphone password system that exploits the finger tap events on capacitive touch screens for increasing the password's resilience to shoulder-surfing attacks (where the password input by a user can be easily observed by a bystander over the user's shoulder). TapLock captures the size and the axis length of the finger touch area on the phone screen for creating a password, which cannot be easily observed by a shoulder surfer. Our user study shows that TapLock has several advantages over existing smartphone password systems, including its strong attack resilience, small authentication delay, and haptic input feedback that improves the usability.
What problem does this paper attempt to address?