Monday, January 25, 2010

UIST2009: TapSongs: Tapping Rythm-Based Passwords On A Single Binary Sensor

Author: Jacob O. Wobbrock

Summary:
    The author starts out by pointing out that many devices are coming out that have just one binary sensory input.  To access a device like this a user could have to tap in their password to some preselected rhythm.  Of course a user wouldn't be able to enter at the exact same each attempt so some room for error would have to be allowed.  When the authors performed a study users had to enter in the rhythmic password 12 times to make sure their timing was consistent.  When trying to log in after training users messed up just over 80% of the time.  The authors did not say how strong these passwords would be.

Discussion:
    This paper is interesting because more and more electronic devices are coming out that could implement this idea.  The first concern that comes to my mind is how well can people remember these types of passwords over a long time.  What if the user hasn't logged in for a week, a month, or even a year.  Another concern is that the author failed to test security issues with these types of passwords.  I would try and test both of these things if possible because they could cause major problems if someone were to implement this idea.

No comments:

Post a Comment