SlideShare a Scribd company logo
1 of 23
 Introduction
 Overview of the Authentication Methods
 Text Password and drawbacks.
 Graphical Passwords.
 The Types Of Graphical Survey:
 Recognition Based Techniques
 Recall Based Techniques
 Discussion
 Advantages
 Disadvantages
 Conclusion
INTRODUCTION:
Access to computer systems is most often based on the use of alphanumeric
passwords. However, users have difficulty remembering a password that is
long and random-appearing. Instead, they create short, simple, and insecure
passwords.

Graphical passwords have been designed to try to make passwords more
memorable and easier for people to use and, therefore, more secure.
Using a graphical password, users click on images rather than type
alphanumeric characters.
Until recently computer and network security has been
formulated as a technical problem. A key area in security
research is authentication, the determination of whether a user
should be allowed access to a given system or resource.
Traditionally, alphanumeric passwords have been used for
authentication, but they are known to have security and usability
problems.
Today other methods, including graphical passwords, are
possible alternatives.
What is PASSWORD?

PASSWORD is a secret word or string of characters that is used for user

authentication to prove his identity and gain access to resources.
-> T H E M O S T C O M M O N L Y U S E D F O R M O F U S E R A U T H E N T I C A T I O N .
->THE WEAKEST LINKS OF COMPUTER SECURITY SYSTEMS.
- > T W O C O N F L I C T I N G R E QU I R E M E N T S O F A L P H A N U M E R I C PA S S W O R D S :
(1) EASY TO REMEMBER AND
(2) HARD TO GUESS.
MANY PEOPLE TEND TO IGNORE THE SECOND REQUIREMENT WHICH
L E A D T O W E A K PA S S W O R D S . M A N Y S O L U T I O N S H AV E B E E N P R O P O S E D.
G R A P H I C A L PA S S W O R D I S O N E O F T H E S O L U T I O N S .
PASSWORDS are used for?
 Logging into accounts.
 Retrieving emails.
 Accessing applications.
 Networks.
 Websites
 Databases
 workstations
Token based authentication:
key cards, band cards, smart card.

Biometric based authentication:
Fingerprints, iris scan, facial recognition.

Knowledge based authentication:
text-based passwords, picture-based passwords
most widely used authentication techniques.
GRAPHICAL PASSWORDS

is an authentication system that works by having the user select from
images, in a specific order, presented in a graphical user interface
(GUI). For this reason, the graphical-password approach is
sometimes called graphical user authentication (GUA).
•



Graphical passwords were originally described by BLONDER in
1996.
It can be used in:
– web log-in application
– ATM machines
– mobile devices
An example of a graphical password uses an image on the screen
and lets the user choose a few click points;

these click points are the "password",
and the user has to click closely to these points again in order to
log in.
Two Categories Of Graphical Passwords:
Recall Based Techniques:

A user is asked to reproduce something that he created or selected
earlier during the registration stage
Recognition Based Techniques:
A user is presented with a set of images and the user passes the
authentication by recognizing and identifying the images he selected
during the registration stage.
Recall Based Techniques:
“PassPoint” Scheme:

User click on any place on an image to
create a password. A tolerance around
each chosen pixel is calculated. In order to
be authenticated, user must click within the
tolerances in correct sequence.
Password Space: N^K
( N -the number of pixels or smallest
units of a picture, K - the number of
Point to be clicked on ).
Recognition Based Techniques
Sobrado and Birget Scheme
System display a number of pass-objects
(pre selected by user) among many other
objects,user click inside the convex hull
bounded by pass-objects.
– authors suggested using 1000 objects,
which makes the display very crowed
and the objects almost indistinguishable.
password space: N!/K! (N-K)!
( N-total number of picture objects
K-number of pre-registered objects)
 Other Schemes

Pass faces..



Using human faces as password.
Difficult to attack.

Select a sequence of
images as password
COMPARISION BETWEEN ALPHANUMERIC & GRAPHICAL PASSWORDS:
Commonly used guidelines for alpha-numeric passwords are:
 The password should be at least 8 characters long.
 The password should not be easy to relate to the user (e.g., last name,
birth date).
 Ideally, the user should combine upper and lower case letters and
digits.
Graphical passwords
 The password consists of some actions that the user performs on an
image.
 Such passwords are easier to remember & hard to guess.
GRAPHICAL PASSWORDS WHAT A CONCEPT!
 Here you pick several icons to represent
the password.
 Then when you want to authenticate it,
a screen is drawn as a challenge to which
you must respond.
 The screen has numerous icons, at some
of which are your private password icons.
 You must locate your icons visually on
the screen and click on the screen to the
password.
A SIMPLE GRAPHICAL
PA S S W O R D S C H E M E
The user choose these regions when
he or she created the
password . The choice for the
four regions is arbitrary, but the user
will pick places that he or she finds
easy to remember. The user can
introduce his/her own pictures for
creating graphical passwords. Also, for
stronger security, more than four click
points could be chosen.
A D VA N TA G E S O F G R A P H I C A L
PA S S W O R D S
 Graphical password schemes provide a way of making more
human-friendly passwords .
 Here the security of the system is very high.
 Here we use a series of selectable images on successive
screen pages.
 Dictionary attacks are infeasible.
DRAWBACKS
 Password registration and log-in process take too long.
 Require much more storage space than text based
passwords.
 Shoulder Surfing: It means watching over people's
shoulders as they process information. Examples include
observing the keyboard as a person types his or her password,
enters a PIN number, or views personal information.Because
of their graphic nature, nearly all graphical password schemes
are quite vulnerable to shoulder surfing.
S O L U T I O N TO S H O U L D E R S U R F I N G
PROBLEM
(1) TRIANGLE SCHEME
(2)

MOVABLE FRAME SCHEME
CONCLUSION
 Graphical passwords are an alternative to textual alphanumeric password.
 It satisfies both conflicting requirements i.e. it is easy to remember & it is
hard to guess.
 By the solution of the shoulder surfing problem, it becomes more secure &
easier password scheme.
By implementing other special geometric configurations like triangle &
movable frame, one can achieve more security.
 It is more difficult to break graphical passwords using the
traditional attack methods such as :
burte force search, dictionary attack or spyware.

Not yet widely used, current graphical password techniques
are still immature.
Graphical Password Authentication

More Related Content

What's hot

A graphical password authentication system (ieee 2011) 1
A graphical password authentication system (ieee 2011) 1A graphical password authentication system (ieee 2011) 1
A graphical password authentication system (ieee 2011) 1
Shaibi Varkey
 
Graphical password authentication
Graphical password authenticationGraphical password authentication
Graphical password authentication
Asim Kumar Pathak
 
Graphical password authentication system with association of sound
Graphical password authentication system with association of soundGraphical password authentication system with association of sound
Graphical password authentication system with association of sound
Vikram Verma
 
Graphical Password Authenticationimp.docx2
Graphical Password Authenticationimp.docx2Graphical Password Authenticationimp.docx2
Graphical Password Authenticationimp.docx2
Raghu Vamsy Sirasala
 
Face recognition ppt
Face recognition pptFace recognition ppt
Face recognition ppt
Santosh Kumar
 

What's hot (20)

Graphical password authentication
Graphical password authenticationGraphical password authentication
Graphical password authentication
 
Graphical password authentication
Graphical password authenticationGraphical password authentication
Graphical password authentication
 
Graphical password minor report
Graphical password minor reportGraphical password minor report
Graphical password minor report
 
Graphical Password Authentication
Graphical Password AuthenticationGraphical Password Authentication
Graphical Password Authentication
 
A graphical password authentication system (ieee 2011) 1
A graphical password authentication system (ieee 2011) 1A graphical password authentication system (ieee 2011) 1
A graphical password authentication system (ieee 2011) 1
 
Graphical password authentication
Graphical password authenticationGraphical password authentication
Graphical password authentication
 
Graphical password authentication system with association of sound
Graphical password authentication system with association of soundGraphical password authentication system with association of sound
Graphical password authentication system with association of sound
 
3d password ppt
3d password ppt3d password ppt
3d password ppt
 
Graphical password
Graphical passwordGraphical password
Graphical password
 
3D-Password: A More Secure Authentication
3D-Password: A More Secure Authentication3D-Password: A More Secure Authentication
3D-Password: A More Secure Authentication
 
Graphical Password Authenticationimp.docx2
Graphical Password Authenticationimp.docx2Graphical Password Authenticationimp.docx2
Graphical Password Authenticationimp.docx2
 
3D Password Presentation
3D  Password Presentation3D  Password Presentation
3D Password Presentation
 
SEMINAR REPORT ON 3D PASSWORD
SEMINAR REPORT ON 3D PASSWORDSEMINAR REPORT ON 3D PASSWORD
SEMINAR REPORT ON 3D PASSWORD
 
3D Password PPT
3D Password PPT3D Password PPT
3D Password PPT
 
3D Password and its importance
3D Password and its importance3D Password and its importance
3D Password and its importance
 
Biometric Security Systems ppt
Biometric Security Systems pptBiometric Security Systems ppt
Biometric Security Systems ppt
 
Graphical Password Authentication ppt.pptx
Graphical Password Authentication ppt.pptxGraphical Password Authentication ppt.pptx
Graphical Password Authentication ppt.pptx
 
Face recognition ppt
Face recognition pptFace recognition ppt
Face recognition ppt
 
3D PASSWORD SEMINAR
3D PASSWORD SEMINAR3D PASSWORD SEMINAR
3D PASSWORD SEMINAR
 
User Authentication: Passwords and Beyond
User Authentication: Passwords and BeyondUser Authentication: Passwords and Beyond
User Authentication: Passwords and Beyond
 

Viewers also liked

Authentication scheme for session password using Images and color
Authentication scheme for session password using Images and colorAuthentication scheme for session password using Images and color
Authentication scheme for session password using Images and color
Nitesh Kumar
 
Shoulder surfing resistant graphical and image based login system
Shoulder surfing resistant graphical and image based login systemShoulder surfing resistant graphical and image based login system
Shoulder surfing resistant graphical and image based login system
Akshay Surve
 
Digital signature Brief Introduction
Digital signature Brief IntroductionDigital signature Brief Introduction
Digital signature Brief Introduction
Ganesh Kothe
 

Viewers also liked (16)

Ppt for graphical password authentication using cued click points
Ppt for graphical password authentication using cued click pointsPpt for graphical password authentication using cued click points
Ppt for graphical password authentication using cued click points
 
Authentication scheme for session password using Images and color
Authentication scheme for session password using Images and colorAuthentication scheme for session password using Images and color
Authentication scheme for session password using Images and color
 
Authentication Scheme for Session Password using matrix Colour and Text
Authentication Scheme for Session Password using matrix Colour and Text Authentication Scheme for Session Password using matrix Colour and Text
Authentication Scheme for Session Password using matrix Colour and Text
 
Graphical password ppt
Graphical password pptGraphical password ppt
Graphical password ppt
 
Graphical password authentication system ppts
Graphical password authentication system pptsGraphical password authentication system ppts
Graphical password authentication system ppts
 
Slideshare ppt
Slideshare pptSlideshare ppt
Slideshare ppt
 
Graphical password
Graphical passwordGraphical password
Graphical password
 
Shoulder surfing resistant graphical and image based login system
Shoulder surfing resistant graphical and image based login systemShoulder surfing resistant graphical and image based login system
Shoulder surfing resistant graphical and image based login system
 
Pptforpicturepasswordauthentication 130125073736-phpapp02
Pptforpicturepasswordauthentication 130125073736-phpapp02Pptforpicturepasswordauthentication 130125073736-phpapp02
Pptforpicturepasswordauthentication 130125073736-phpapp02
 
558 120127064951-phpapp01
558 120127064951-phpapp01558 120127064951-phpapp01
558 120127064951-phpapp01
 
Vshantaram
VshantaramVshantaram
Vshantaram
 
Psdot 2 design and implementation of persuasive cued click-points and evalua...
Psdot 2 design and implementation of persuasive cued  click-points and evalua...Psdot 2 design and implementation of persuasive cued  click-points and evalua...
Psdot 2 design and implementation of persuasive cued click-points and evalua...
 
Ieeepro techno solutions ieee 2014 embedded project talking assistance ab...
Ieeepro techno solutions    ieee  2014 embedded project talking assistance ab...Ieeepro techno solutions    ieee  2014 embedded project talking assistance ab...
Ieeepro techno solutions ieee 2014 embedded project talking assistance ab...
 
Wise real estate planning
Wise real estate planningWise real estate planning
Wise real estate planning
 
3D Password
3D Password3D Password
3D Password
 
Digital signature Brief Introduction
Digital signature Brief IntroductionDigital signature Brief Introduction
Digital signature Brief Introduction
 

Similar to Graphical Password Authentication

graphicalpswrdauth-130518230955-phpapp02.pptx
graphicalpswrdauth-130518230955-phpapp02.pptxgraphicalpswrdauth-130518230955-phpapp02.pptx
graphicalpswrdauth-130518230955-phpapp02.pptx
Geetha982072
 
Volume 1 number-2pp-216-222
Volume 1 number-2pp-216-222Volume 1 number-2pp-216-222
Volume 1 number-2pp-216-222
Kailas Patil
 
Engineering Project of Venkata Krishna
Engineering Project of Venkata KrishnaEngineering Project of Venkata Krishna
Engineering Project of Venkata Krishna
banda5630
 
Graphicalpasswordauthentication 130907104619-
Graphicalpasswordauthentication 130907104619-Graphicalpasswordauthentication 130907104619-
Graphicalpasswordauthentication 130907104619-
Snehal Wankhede
 
2 round hybrid password scheme
2 round hybrid password scheme2 round hybrid password scheme
2 round hybrid password scheme
IAEME Publication
 

Similar to Graphical Password Authentication (20)

graphicalpswrdauth-130518230955-phpapp02.pptx
graphicalpswrdauth-130518230955-phpapp02.pptxgraphicalpswrdauth-130518230955-phpapp02.pptx
graphicalpswrdauth-130518230955-phpapp02.pptx
 
graphicalpswrdauth-130518230955-phpapp02.pdf
graphicalpswrdauth-130518230955-phpapp02.pdfgraphicalpswrdauth-130518230955-phpapp02.pdf
graphicalpswrdauth-130518230955-phpapp02.pdf
 
CARP: AN IMAGE BASED SECURITY USING I-PAS
CARP: AN IMAGE BASED SECURITY USING I-PASCARP: AN IMAGE BASED SECURITY USING I-PAS
CARP: AN IMAGE BASED SECURITY USING I-PAS
 
Graphical Based Password for Android Phones using Keystroke Dynamics - A Survey
Graphical Based Password for Android Phones using Keystroke Dynamics - A SurveyGraphical Based Password for Android Phones using Keystroke Dynamics - A Survey
Graphical Based Password for Android Phones using Keystroke Dynamics - A Survey
 
Graphical Based Password for Android Phones using Keystroke Dynamics - A Survey
Graphical Based Password for Android Phones using Keystroke Dynamics - A SurveyGraphical Based Password for Android Phones using Keystroke Dynamics - A Survey
Graphical Based Password for Android Phones using Keystroke Dynamics - A Survey
 
Nilesh
Nilesh Nilesh
Nilesh
 
Volume 1 number-2pp-216-222
Volume 1 number-2pp-216-222Volume 1 number-2pp-216-222
Volume 1 number-2pp-216-222
 
Engineering Project of Venkata Krishna
Engineering Project of Venkata KrishnaEngineering Project of Venkata Krishna
Engineering Project of Venkata Krishna
 
Implementation of Knowledge Based Authentication System Using Persuasive Cued...
Implementation of Knowledge Based Authentication System Using Persuasive Cued...Implementation of Knowledge Based Authentication System Using Persuasive Cued...
Implementation of Knowledge Based Authentication System Using Persuasive Cued...
 
Graphical authentication system.pptx
Graphical authentication system.pptxGraphical authentication system.pptx
Graphical authentication system.pptx
 
A presentation on graphical passwords
A presentation on graphical passwordsA presentation on graphical passwords
A presentation on graphical passwords
 
Ijsrdv8 i10355
Ijsrdv8 i10355Ijsrdv8 i10355
Ijsrdv8 i10355
 
3 d password
3 d password3 d password
3 d password
 
Persuasive Cued Click Point Password with OTP
Persuasive Cued Click Point Password with OTPPersuasive Cued Click Point Password with OTP
Persuasive Cued Click Point Password with OTP
 
IRJET- A Noval and Efficient Revolving Flywheel Pin Entry Method Resilient to...
IRJET- A Noval and Efficient Revolving Flywheel Pin Entry Method Resilient to...IRJET- A Noval and Efficient Revolving Flywheel Pin Entry Method Resilient to...
IRJET- A Noval and Efficient Revolving Flywheel Pin Entry Method Resilient to...
 
3d password - Report
3d password - Report  3d password - Report
3d password - Report
 
Jc2516111615
Jc2516111615Jc2516111615
Jc2516111615
 
Jc2516111615
Jc2516111615Jc2516111615
Jc2516111615
 
Graphicalpasswordauthentication 130907104619-
Graphicalpasswordauthentication 130907104619-Graphicalpasswordauthentication 130907104619-
Graphicalpasswordauthentication 130907104619-
 
2 round hybrid password scheme
2 round hybrid password scheme2 round hybrid password scheme
2 round hybrid password scheme
 

Recently uploaded

Recently uploaded (20)

Strategize a Smooth Tenant-to-tenant Migration and Copilot Takeoff
Strategize a Smooth Tenant-to-tenant Migration and Copilot TakeoffStrategize a Smooth Tenant-to-tenant Migration and Copilot Takeoff
Strategize a Smooth Tenant-to-tenant Migration and Copilot Takeoff
 
Tata AIG General Insurance Company - Insurer Innovation Award 2024
Tata AIG General Insurance Company - Insurer Innovation Award 2024Tata AIG General Insurance Company - Insurer Innovation Award 2024
Tata AIG General Insurance Company - Insurer Innovation Award 2024
 
Apidays Singapore 2024 - Building Digital Trust in a Digital Economy by Veron...
Apidays Singapore 2024 - Building Digital Trust in a Digital Economy by Veron...Apidays Singapore 2024 - Building Digital Trust in a Digital Economy by Veron...
Apidays Singapore 2024 - Building Digital Trust in a Digital Economy by Veron...
 
presentation ICT roal in 21st century education
presentation ICT roal in 21st century educationpresentation ICT roal in 21st century education
presentation ICT roal in 21st century education
 
TrustArc Webinar - Stay Ahead of US State Data Privacy Law Developments
TrustArc Webinar - Stay Ahead of US State Data Privacy Law DevelopmentsTrustArc Webinar - Stay Ahead of US State Data Privacy Law Developments
TrustArc Webinar - Stay Ahead of US State Data Privacy Law Developments
 
Scaling API-first – The story of a global engineering organization
Scaling API-first – The story of a global engineering organizationScaling API-first – The story of a global engineering organization
Scaling API-first – The story of a global engineering organization
 
2024: Domino Containers - The Next Step. News from the Domino Container commu...
2024: Domino Containers - The Next Step. News from the Domino Container commu...2024: Domino Containers - The Next Step. News from the Domino Container commu...
2024: Domino Containers - The Next Step. News from the Domino Container commu...
 
How to Troubleshoot Apps for the Modern Connected Worker
How to Troubleshoot Apps for the Modern Connected WorkerHow to Troubleshoot Apps for the Modern Connected Worker
How to Troubleshoot Apps for the Modern Connected Worker
 
Boost Fertility New Invention Ups Success Rates.pdf
Boost Fertility New Invention Ups Success Rates.pdfBoost Fertility New Invention Ups Success Rates.pdf
Boost Fertility New Invention Ups Success Rates.pdf
 
Apidays New York 2024 - The Good, the Bad and the Governed by David O'Neill, ...
Apidays New York 2024 - The Good, the Bad and the Governed by David O'Neill, ...Apidays New York 2024 - The Good, the Bad and the Governed by David O'Neill, ...
Apidays New York 2024 - The Good, the Bad and the Governed by David O'Neill, ...
 
Workshop - Best of Both Worlds_ Combine KG and Vector search for enhanced R...
Workshop - Best of Both Worlds_ Combine  KG and Vector search for  enhanced R...Workshop - Best of Both Worlds_ Combine  KG and Vector search for  enhanced R...
Workshop - Best of Both Worlds_ Combine KG and Vector search for enhanced R...
 
Boost PC performance: How more available memory can improve productivity
Boost PC performance: How more available memory can improve productivityBoost PC performance: How more available memory can improve productivity
Boost PC performance: How more available memory can improve productivity
 
Strategies for Unlocking Knowledge Management in Microsoft 365 in the Copilot...
Strategies for Unlocking Knowledge Management in Microsoft 365 in the Copilot...Strategies for Unlocking Knowledge Management in Microsoft 365 in the Copilot...
Strategies for Unlocking Knowledge Management in Microsoft 365 in the Copilot...
 
Repurposing LNG terminals for Hydrogen Ammonia: Feasibility and Cost Saving
Repurposing LNG terminals for Hydrogen Ammonia: Feasibility and Cost SavingRepurposing LNG terminals for Hydrogen Ammonia: Feasibility and Cost Saving
Repurposing LNG terminals for Hydrogen Ammonia: Feasibility and Cost Saving
 
Top 10 Most Downloaded Games on Play Store in 2024
Top 10 Most Downloaded Games on Play Store in 2024Top 10 Most Downloaded Games on Play Store in 2024
Top 10 Most Downloaded Games on Play Store in 2024
 
HTML Injection Attacks: Impact and Mitigation Strategies
HTML Injection Attacks: Impact and Mitigation StrategiesHTML Injection Attacks: Impact and Mitigation Strategies
HTML Injection Attacks: Impact and Mitigation Strategies
 
Mastering MySQL Database Architecture: Deep Dive into MySQL Shell and MySQL R...
Mastering MySQL Database Architecture: Deep Dive into MySQL Shell and MySQL R...Mastering MySQL Database Architecture: Deep Dive into MySQL Shell and MySQL R...
Mastering MySQL Database Architecture: Deep Dive into MySQL Shell and MySQL R...
 
A Domino Admins Adventures (Engage 2024)
A Domino Admins Adventures (Engage 2024)A Domino Admins Adventures (Engage 2024)
A Domino Admins Adventures (Engage 2024)
 
Understanding Discord NSFW Servers A Guide for Responsible Users.pdf
Understanding Discord NSFW Servers A Guide for Responsible Users.pdfUnderstanding Discord NSFW Servers A Guide for Responsible Users.pdf
Understanding Discord NSFW Servers A Guide for Responsible Users.pdf
 
A Year of the Servo Reboot: Where Are We Now?
A Year of the Servo Reboot: Where Are We Now?A Year of the Servo Reboot: Where Are We Now?
A Year of the Servo Reboot: Where Are We Now?
 

Graphical Password Authentication

  • 1.
  • 2.  Introduction  Overview of the Authentication Methods  Text Password and drawbacks.  Graphical Passwords.  The Types Of Graphical Survey:  Recognition Based Techniques  Recall Based Techniques  Discussion  Advantages  Disadvantages  Conclusion
  • 3. INTRODUCTION: Access to computer systems is most often based on the use of alphanumeric passwords. However, users have difficulty remembering a password that is long and random-appearing. Instead, they create short, simple, and insecure passwords. Graphical passwords have been designed to try to make passwords more memorable and easier for people to use and, therefore, more secure. Using a graphical password, users click on images rather than type alphanumeric characters.
  • 4. Until recently computer and network security has been formulated as a technical problem. A key area in security research is authentication, the determination of whether a user should be allowed access to a given system or resource. Traditionally, alphanumeric passwords have been used for authentication, but they are known to have security and usability problems. Today other methods, including graphical passwords, are possible alternatives.
  • 5. What is PASSWORD? PASSWORD is a secret word or string of characters that is used for user authentication to prove his identity and gain access to resources. -> T H E M O S T C O M M O N L Y U S E D F O R M O F U S E R A U T H E N T I C A T I O N . ->THE WEAKEST LINKS OF COMPUTER SECURITY SYSTEMS. - > T W O C O N F L I C T I N G R E QU I R E M E N T S O F A L P H A N U M E R I C PA S S W O R D S : (1) EASY TO REMEMBER AND (2) HARD TO GUESS. MANY PEOPLE TEND TO IGNORE THE SECOND REQUIREMENT WHICH L E A D T O W E A K PA S S W O R D S . M A N Y S O L U T I O N S H AV E B E E N P R O P O S E D. G R A P H I C A L PA S S W O R D I S O N E O F T H E S O L U T I O N S .
  • 6. PASSWORDS are used for?  Logging into accounts.  Retrieving emails.  Accessing applications.  Networks.  Websites  Databases  workstations
  • 7. Token based authentication: key cards, band cards, smart card. Biometric based authentication: Fingerprints, iris scan, facial recognition. Knowledge based authentication: text-based passwords, picture-based passwords most widely used authentication techniques.
  • 8. GRAPHICAL PASSWORDS  is an authentication system that works by having the user select from images, in a specific order, presented in a graphical user interface (GUI). For this reason, the graphical-password approach is sometimes called graphical user authentication (GUA). •  Graphical passwords were originally described by BLONDER in 1996. It can be used in: – web log-in application – ATM machines – mobile devices
  • 9. An example of a graphical password uses an image on the screen and lets the user choose a few click points; these click points are the "password", and the user has to click closely to these points again in order to log in.
  • 10. Two Categories Of Graphical Passwords: Recall Based Techniques: A user is asked to reproduce something that he created or selected earlier during the registration stage Recognition Based Techniques: A user is presented with a set of images and the user passes the authentication by recognizing and identifying the images he selected during the registration stage.
  • 11. Recall Based Techniques: “PassPoint” Scheme: User click on any place on an image to create a password. A tolerance around each chosen pixel is calculated. In order to be authenticated, user must click within the tolerances in correct sequence. Password Space: N^K ( N -the number of pixels or smallest units of a picture, K - the number of Point to be clicked on ).
  • 12. Recognition Based Techniques Sobrado and Birget Scheme System display a number of pass-objects (pre selected by user) among many other objects,user click inside the convex hull bounded by pass-objects. – authors suggested using 1000 objects, which makes the display very crowed and the objects almost indistinguishable. password space: N!/K! (N-K)! ( N-total number of picture objects K-number of pre-registered objects)
  • 13.  Other Schemes Pass faces..   Using human faces as password. Difficult to attack. Select a sequence of images as password
  • 14. COMPARISION BETWEEN ALPHANUMERIC & GRAPHICAL PASSWORDS: Commonly used guidelines for alpha-numeric passwords are:  The password should be at least 8 characters long.  The password should not be easy to relate to the user (e.g., last name, birth date).  Ideally, the user should combine upper and lower case letters and digits. Graphical passwords  The password consists of some actions that the user performs on an image.  Such passwords are easier to remember & hard to guess.
  • 15. GRAPHICAL PASSWORDS WHAT A CONCEPT!  Here you pick several icons to represent the password.  Then when you want to authenticate it, a screen is drawn as a challenge to which you must respond.  The screen has numerous icons, at some of which are your private password icons.  You must locate your icons visually on the screen and click on the screen to the password.
  • 16. A SIMPLE GRAPHICAL PA S S W O R D S C H E M E The user choose these regions when he or she created the password . The choice for the four regions is arbitrary, but the user will pick places that he or she finds easy to remember. The user can introduce his/her own pictures for creating graphical passwords. Also, for stronger security, more than four click points could be chosen.
  • 17. A D VA N TA G E S O F G R A P H I C A L PA S S W O R D S  Graphical password schemes provide a way of making more human-friendly passwords .  Here the security of the system is very high.  Here we use a series of selectable images on successive screen pages.  Dictionary attacks are infeasible.
  • 18. DRAWBACKS  Password registration and log-in process take too long.  Require much more storage space than text based passwords.  Shoulder Surfing: It means watching over people's shoulders as they process information. Examples include observing the keyboard as a person types his or her password, enters a PIN number, or views personal information.Because of their graphic nature, nearly all graphical password schemes are quite vulnerable to shoulder surfing.
  • 19. S O L U T I O N TO S H O U L D E R S U R F I N G PROBLEM (1) TRIANGLE SCHEME
  • 21. CONCLUSION  Graphical passwords are an alternative to textual alphanumeric password.  It satisfies both conflicting requirements i.e. it is easy to remember & it is hard to guess.  By the solution of the shoulder surfing problem, it becomes more secure & easier password scheme. By implementing other special geometric configurations like triangle & movable frame, one can achieve more security.
  • 22.  It is more difficult to break graphical passwords using the traditional attack methods such as : burte force search, dictionary attack or spyware. Not yet widely used, current graphical password techniques are still immature.