Commitment-based device-pairing protocol with synchronized drawings and comparison metrics

Tutkimustuotos: Lehtiartikkeli

Tutkijat

Organisaatiot

Kuvaus

This article presents a new method for pairing devices securely. The commitment-based authentication uses a fuzzy secret that the devices only know approximately. Its novel feature is time-based opening of commitments in a single round. We also introduce a new source for the fuzzy secret: synchronized drawing with two fingers of the same hand on two touch screens or surfaces. The drawings are encoded as strings and compared with an edit-distance metric. A prototype implementation of this surprisingly simple and natural pairing mechanism shows that it accurately differentiates between true positives and man-in-the-middle attackers.

Yksityiskohdat

AlkuperäiskieliEnglanti
Sivut205-219
JulkaisuPervasive and Mobile Computing
Vuosikerta16
NumeroPart B
TilaJulkaistu - 2015
OKM-julkaisutyyppiA1 Julkaistu artikkeli, soviteltu

Lataa tilasto

Ei tietoja saatavilla

ID: 1996750