Shopping? Check out our latest product comparisons

Finger-drawn lines could replace PINs on mobile devices

By

June 5, 2014

A squiggly line like this may be more secure than your PIN

A squiggly line like this may be more secure than your PIN

Many of us now use our mobile devices for things like online banking, in crowded public places ... the sort of places where it would be easy for sometime to sneak a peek as we enter our passcodes. Researchers from New Jersey's Rutgers University, however, are working on a possible alternative to those typed codes. They've discovered that passwords consisting of hand gestures used to draw free-form lines on a smartphone or tablet screen are much more difficult for "shoulder surfers" to copy after seeing.

With a traditional PIN password, thieves can steal it simply by observing which numerical keys are pressed in what order. Additionally, people in general are notorious for creating very easily-guessed passwords. Even with newer 9-dot systems in which users "connect the dots" within a grid pattern, it's still just a matter of observing what dots are connected.

User-specific abstract line gestures, though, apparently aren't so easily replicated. This is partly because they don't rely on familiar numerals or grid points, that are easier to recognize and memorize.

They also allow for a greater number of variables that have to be successfully copied. These could include not only the shape and size of the lines, but also their location on the screen, the velocity and pressure at which they're drawn, and the number of fingers applied to the screen at once (in the case of multiple lines drawn simultaneously).

In a study that Rutgers carried out in collaboration with the Max-Planck Institute for Informatics and the University of Helsinki, 63 volunteers were required to come up with their own free-form line gesture passwords, that they had to successfully recall both immediately and 10 days later. When a group of seven shoulder surfers tried to replicate those gestures after spying on the volunteers, they were unable to do so with enough accuracy for a computer to consider it a match.

Although there are still some logistical challenges to be met (such as how someone would write such a password on paper to remind themselves, should they forget it), Rutgers states that the system appears to be "extremely powerful against attacks."

Source: Rutgers School of Engineering

About the Author
Ben Coxworth An experienced freelance writer, videographer and television producer, Ben's interest in all forms of innovation is particularly fanatical when it comes to human-powered transportation, film-making gear, environmentally-friendly technologies and anything that's designed to go underwater. He lives in Edmonton, Alberta, where he spends a lot of time going over the handlebars of his mountain bike, hanging out in off-leash parks, and wishing the Pacific Ocean wasn't so far away.   All articles by Ben Coxworth
5 Comments

Or maybe you could just copy Apple and put fingerprint ID into the device.

Tom Swift
6th June, 2014 @ 08:18 am PDT

What is the difference from a signature, which you can see, and can that will vary greatly?

Try to retrace the pattern to what degree of accuracy?

Too generous, and anyone can trace follow the screen smudges, or maybe thermal scan to see your pattern.

63 volunteers were required to come up with their own free-form line gesture passwords, that they had to successfully recall both immediately and 10 days later. DID THEY?

Bob Flint
6th June, 2014 @ 09:27 am PDT

I get the idea but how does one safely write down the password, like we all do, in case one forgets it, like we all do sooner or later?

StWils
6th June, 2014 @ 09:30 am PDT

Hope they're not filing patents ... saw this technology demonstrated back in 1979 or 1980 by a vendor hoping to sell it to Hewlett-Packard. It was impressive, but...HP management wasn't interested in security then.

sieler
6th June, 2014 @ 10:29 am PDT

Just glance over your shoulder and if anybody appears to be watching brain them with a crow bar.

Slowburn
6th June, 2014 @ 08:43 pm PDT
Post a Comment

Login with your gizmag account:

Or Login with Facebook:


Related Articles
Looking for something? Search our 28,292 articles