{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2025,3,26]],"date-time":"2025-03-26T03:00:37Z","timestamp":1742958037089,"version":"3.40.3"},"publisher-location":"Cham","reference-count":43,"publisher":"Springer Nature Switzerland","isbn-type":[{"type":"print","value":"9783031293702"},{"type":"electronic","value":"9783031293719"}],"license":[{"start":{"date-parts":[[2023,1,1]],"date-time":"2023-01-01T00:00:00Z","timestamp":1672531200000},"content-version":"tdm","delay-in-days":0,"URL":"https:\/\/www.springernature.com\/gp\/researchers\/text-and-data-mining"},{"start":{"date-parts":[[2023,1,1]],"date-time":"2023-01-01T00:00:00Z","timestamp":1672531200000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/www.springernature.com\/gp\/researchers\/text-and-data-mining"}],"content-domain":{"domain":["link.springer.com"],"crossmark-restriction":false},"short-container-title":[],"published-print":{"date-parts":[[2023]]},"DOI":"10.1007\/978-3-031-29371-9_5","type":"book-chapter","created":{"date-parts":[[2023,3,30]],"date-time":"2023-03-30T13:24:05Z","timestamp":1680182645000},"page":"81-99","update-policy":"https:\/\/doi.org\/10.1007\/springer_crossmark_policy","source":"Crossref","is-referenced-by-count":1,"title":["Towards Constructing Consistent Pattern Strength Meters with\u00a0User\u2019s Visual Perception"],"prefix":"10.1007","author":[{"ORCID":"https:\/\/orcid.org\/0000-0002-3100-2258","authenticated-orcid":false,"given":"Leo Hyun","family":"Park","sequence":"first","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-8133-3864","authenticated-orcid":false,"given":"Eunbi","family":"Hwang","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Donggun","family":"Lee","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-5513-0836","authenticated-orcid":false,"given":"Taekyoung","family":"Kwon","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"297","published-online":{"date-parts":[[2023,3,31]]},"reference":[{"key":"5_CR1","doi-asserted-by":"publisher","unstructured":"Abdelrahman, Y., Khamis, M., Schneegass, S., Alt, F.: Stay Cool! Understanding thermal attacks on mobile-based user authentication. In: Conference on Human Factors in Computing Systems, pp. 3751\u20133763. CHI 2017, ACM, USA (2017). https:\/\/doi.org\/10.1145\/3025453.3025461. http:\/\/doi.acm.org\/10.1145\/3025453.3025461","DOI":"10.1145\/3025453.3025461"},{"key":"5_CR2","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"publisher","first-page":"115","DOI":"10.1007\/978-3-319-07620-1_11","volume-title":"Human Aspects of Information Security, Privacy, and Trust","author":"P Andriotis","year":"2014","unstructured":"Andriotis, P., Tryfonas, T., Oikonomou, G.: Complexity metrics and user strength perceptions of the pattern-lock graphical authentication method. In: Tryfonas, T., Askoxylakis, I. (eds.) HAS 2014. LNCS, vol. 8533, pp. 115\u2013126. Springer, Cham (2014). https:\/\/doi.org\/10.1007\/978-3-319-07620-1_11"},{"key":"5_CR3","doi-asserted-by":"crossref","unstructured":"Aviv, A.J., Budzitowski, D., Kuber, R.: Is Bigger better? comparing user-generated passwords on 3x3 vs. 4x4 grid sizes for android\u2019s pattern unlock. In: Annual Computer Security Applications Conference, pp. 301\u2013310. ACSAC 2015. ACM (2015)","DOI":"10.1145\/2818000.2818014"},{"key":"5_CR4","unstructured":"Aviv, A.J., Gibson, K., Mossop, E., Blaze, M., Smith, J.M.: Smudge attacks on smartphone touch screens. In: Workshop on Offensive Technologies, pp. 1\u20137. WOOT 2010. USENIX (2010)"},{"issue":"4","key":"5_CR5","doi-asserted-by":"publisher","first-page":"19","DOI":"10.1145\/2333112.2333114","volume":"44","author":"R Biddle","year":"2012","unstructured":"Biddle, R., Chiasson, S., Van Oorschot, P.C.: Graphical passwords: learning from the first twelve years. ACM Comput. Surv. (CSUR) 44(4), 19 (2012)","journal-title":"ACM Comput. Surv. (CSUR)"},{"key":"5_CR6","series-title":"Advances in Intelligent Systems and Computing","doi-asserted-by":"publisher","first-page":"33","DOI":"10.1007\/978-3-319-67792-7_4","volume-title":"Man-Machine Interactions 5","author":"A Bier","year":"2018","unstructured":"Bier, A., Kapczy\u0144ski, A., Sroczy\u0144ski, Z.: Pattern lock evaluation framework for mobile devices: human perception of the pattern strength measure. In: Gruca, A., Czach\u00f3rski, T., Harezlak, K., Kozielski, S., Piotrowska, A. (eds.) ICMMI 2017. AISC, vol. 659, pp. 33\u201342. Springer, Cham (2018). https:\/\/doi.org\/10.1007\/978-3-319-67792-7_4"},{"key":"5_CR7","doi-asserted-by":"crossref","unstructured":"Buriro, A., Crispo, B., DelFrari, F., Wrona, K.: Hold and sign: a novel behavioral biometrics for smartphone user authentication. In: the Security and Privacy Workshops, pp. 276\u2013285. SPW 2016. IEEE (2016)","DOI":"10.1109\/SPW.2016.20"},{"key":"5_CR8","doi-asserted-by":"crossref","unstructured":"Burr, W., Dodson, D., Polk, W.: Electronic authentication guideline. Tech. rep, National Institute of Standards and Technology (2004)","DOI":"10.6028\/NIST.SP.800-63v1.0"},{"key":"5_CR9","unstructured":"Castelluccia, C., D\u00fcrmuth, M., Perito, D.: Adaptive password-strength meters from Markov models. In: NDSS (2012)"},{"key":"5_CR10","doi-asserted-by":"crossref","unstructured":"Cha, S., Kwag, S., Kim, H., Huh, J.H.: Boosting the guessing attack performance on android lock patterns with smudge attacks. In: Asia Conference on Computer and Communications Security, pp. 313\u2013326. AsiaCCS 2017. ACM (2017)","DOI":"10.1145\/3052973.3052989"},{"key":"5_CR11","doi-asserted-by":"crossref","unstructured":"Cho, G., Huh, J.H., Cho, J., Oh, S., Song, Y., Kim, H.: SysPal: system-guided pattern locks for android. In: Symposium on Security and Privacy, pp. 338\u2013356. S & P 2017. IEEE (2017)","DOI":"10.1109\/SP.2017.61"},{"key":"5_CR12","unstructured":"Crawford, H., Ahmadzadeh, E.: Authentication on the go: assessing the effect of movement on mobile device keystroke dynamics. In: Symposium on Usable Privacy and Security, pp. 163\u2013173. SOUPS 2017. USENIX (2017)"},{"key":"5_CR13","unstructured":"De Carnavalet, X.D.C., Mannan, M., et al.: From very weak to very strong: analyzing password-strength meters. In: NDSS, vol.14, pp. 23\u201326 (2014)"},{"key":"5_CR14","doi-asserted-by":"crossref","unstructured":"Egelman, S., Sotirakopoulos, A., Muslukhov, I., Beznosov, K., Herley, C.: Does my password go up to eleven?: the impact of password meters on password selection. In: Proceedings of the SIGCHI Conference on Human Factors in Computing Systems, pp. 2379\u20132388. ACM (2013)","DOI":"10.1145\/2470654.2481329"},{"key":"5_CR15","doi-asserted-by":"crossref","unstructured":"Frank, M., Biedert, R., Ma, E., Martinovic, I., Song, D.: Touchalytics: On the Applicability of Touchscreen Input as a Behavioral Biometric for Continuous Authentication. IEEE Trans. Inf. Forensics Secur. 8(1), 136\u2013148 (2013)","DOI":"10.1109\/TIFS.2012.2225048"},{"key":"5_CR16","doi-asserted-by":"crossref","unstructured":"Harbach, M., De Luca, A., Egelman, S.: The anatomy of smartphone unlocking: a field study of android lock screens. In: Proceedings of the 2016 CHI Conference on Human Factors in Computing Systems, pp. 4806\u20134817. ACM (2016)","DOI":"10.1145\/2858036.2858267"},{"issue":"1","key":"5_CR17","doi-asserted-by":"publisher","first-page":"45","DOI":"10.1587\/transinf.2017MUP0012","volume":"101","author":"S Higashikawa","year":"2018","unstructured":"Higashikawa, S., Kosugi, T., Kitajima, S., Mambo, M.: Shoulder-surfing resistant authentication using pass pattern of pattern lock. IEICE Trans. Inf. Syst. 101(1), 45\u201352 (2018)","journal-title":"IEICE Trans. Inf. Syst."},{"key":"5_CR18","unstructured":"Jermyn, I., Mayer, A., Monrose, F., Reiter, M.K., Rubin, A.D.: The design and analysis of graphical passwords. In: 8th Usenix Security Symposium. USENIX (1999)"},{"key":"5_CR19","unstructured":"Komanduri, S., Shay, R., Cranor, L.F., Herley, C., Schechter, S.: Telepathwords: preventing weak passwords by reading users\u2019 minds. In: 23rd $$\\{$$USENIX$$\\}$$ Security Symposium ($$\\{$$USENIX$$\\}$$ Security 14), pp. 591\u2013606 (2014)"},{"key":"5_CR20","doi-asserted-by":"publisher","first-page":"69363","DOI":"10.1109\/ACCESS.2019.2918647","volume":"7","author":"Y Ku","year":"2019","unstructured":"Ku, Y., Park, L.H., Shin, S., Kwon, T.: Draw it as shown: behavioral pattern lock for mobile user authentication. IEEE Access 7, 69363\u201369378 (2019)","journal-title":"IEEE Access"},{"key":"5_CR21","doi-asserted-by":"crossref","unstructured":"Kunda, D., Chishimba, M.: A survey of android mobile phone authentication schemes. Mobile Netw. Appl. 26, 2558\u20132566 (2018)","DOI":"10.1007\/s11036-018-1099-7"},{"key":"5_CR22","unstructured":"Lashkari, A.H., Farmand, S., Zakaria, D., Bin, O., Saleh, D., et al.: shoulder surfing attack in graphical password authentication. arXiv preprint arXiv:0912.0951 (2009)"},{"key":"5_CR23","unstructured":"Li, L., Zhao, X., Xue, G.: Unobservable re-authentication for smartphones. In: Network and Distributed System Security Symposium, NDSS 2013 (2013)"},{"key":"5_CR24","first-page":"2825","volume":"12","author":"F Pedregosa","year":"2011","unstructured":"Pedregosa, F., et al.: Scikit-learn: Machine learning in Python. J. Mach. Learn. Res. 12, 2825\u20132830 (2011)","journal-title":"J. Mach. Learn. Res."},{"key":"5_CR25","doi-asserted-by":"crossref","unstructured":"Rao, V.V., Chakravarthy, A.: Analysis and bypassing of pattern lock in android smartphone. In: 2016 IEEE International Conference on Computational Intelligence and Computing Research (ICCIC), pp. 1\u20133. IEEE (2016)","DOI":"10.1109\/ICCIC.2016.7919555"},{"key":"5_CR26","doi-asserted-by":"crossref","unstructured":"Sitov\u00e1, Z., et al.: HMOG: new behavioral biometric features for continuous authentication of smartphone users. IEEE Trans. Inf. Forensics Secur. 11(5), 877\u2013892 (2016)","DOI":"10.1109\/TIFS.2015.2506542"},{"key":"5_CR27","doi-asserted-by":"crossref","unstructured":"Song, Y., Cho, G., Oh, S., Kim, H., Huh, J.H.: On the effectiveness of pattern lock strength meters: measuring the strength of real world pattern locks. In: Proceedings of the 33rd Annual ACM Conference on Human Factors in Computing Systems, pp. 2343\u20132352. ACM (2015)","DOI":"10.1145\/2702123.2702365"},{"issue":"2","key":"5_CR28","doi-asserted-by":"publisher","first-page":"73","DOI":"10.3758\/BF03337426","volume":"19","author":"L Standing","year":"1970","unstructured":"Standing, L., Conezio, J., Haber, R.N.: Perception and memory for pictures: single-trial learning of 2500 visual stimuli. Psychonomic Sci. 19(2), 73\u201374 (1970)","journal-title":"Psychonomic Sci."},{"issue":"4\u20135","key":"5_CR29","first-page":"308","volume":"19","author":"C Sun","year":"2014","unstructured":"Sun, C., Wang, Y., Zheng, J.: Dissecting pattern unlock: the effect of pattern strength meter on pattern selection. J. Inf. Secur. Appl. 19(4\u20135), 308\u2013320 (2014)","journal-title":"J. Inf. Secur. Appl."},{"issue":"2","key":"5_CR30","first-page":"273","volume":"7","author":"H Tao","year":"2008","unstructured":"Tao, H., Adams, C.: Pass-go: a proposal to improve the usability of graphical passwords. IJ Netw. Secur. 7(2), 273\u2013292 (2008)","journal-title":"IJ Netw. Secur."},{"key":"5_CR31","doi-asserted-by":"crossref","unstructured":"Tari, F., Ozok, A., Holden, S.H.: A Comparison of perceived and real shoulder-surfing risks between alphanumeric and graphical passwords. In: Symposium on Usable Privacy and Security, pp. 56\u201366. SOUPS 2006. ACM (2006)","DOI":"10.1145\/1143120.1143128"},{"key":"5_CR32","doi-asserted-by":"crossref","unstructured":"Uellenbeck, S., D\u00fcrmuth, M., Wolf, C., Holz, T.: Quantifying the security of graphical passwords: the case of android unlock patterns. In: Proceedings of the 2013 ACM SIGSAC Conference on Computer & Communications Security, pp. 161\u2013172. ACM (2013)","DOI":"10.1145\/2508859.2516700"},{"key":"5_CR33","doi-asserted-by":"crossref","unstructured":"Ur, B., et al.: Design and evaluation of a data-driven password meter. In: Proceedings of the 2017 CHI Conference on Human Factors in Computing Systems, pp. 3775\u20133786. ACM (2017)","DOI":"10.1145\/3025453.3026050"},{"key":"5_CR34","unstructured":"Ur, B., et al.: How does your password measure up? the effect of strength meters on password creation. In: Presented as part of the 21st $$\\{$$USENIX$$\\}$$ Security Symposium ($$\\{$$USENIX$$\\}$$ Security 12), pp. 65\u201380 (2012)"},{"key":"5_CR35","unstructured":"Van Bruggen, D.: Studying the impact of security awareness efforts on user behavior, Ph. D. thesis, University of Notre Dame (2014)"},{"key":"5_CR36","doi-asserted-by":"crossref","unstructured":"Von Zezschwitz, E., De Luca, A., Janssen, P., Hussmann, H.: Easy to draw, but hard to trace?: on the observability of grid-based (un) lock patterns. In: Conference on Human Factors in Computing Systems, pp. 2339\u20132342. CHI 2015. ACM (2015)","DOI":"10.1145\/2702123.2702202"},{"key":"5_CR37","doi-asserted-by":"crossref","unstructured":"Von Zezschwitz, E., Dunphy, P., De Luca, A.: Patterns in the wild: a field study of the usability of pattern and pin-based authentication on mobile devices. In: Proceedings of the 15th International Conference on Human-computer Interaction With Mobile Devices and Services, pp. 261\u2013270. ACM (2013)","DOI":"10.1145\/2493190.2493231"},{"key":"5_CR38","doi-asserted-by":"crossref","unstructured":"Von Zezschwitz, E., Koslow, A., De Luca, A., Hussmann, H.: Making Graphic-based Authentication Secure against Smudge Attacks. In: Proceedings International Conference on Intelligent User Interfaces, pp. 277\u2013286. IUI 2013. ACM (2013)","DOI":"10.1145\/2449396.2449432"},{"key":"5_CR39","unstructured":"Wheeler, D.L.: zxcvbn: Low-budget password strength estimation. In: 25th $$\\{$$USENIX$$\\}$$ Security Symposium ($$\\{$$USENIX$$\\}$$ Security 16), pp. 157\u2013173 (2016)"},{"key":"5_CR40","unstructured":"Xu, H., Zhou, Y., Lyu, M.R.: Towards continuous and passive authentication via touch biometrics: an experimental study on smartphones. In: Symposium on Usable Privacy and Security. SOUPS 2014, vol. 14, pp. 187\u2013198 (2014)"},{"key":"5_CR41","doi-asserted-by":"crossref","unstructured":"Ye, G., et al.: Cracking android pattern lock in five attempts. In: Network and Distributed System Security Symposium, NDSS 2017 (2017)","DOI":"10.14722\/ndss.2017.23130"},{"issue":"4","key":"5_CR42","first-page":"19","volume":"21","author":"G Ye","year":"2018","unstructured":"Ye, G., et al.: A video-based attack for android pattern lock. ACM Trans. Privacy Secur. (TOPS) 21(4), 19 (2018)","journal-title":"ACM Trans. Privacy Secur. (TOPS)"},{"key":"5_CR43","doi-asserted-by":"crossref","unstructured":"Zakaria, N.H., Griffiths, D., Brostoff, S., Yan, J.: Shoulder surfing defence for recall-based graphical passwords. In: Symposium on Usable Privacy and Security, p. 6. SOUPS 2011. ACM (2011)","DOI":"10.1145\/2078827.2078835"}],"container-title":["Lecture Notes in Computer Science","Information Security and Cryptology \u2013 ICISC 2022"],"original-title":[],"language":"en","link":[{"URL":"https:\/\/link.springer.com\/content\/pdf\/10.1007\/978-3-031-29371-9_5","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2023,3,30]],"date-time":"2023-03-30T13:24:43Z","timestamp":1680182683000},"score":1,"resource":{"primary":{"URL":"https:\/\/link.springer.com\/10.1007\/978-3-031-29371-9_5"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2023]]},"ISBN":["9783031293702","9783031293719"],"references-count":43,"URL":"https:\/\/doi.org\/10.1007\/978-3-031-29371-9_5","relation":{},"ISSN":["0302-9743","1611-3349"],"issn-type":[{"type":"print","value":"0302-9743"},{"type":"electronic","value":"1611-3349"}],"subject":[],"published":{"date-parts":[[2023]]},"assertion":[{"value":"31 March 2023","order":1,"name":"first_online","label":"First Online","group":{"name":"ChapterHistory","label":"Chapter History"}},{"value":"ICISC","order":1,"name":"conference_acronym","label":"Conference Acronym","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"International Conference on Information Security and Cryptology","order":2,"name":"conference_name","label":"Conference Name","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"Seoul","order":3,"name":"conference_city","label":"Conference City","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"Korea (Republic of)","order":4,"name":"conference_country","label":"Conference Country","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"2022","order":5,"name":"conference_year","label":"Conference Year","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"30 November 2022","order":7,"name":"conference_start_date","label":"Conference Start Date","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"2 December 2022","order":8,"name":"conference_end_date","label":"Conference End Date","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"25","order":9,"name":"conference_number","label":"Conference Number","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"icisc2022","order":10,"name":"conference_id","label":"Conference ID","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"http:\/\/www.icisc.org\/","order":11,"name":"conference_url","label":"Conference URL","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"Double-blind","order":1,"name":"type","label":"Type","group":{"name":"ConfEventPeerReviewInformation","label":"Peer Review Information (provided by the conference organizers)"}},{"value":"Easychair","order":2,"name":"conference_management_system","label":"Conference Management System","group":{"name":"ConfEventPeerReviewInformation","label":"Peer Review Information (provided by the conference organizers)"}},{"value":"69","order":3,"name":"number_of_submissions_sent_for_review","label":"Number of Submissions Sent for Review","group":{"name":"ConfEventPeerReviewInformation","label":"Peer Review Information (provided by the conference organizers)"}},{"value":"24","order":4,"name":"number_of_full_papers_accepted","label":"Number of Full Papers Accepted","group":{"name":"ConfEventPeerReviewInformation","label":"Peer Review Information (provided by the conference organizers)"}},{"value":"0","order":5,"name":"number_of_short_papers_accepted","label":"Number of Short Papers Accepted","group":{"name":"ConfEventPeerReviewInformation","label":"Peer Review Information (provided by the conference organizers)"}},{"value":"35% - The value is computed by the equation \"Number of Full Papers Accepted \/ Number of Submissions Sent for Review * 100\" and then rounded to a whole number.","order":6,"name":"acceptance_rate_of_full_papers","label":"Acceptance Rate of Full Papers","group":{"name":"ConfEventPeerReviewInformation","label":"Peer Review Information (provided by the conference organizers)"}},{"value":"3","order":7,"name":"average_number_of_reviews_per_paper","label":"Average Number of Reviews per Paper","group":{"name":"ConfEventPeerReviewInformation","label":"Peer Review Information (provided by the conference organizers)"}},{"value":"3","order":8,"name":"average_number_of_papers_per_reviewer","label":"Average Number of Papers per Reviewer","group":{"name":"ConfEventPeerReviewInformation","label":"Peer Review Information (provided by the conference organizers)"}},{"value":"No","order":9,"name":"external_reviewers_involved","label":"External Reviewers Involved","group":{"name":"ConfEventPeerReviewInformation","label":"Peer Review Information (provided by the conference organizers)"}}]}}