This paper first gives a comprehensive review on peeping attacks and related issues, and then points out some basic design principles. Two general structures of secure human-computer identification systems are proposed against peeping attacks. A concrete SecHCI protocol and its various implementations are given, and a real Web service is developed for demonstration. The security and usability of the proposed protocol are investigated in detail. Although the usability of the proposed protocol is not yet sufficiently good, we believe that some design skills of the proposed protocol are useful for future work on SecHCI.
Category / Keywords: cryptographic protocols / Date: received 12 Aug 2005 Contact author: hooklee at mail com Available format(s): PDF | BibTeX Citation Version: 20050817:193328 (All versions of this report) Short URL: ia.cr/2005/268 Discussion forum: Show discussion | Start new discussion