DOI QR코드

DOI QR Code

Easy Keypad - Soft Keyboard for Login Information Input in Smart Devices

쉬운 키패드 - 스마트 기기에서 사용하는 로그인 정보 입력만을 위한 소프트키보드

  • 고형대 (국립목포대학교 멀티미디어공학과)
  • Received : 2014.05.12
  • Accepted : 2014.06.11
  • Published : 2014.06.30

Abstract

In this paper, we suggest a soft keyboard, called easy keypad, that we use only for login information input in smart devices. Especially, as easy keypad is applied to MTS(Mobile Trading System) we suggest easy keypad in MTS. Easy keypad UI in MTS represents 20 letters and users input login information by using 20 letters. We suggest protocol which decides letters represented in easy keypad UI, which is code for users to input login information by using 20 letters. We analyze easy keypad's safe degree for soft keyboard security threat, especially when it comes to point hacking, we suggest comparison among original soft keyboard's safe degree. Also we suggest mathematical fomula for measuring soft keyboard's convenience and then we analyze the result of soft keyboard's convenience by the presented mathematical formula.

Keywords

References

  1. Application Mobile Internet Banking downloadable through, https://mini.ibk.co.kr
  2. Application Mobile Internet Banking downloadable through, https://m.shinhan.com
  3. Application Mobile Trading System downloadable through, https://m.hdable.co.kr
  4. Bellovin. M. S and M. Merrit, "Augmented Encrypted Key Exchange: Password-based Protocol Secure against Dictionary Attack and Password File Compromise," Proceedings of the 1st ACM Conference on Computer and Communications Security, 1993, pp. 244-250
  5. Boyko, V. D. P. MacKenzie, and S. Patel, "Provably Secure Password Authenticated Key Exchange using Dinie-Hellman," Advances in Cryptology Eurocrypt'00 (LNCS 1807), 2000, pp. 156-171.
  6. Gong. L, "Optimal Authentication Protocols Resistant to Password Guessing Attacks," 8th IEEE Computer Security Foundations Workshop (CSEW '95), 1995, pp. 24-29.
  7. Halevi. S and H. Krawczyk, "Public-key Cryptography and Password Protocols," ACM Conference on Computer and Communications Security, 1998, pp. 122-131.
  8. http://www.jeonnam.go.kr/mbs/mhome/jsp /member/login.jsp?id=mhome 090100000000
  9. Jablon. P. D, "Strong Password-only Authenticated Key Exchange," ACM SIGCOMM Computer Communication Review, 26:5, 1996, pp. 5-20.
  10. Park SB, MS Kang, and SJ Lee, "New Authentication System," Lecture Notes in Computer Science 3032, 2004, pp. 1095-1098.
  11. SangJun LEE and SeungBae Park, "Improving Accessibility and Security for Mobile Phone Shopping," Journal of Computer Information Systems Spring, 2006, pp. 124-133.
  12. SangJun LEE and SeungBae Park, "Mobile Password System for Enhancing Usability- Guaranteed Security in Mobile Phone Banking," HSI 2005, LNCS 3597, 2005, pp. 66-74.
  13. 금융보안연구원, "가상키보드 보안 요구사항," 2012.
  14. 금융보안연구원, "금융부문 스마트폰 보안 가이드," 2010.
  15. 문건영, 김종욱, 홍만표, "모바일 환경에서 훔쳐보기 공격에 강한 그래픽 패스워드 인증 기법," 정보과학회지, 2012, 제 18권, 1호, pp. 90-94.
  16. 장욱, "웹기반 사용자 정보 키로그해킹 방지를 위한 입력시스템," 고려대학교 석사학위, 2006.
  17. 정태영, 이경률, 임강빈, "키보드해킹에 대비한 새로운 영상기반 패스워드," 정보보호학회지, 2008, 제 18권, 3호 pp. 41-47.
  18. 한국정보통신기술협회, "스마트단말 보안플랫폼을 이용한 전자금융서비스 아키텍처," 2012.
  19. 최희식, 조양현, 주헌식, "스마트 폰 보안 취약요소에 따른 분석 연구," 디지털산업정보학회논문지, 2013, 제 9권, 3호 pp. 119-127.
  20. 양정모, "암호 기술을 이용한 디지털 콘텐츠 안전 거래 시스템 구현," 디지털산업정보학회논문지, 2013, 제 9권, 4호 pp. 119-125.