LEADER 02787aam 2200469I 450 001 9910709596603321 005 20160926090653.0 024 8 $aGOVPUB-C13-8062767e03ba2467301fe5b36548a003 035 $a(CKB)5470000002479030 035 $a(OCoLC)958885806 035 $a(EXLCZ)995470000002479030 100 $a20160921d2016 ua 0 101 0 $aeng 181 $2rdacontent 182 $2rdamedia 183 $2rdacarrier 200 10$aMeasuring the usability and security of permuted passwords on mobile platforms /$fKristen K. Greene; John Kelsey; Joshua M. Franklin 210 1$aGaithersburg, MD :$cU.S. Dept. of Commerce, National Institute of Standards and Technology,$d2016. 215 $a1 online resource (65 pages) $cillustrations (color) 225 1 $aNISTIR ;$v8040 300 $aApril 2016. 300 $aContributed record: Metadata reviewed, not verified. Some fields updated by batch processes. 300 $aTitle from PDF title page (viewed April 30, 2016). 320 $aIncludes bibliographical references. 330 3 $aPassword entry on mobile devices significantly impacts both usability and security, but there is a lack of usable security research in this area, specifically for complex password entry. To address this research gap, we set out to assign strength metrics to passwords for which we already had usability data, in an effort to have a more meaningful comparison between usability and security. This document reports a method of optimizing the input of randomly generated passwords on mobile devices via password permutation to allow for a comparison of password usability data. We found that the number of keystrokes saved the efficiency gained via permutation depends on the number of onscreen keyboard changes required in the original password rather than on password length. Additionally, we created and are releasing Python scripts (publicly available from https://github.com/usnistgov/PasswordMetrics) for the experiments on entropy loss we conducted across passwords ranging in length from 5 to 20 characters. 606 $aComputers$xAccess control$xPasswords 606 $aMobile communication systems 615 0$aComputers$xAccess control$xPasswords. 615 0$aMobile communication systems. 700 $aGreene$b Kristen K$01396962 701 $aFranklin$b Joshua M$01412362 701 $aGreene$b Kristen K$01396962 701 $aKelsey$b John$01381105 712 02$aInformation Technology Laboratory (National Institute of Standards and Technology) 801 0$bNBS 801 1$bNBS 801 2$bGPO 801 2$bNBS 906 $aBOOK 912 $a9910709596603321 996 $aMeasuring the usability and security of permuted passwords on mobile platforms$93505651 997 $aUNINA