@InProceedings{khamis2016chiea, author = {Khamis, Mohamed and Alt, Florian and Hassib, Mariam and von Zezschwitz, Emanuel and Hasholzner, Regina and Bulling, Andreas}, booktitle = {{Proceedings of the 2016 CHI Conference Extended Abstracts on Human Factors in Computing Systems}}, title = {{GazeTouchPass: Multimodal Authentication Using Gaze and Touch on Mobile Devices}}, year = {2016}, address = {New York, NY, USA}, note = {khamis2016chiea}, pages = {2156--2164}, publisher = {Association for Computing Machinery}, series = {CHI EA '16}, abstract = {We propose a multimodal scheme, GazeTouchPass, that combines gaze and touch for shoulder-surfing resistant user authentication on mobile devices. GazeTouchPass allows passwords with multiple switches between input modalities during authentication. This requires attackers to simultaneously observe the device screen and the user's eyes to find the password. We evaluate the security and usability of GazeTouchPass in two user studies. Our findings show that GazeTouchPass is usable and significantly more secure than single-modal authentication against basic and even advanced shoulder-surfing attacks.}, acmid = {2892314}, doi = {10.1145/2851581.2892314}, isbn = {978-1-4503-4082-3}, keywords = {gaze gestures, mobile devices, multimodal authentication}, location = {San Jose, California, USA}, numpages = {9}, timestamp = {2016.05.10}, url = {http://www.florian-alt.org/unibw/wp-content/publications/khamis2016chiea.pdf}, }