Carleton University
Technical Report TR-07-10
March 8, 2007

A Second Look at the Usability of Click-Based Graphical Passwords

Sonia Chiasson, Robert Biddle, P.C. van Oorschot

Abstract

Click-based graphical passwords have been proposed as a usable alternative to text passwords. We conducted two user studies: an initial lab study to revisit these usability claims, explore for the first time the impact on usability of a wide-range of images, and gather information about the points selected by users; and a large-scale field study that examined how click-based graphical passwords work in practice. No such prior field studies have been reported in the literature. We found significant differences in the usability results of the two studies, providing empirical evidence that relying solely on lab studies for security interfaces can be problematic. We also present a first look at whether interference from having multiple graphical passwords affects usability and whether more memorable passwords are necessarily weaker from a security point of view.

TR-07-10.pdf