DocumentCode :
3027675
Title :
Use of Human Cognition in HIP Design Via EmotIcons to Defend BOT Attacks
Author :
Nayeem, Mir Tafseer ; Mukta, M.S.H. ; Ahmed, Shehab ; Rahman, Md Mamunur
Author_Institution :
Dept. of Comput. Sci. & Inf. Technol. (CIT), Islamic Univ. of Technol. (IUT), Gazipur, Bangladesh
fYear :
2012
fDate :
5-7 Dec. 2012
Firstpage :
178
Lastpage :
185
Abstract :
Many services in the internet including Email, search engine, social networking are provided with free of charge due to enormous growth of web users. With the expansion of web services, denial of service (DoS) attacks by malicious automated programs (e.g. web bots) is becoming a serious problem of web service accounts. In order to avoid tremendous attack from malicious computer programs, HIP, or Human Interactive Proofs has been introduced to distinguish humans from computers. HIPs are designed to be easy for humans but hard for machines. Unfortunately, the existing HIPs tried to maximize the difficulty for automated programs to pass tests by increasing distortion or noise. Consequently, it has also become difficult for potential users too. In our proposed technique we resolve this problem by making use of human cognitive processing abilities through emoticons focusing mainly on users. Features like language independence, using this for advertising purpose, ease of use interface for the touch-based smart-phone users, easy tuning of security and usability level make it very attractive to web service providers. In the result section, a microscopic large-scale user study was conducted involving 118 users to investigate the actual user views compare to existing state of the art CAPTCHA systems like ESP-PIX and Asirra in terms of usability and security and found our system can be solved with 88.04% average success rate in less than 7 seconds.
Keywords :
Web services; automatic programming; cognition; computer network security; human computer interaction; Asirra; BOT attacks; CAPTCHA systems; DoS attacks; ESP-PIX; HIP design; Internet; Web bots; Web service providers; Web services; denial of service attacks; email; emoticons; human cognition; human cognitive processing ability; human interactive proofs; language independence; malicious automated programs; malicious computer programs; search engine; security tuning; social networking; touch-based smart-phone users; usability level; Computers; Electronic mail; Humans; Security; Usability; Web services; CAPTCHA; Cognitive Psychology; EmotIcons; HIPs; OCR; Security; Usability; Web Services;
fLanguage :
English
Publisher :
ieee
Conference_Titel :
Computational Science and Engineering (CSE), 2012 IEEE 15th International Conference on
Conference_Location :
Nicosia
Print_ISBN :
978-1-4673-5165-2
Electronic_ISBN :
978-0-7695-4914-9
Type :
conf
DOI :
10.1109/ICCSE.2012.33
Filename :
6417291
Link To Document :
بازگشت