• DocumentCode
    3027675
  • Title

    Use of Human Cognition in HIP Design Via EmotIcons to Defend BOT Attacks

  • Author

    Nayeem, Mir Tafseer ; Mukta, M.S.H. ; Ahmed, Shehab ; Rahman, Md Mamunur

  • Author_Institution
    Dept. of Comput. Sci. & Inf. Technol. (CIT), Islamic Univ. of Technol. (IUT), Gazipur, Bangladesh
  • fYear
    2012
  • fDate
    5-7 Dec. 2012
  • Firstpage
    178
  • Lastpage
    185
  • Abstract
    Many services in the internet including Email, search engine, social networking are provided with free of charge due to enormous growth of web users. With the expansion of web services, denial of service (DoS) attacks by malicious automated programs (e.g. web bots) is becoming a serious problem of web service accounts. In order to avoid tremendous attack from malicious computer programs, HIP, or Human Interactive Proofs has been introduced to distinguish humans from computers. HIPs are designed to be easy for humans but hard for machines. Unfortunately, the existing HIPs tried to maximize the difficulty for automated programs to pass tests by increasing distortion or noise. Consequently, it has also become difficult for potential users too. In our proposed technique we resolve this problem by making use of human cognitive processing abilities through emoticons focusing mainly on users. Features like language independence, using this for advertising purpose, ease of use interface for the touch-based smart-phone users, easy tuning of security and usability level make it very attractive to web service providers. In the result section, a microscopic large-scale user study was conducted involving 118 users to investigate the actual user views compare to existing state of the art CAPTCHA systems like ESP-PIX and Asirra in terms of usability and security and found our system can be solved with 88.04% average success rate in less than 7 seconds.
  • Keywords
    Web services; automatic programming; cognition; computer network security; human computer interaction; Asirra; BOT attacks; CAPTCHA systems; DoS attacks; ESP-PIX; HIP design; Internet; Web bots; Web service providers; Web services; denial of service attacks; email; emoticons; human cognition; human cognitive processing ability; human interactive proofs; language independence; malicious automated programs; malicious computer programs; search engine; security tuning; social networking; touch-based smart-phone users; usability level; Computers; Electronic mail; Humans; Security; Usability; Web services; CAPTCHA; Cognitive Psychology; EmotIcons; HIPs; OCR; Security; Usability; Web Services;
  • fLanguage
    English
  • Publisher
    ieee
  • Conference_Titel
    Computational Science and Engineering (CSE), 2012 IEEE 15th International Conference on
  • Conference_Location
    Nicosia
  • Print_ISBN
    978-1-4673-5165-2
  • Electronic_ISBN
    978-0-7695-4914-9
  • Type

    conf

  • DOI
    10.1109/ICCSE.2012.33
  • Filename
    6417291