Password Authentication Device Obscuring Entry via Dummy Inputs
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Existing password-authenticating systems in devices like copiers and computers fail to effectively prevent password leakage, as the hand movements during password entry can reveal the correct password, even when character hiding technologies are used.
Innovation Solution
A password-authenticating device that compares an entered password candidate with a registered password, allowing re-entry of a dummy password a predetermined number of times before executing the login process, making it difficult to identify the correct password from hand movements, and optionally using a second input unit to further obscure the number of dummy inputs.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Loss of information
If character hiding technology is used during password entry, then password visibility is protected, but hand movements still reveal the correct password
Solution Approach 1:
The system performs preliminary actions by requiring dummy password entries before the actual password verification. This preliminary dummy input phase obscures the real password entry hand movements by creating similar-looking preliminary actions that consume the same input interface and time, making it impossible for observers to distinguish between dummy and real password entries
Solution Approach 2:
Dummy password entries act as an intermediary mechanism between the user and the authentication system. These dummy inputs serve as a mediator that masks the actual password entry process, creating a buffer layer that prevents direct observation of the real password input pattern while still allowing legitimate authentication to proceed
2Reliability
If multiple re-entry comparisons are required, then password verification security is improved, but login time increases
Solution Approach 1:
The system applies partial action by requiring only a predetermined number of dummy password entries (e.g., 3 times) rather than extensive multiple verification attempts. This partial excessive action provides sufficient security masking without imposing excessive time delays, finding an optimal balance between security and usability
Data Source
AI summary
Provided is a password-authenticating device in which a password is not perceived from the hand movements of an operator during entry of a password. The password-authenticating device according to the present disclosure executes a login process by comparing an entered password candidate with a registered password. The password-authenticating device includes a comparison unit, and an authenticating unit. The comparison unit receives entry of the password candidate together with a number of times of dummy input, and when the entered password candidate matches the registered password, receives re-entry of the password candidate. After re-entry of the password candidate reaches the number of times of dummy input, the authenticating unit executes the login process regardless of whether or not the re-entered password candidate matches the registered password.


