CN103186944A - Peeping-proof password input method - Google Patents

Peeping-proof password input method Download PDF

Info

Publication number
CN103186944A
CN103186944A CN 201210011939 CN201210011939A CN103186944A CN 103186944 A CN103186944 A CN 103186944A CN 201210011939 CN201210011939 CN 201210011939 CN 201210011939 A CN201210011939 A CN 201210011939A CN 103186944 A CN103186944 A CN 103186944A
Authority
CN
China
Prior art keywords
password
subscript
button
user
input
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Pending
Application number
CN 201210011939
Other languages
Chinese (zh)
Inventor
杜建钢
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
Individual
Original Assignee
Individual
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by Individual filed Critical Individual
Priority to CN 201210011939 priority Critical patent/CN103186944A/en
Publication of CN103186944A publication Critical patent/CN103186944A/en
Pending legal-status Critical Current

Links

Images

Landscapes

  • Financial Or Insurance-Related Operations Such As Payment And Settlement (AREA)
  • Input From Keyboards Or The Like (AREA)

Abstract

The invention discloses a peeping-proof password input method. When a user requests a password verification, a system generates a random key comparison table, and meanwhile the random key comparison table is displayed on a displayer through a virtual digital keyboard; and virtual digital keys of the virtual digital keyboard are in one-to one correspondence with subscripts. The subscripts are displayed periodically in a manner of momentary flashing after the subscripts are spaced at intervals. The subscripts are taken as replacement digits to be input after the user observes flashing of the subscripts according to password digits clearly. After the system receives the input, the key comparison table is looked up so that the replacement digits are reduced into password digits to be recorded and stored, and then subscript units of the key comparison table are refreshed, so that a new group of digits are generated randomly. The finish confirmation is given after the user finishes inputting completely, the recorded and stored password digits are combined into passwords in sequence and submitted to a verification system for verification after the system receives a confirmation instruction. According to the peeping-proof password input method, random changing and flashing of the subscripts of the virtual digital keyboard are used, so that the subscripts are difficult to see clearly and memorize, the password cannot be deduced reversely, and the security of password input is guaranteed.

Description

The anti-cipher-code input method of peeping
Technical field
The present invention relates to field of information security technology, particularly a kind of anti-cipher-code input method of peeping.
Background technology
Password is the important means of identifying user identity in daily life, and gate inhibition of bank ATM cash dispenser, market POS machine, securities broker company's transaction terminal and work, life area etc. needs to import the password authentification identity.But the environment of these all to be the public arena therefore input passwords all is openly to be exposed to outward, and the inevitable like this undesirable of making has had opportunity, adopts means such as to peep around and steal user cipher.People have to meticulous when the input password for this reason, perhaps password etc. is changed in not timing, but this makes easily that again password passes into silence, bring inconvenience and trouble to people thus, even owing to peep of cipher causes that huge deposit is stolen, bank card is stolen brush and identity by malice and heavy losses such as falsely used.
Chinese patent 200410021823.9 relates to a kind of anti-code keypad of peeping.Comprise 0~90 digital keys and " determining ", " removing " button and keyboard control circuit, also comprise corresponding with the described digital keys digital indicator of being formed by ten digital display units, described keyboard control circuit is controlled this digital indicator and is carried out 0~90 digital random alignment demonstration, and receive the push button signalling of passing back, transfer to host computer system after treatment.This code keypad can generate and show the numeral of one group of random alignment automatically before inputing password each time, the depositor is according to the numeral of this demonstration input account password, press " affirmation " key after, the coded sequence of button is delivered to terminal.The key value of each button is replaced at random by the digital display unit of correspondence in this scheme, but during password input, be changeless and remain show state, so make visible angle limit to some extent but must need a visible angle of being convenient to observe can not avoid digital display unit to be spied on fully in user's use though it is placed on button inside with the random digit display unit, thereby so the person of peeping as long as in visual range, just can see the button operation stealing passwords easily; This scheme need be carried out transformation and upgrade to keyboard hardware in addition, will increase for system like this and transform difficulty, cost and system risk.
Summary of the invention
For solving the problem of above-mentioned existence, the purpose of this invention is to provide a kind of anti-cipher-code input method of peeping, it utilizes following on the virtual digit keyboard to be marked on after each button input all can stochastic transformation and the of short duration mode of flashing periodically of the being replacement numeral of pointing out the user to import password figure.Because subscript is difficult to all be seen clearly and remember, so password can't be reversed derivation, make the safety of password input be guaranteed.
The present invention provides for achieving the above object a kind ofly anti-ly peeps cipher-code input method, may further comprise the steps:
Step 1: during user's requests verification password, system generates at random, and the button table of comparisons is shown to the user at display with the virtual digit keyboard simultaneously, it is corresponding one by one not repeat the subscript unit at random by 10 push-button units of 0 to 9 and 0 to 9 10 respectively in the described button table of comparisons, it is corresponding one by one that described virtual digit keyboard does not then repeat subscript by 10 virtual digit buttons of 0 to 9 and 0 to 9 10 respectively at random, described be marked with periodically at interval the some time down after of short duration mode of flashing show;
Step 2: the user finds the virtual digit button of same numbers according to its password figure at the virtual digit keyboard, and observes the wait subscript corresponding with this virtual digit button and flash;
Step 3: after treating that the user sees the subscript of flashing clearly, on numeric keypad with the digital keys input as an alternative of viewed subscript;
Step 4, search subscript unit identical with replacing numeral in the button table of comparisons after system's reception input immediately and its corresponding push-button unit is reduced and record storage as password figure, system generates one group of new numeral at random with the subscript unit of the button table of comparisons at once subsequently, and the subscript of synchronous refresh virtual digit keyboard, wait for that then the user imports;
Step 5, the user imports n again according to the method for step 2 and step 3 and replaces numeral, then n password figure stored in the reduction of four method and record set by step in system, and again the subscript unit of the button table of comparisons is generated one group of new numeral at random, and the subscript of synchronous refresh virtual digit keyboard, wait for that then the user imports;
Step 6, the whole inputs of user finish and confirm to finish input, after system's confirmation of receipt END instruction whole password figures of storing of record are combined into password in regular turn and submit to the check system checking.
The invention has the beneficial effects as follows that the password figure that utilizes on the one hand virtual digit keyboard prompting user will need to import is replaced allows the person of peeping peep the press button of digital keyboard operation also not know real password figure; On the other hand, be marked on after each button all one group of new numerals of random refresh in order to the virtual digit keyboard of pointing out the user following, and be periodically with the time compole short mode of flashing show, so just making the person of peeping not only can't see clearly but also be difficult to remember these subscripts also just can't be in order to the decryption of oppositely deriving in conjunction with the button operation of user on numeric keypad, thereby has protected the safety of password; Another aspect in addition, because the input of each button only needs to observe a subscript therefore neither can increase the memory burden and can guarantee that also thereby it sees this subscript clearly and do not influence its operation, and whole input operation custom is consistent with conventional password input habit so reduced operation easier again for the user; Again on the one hand, the present invention program can only realize need not to change system hardware by software for input block is based on system for computer, and because password input and reduction all can be finished in the input block of password, system for Client will need not the background server system is done any change and upgrading like this, and therefore the transformation difficulty to total system is little, cost is low and do not have system risk.
Description of drawings
Fig. 1 is implementing procedure figure of the present invention
The virtual digit keyboard synoptic diagram that Fig. 2 shows for display of the present invention
Fig. 3 is numeric keypad synoptic diagram of the present invention
Embodiment
The invention will be further described below in conjunction with drawings and Examples.
Specifically comprise following operation referring to Fig. 1, Fig. 2, the anti-embodiment of peeping cipher-code input method of the present invention shown in Figure 3:
When the user withdrew the money the requests verification password at the bank ATM machine, system generated at random the button table of comparisons and is kept in the storage medium.The structure of the button table of comparisons comprises push-button unit and subscript unit, and it is corresponding one by one that push-button unit records unduplicated 10 numerals at random of 0 to 9 of 10 numerals of 0 to 9 and subscript unit record successively.While is according to push-button unit and the subscript unit corresponding relation of the button table of comparisons, on the display of ATM with as shown in Figure 2: the form of virtual digit keyboard 1 is shown to the user, its concrete form is: include 10 virtual digit buttons 11 of 0 to 9 on the virtual digit keyboard 1, each virtual digit button 11 inferior horn has a subscript 12 corresponding with it, and both corresponding relations are in order to point out the numeral numeral input as an alternative of the virtual digit button 11 corresponding subscripts 12 that the user will be identical with password figure.Preferably for ease of user's operation and observation, the arrangement mode of the virtual digit button 11 of virtual digit keyboard 1 keeps and the digital keys 21 of numeric keypad 2 is consistent as shown in Figure 3, perhaps when system's employing be touch-screen display the time virtual digit keyboard 1 can just possess the numeric keypad 2 of button input function the while.In addition, subscript 12 be by system control with periodically at interval after the some time of short duration mode of flashing show, gap periods is so that not influence user's input speed be prerequisite such as being set at for 2 seconds at this, and flash the time so that the user observe and see clearly and don't be easy to all be seen clearly by other people and memory is advisable such as being set at 0.1 second at this.
At first, suppose that the password that the user need input is 836529, the concrete operations step is as follows:
Suppose that the current button table of comparisons that generates at random of system is as shown in table 1, wherein the corresponding relation of Ji Lu push-button unit and subscript unit is:
Push-button unit 0 1 2 3 4 5 6 7 8 9
The subscript unit 3 9 7 5 0 1 8 2 6 4
Table 1
Virtual digit button 11 and the subscript 12 of the virtual digit keyboard 1 on the display also are shown to the user according to the corresponding relation of table 1 simultaneously, and subscript 12 is to show in the mode that 2 times in second of periodic intervals flashed 0.1 second then.
The password figure of the 1st needs input of user is ' 8 '.
The user observes on the virtual digit keyboard 1 numeral and is the flashing of ' 8 ' virtual digit button 11 corresponding subscripts 12, and be digital ' 6 ' according to the button table of comparisons (table 1) this subscript 12 this moment.
After seeing subscript 12 clearly, the user on numeric keypad 2 as shown in Figure 3, numeral ' 6 ' is imported as the replacement digital keys of password figure ' 8 '.
System is after receiving the button input, replace numeral ' 6 ' according to this of input and in the button table of comparisons (table 1), search numeral and be ' 6 ' subscript unit, with this corresponding push-button unit in subscript unit namely numeral ' 8 ' as password figure reduction and record storage.Finish a reduction of replacing numeral and password figure thus.System calls random function at once the subscript unit of the button table of comparisons is generated one group of new numeral at random subsequently, and the subscript 12 of synchronous refresh virtual digit keyboard 1, system wait user's input then.Suppose that this moment button table of comparisons is as shown in table 2, push-button unit and at random the contrast relationship of the subscript unit of generation refresh for:
Push-button unit 0 1 2 3 4 5 6 7 8 9
The subscript unit 3 7 9 5 0 6 4 1 8 2
Table 2
The password figure of the 2nd needs input of user is ' 3 '.
The user observes on the virtual digit keyboard 1 numeral and is the flashing of ' 3 ' virtual digit button 11 corresponding subscripts 12, and be digital ' 5 ' according to the button table of comparisons (table 2) this subscript 12 this moment.
After seeing subscript 12 clearly, the user on numeric keypad 2 as shown in Figure 3, numeral ' 5 ' is imported as the replacement digital keys of password figure ' 3 '.
System is after receiving the button input, replace numeral ' 5 ' according to this of input and in the button table of comparisons (table 2), search numeral and be ' 5 ' subscript unit, with this corresponding push-button unit in subscript unit namely numeral ' 3 ' as password figure reduction and record storage.Finish the 2nd reduction of replacing numeral and password figure thus.System calls random function at once and again the subscript unit of the button table of comparisons is generated one group of new numeral at random subsequently, and the subscript 12 of synchronous refresh virtual digit keyboard 1, system wait user's input then again.
The user repeats above input operation until the replacement numeral input of finishing remaining password figure.
Confirm to finish input import the replacement numeral of whole password figures as the user after, system reduced and recorded the password figure of storage successively before foundation after the confirmation of receipt END instruction: 8,3... its combination is restored password: 836529, then password is submitted to the cryptographic check system verification of background server.
The present invention prevents peeping the password input that cipher-code input method is specially adapted to the bank ATM cash dispenser, also can be widely used in the password input of systems such as market POS machine, security exchange terminal, gate inhibition.
Obviously, those skilled in the art can carry out various changes and modification to the present invention and not break away from the spirit and scope of the present invention.Like this, if of the present invention these are revised and modification belongs within the scope of claim of the present invention and equivalent technologies thereof, then the present invention also is intended to comprise these changes and modification interior.The content that this instructions is not described in detail belongs to this area professional and technical personnel's known prior art.

Claims (1)

1. prevent peeping cipher-code input method for one kind, it is characterized in that, may further comprise the steps:
Step 1: during user's requests verification password, system generates at random, and the button table of comparisons is shown to the user at display with the virtual digit keyboard simultaneously, it is corresponding one by one not repeat the subscript unit at random by 10 push-button units of 0 to 9 and 0 to 9 10 respectively in the described button table of comparisons, it is corresponding one by one that described virtual digit keyboard does not then repeat subscript by 10 virtual digit buttons of 0 to 9 and 0 to 9 10 respectively at random, described be marked with periodically at interval the some time down after of short duration mode of flashing show;
Step 2: the user finds the virtual digit button of same numbers according to its password figure at the virtual digit keyboard, and observes the wait subscript corresponding with this virtual digit button and flash;
Step 3: after treating that the user sees the subscript of flashing clearly, on numeric keypad with the digital keys input as an alternative of viewed subscript;
Step 4, search subscript unit identical with replacing numeral in the button table of comparisons after system's reception input immediately and its corresponding push-button unit is reduced and record storage as password figure, system generates one group of new numeral at random with the subscript unit of the button table of comparisons at once subsequently, and the subscript of synchronous refresh virtual digit keyboard, wait for that then the user imports;
Step 5, the user imports n again according to the method for step 2 and step 3 and replaces numeral, then n password figure stored in the reduction of four method and record set by step in system, and again the subscript unit of the button table of comparisons is generated one group of new numeral at random, and the subscript of synchronous refresh virtual digit keyboard, wait for that then the user imports;
Step 6, the whole inputs of user finish and confirm to finish input, after system's confirmation of receipt END instruction whole password figures of storing of record are combined into password in regular turn and submit to the check system checking.
CN 201210011939 2012-01-02 2012-01-02 Peeping-proof password input method Pending CN103186944A (en)

Priority Applications (1)

Application Number Priority Date Filing Date Title
CN 201210011939 CN103186944A (en) 2012-01-02 2012-01-02 Peeping-proof password input method

Applications Claiming Priority (1)

Application Number Priority Date Filing Date Title
CN 201210011939 CN103186944A (en) 2012-01-02 2012-01-02 Peeping-proof password input method

Publications (1)

Publication Number Publication Date
CN103186944A true CN103186944A (en) 2013-07-03

Family

ID=48678099

Family Applications (1)

Application Number Title Priority Date Filing Date
CN 201210011939 Pending CN103186944A (en) 2012-01-02 2012-01-02 Peeping-proof password input method

Country Status (1)

Country Link
CN (1) CN103186944A (en)

Cited By (11)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN104298905A (en) * 2014-10-13 2015-01-21 桑永朋 Password input method and system based on two-stage conversion
CN105718822A (en) * 2016-01-22 2016-06-29 湖南财政经济学院 Anti-peep password input method
CN107103665A (en) * 2016-02-19 2017-08-29 周士刚 Input device and input method for dynamic display
CN107195039A (en) * 2017-05-11 2017-09-22 广东汇泰龙科技有限公司 It is a kind of to prevent the intelligent cloud lock system and unlocking method of peep of cipher
CN107291363A (en) * 2016-04-05 2017-10-24 联想企业解决方案(新加坡)有限公司 Electronic device and method for touch screen operation
CN107392599A (en) * 2017-08-22 2017-11-24 钱娟娟 Mobile-phone payment cipher code protection method
CN109801050A (en) * 2019-01-22 2019-05-24 深圳瑞银信信息技术有限公司 A kind of mobile payment SDK and method of payment for online store
CN110889095A (en) * 2019-11-18 2020-03-17 中国银行股份有限公司 Control method and control device of virtual numeric keyboard
WO2021218452A1 (en) * 2020-04-27 2021-11-04 华为技术有限公司 Input method, input device and mobile terminal
CN113849873A (en) * 2021-09-26 2021-12-28 湖南财政经济学院 Password input method and device
CN113961904A (en) * 2021-11-01 2022-01-21 中国电信股份有限公司 Screen unlocking method and device, electronic equipment and readable medium

Cited By (15)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN104298905A (en) * 2014-10-13 2015-01-21 桑永朋 Password input method and system based on two-stage conversion
CN104298905B (en) * 2014-10-13 2015-08-19 桑永朋 A kind of password input method based on two-stage conversion and system
WO2016058304A1 (en) * 2014-10-13 2016-04-21 桑永朋 Password input method and system based on two-stage conversion
CN105718822A (en) * 2016-01-22 2016-06-29 湖南财政经济学院 Anti-peep password input method
CN107103665A (en) * 2016-02-19 2017-08-29 周士刚 Input device and input method for dynamic display
CN107291363A (en) * 2016-04-05 2017-10-24 联想企业解决方案(新加坡)有限公司 Electronic device and method for touch screen operation
CN107195039A (en) * 2017-05-11 2017-09-22 广东汇泰龙科技有限公司 It is a kind of to prevent the intelligent cloud lock system and unlocking method of peep of cipher
CN107392599A (en) * 2017-08-22 2017-11-24 钱娟娟 Mobile-phone payment cipher code protection method
CN109801050A (en) * 2019-01-22 2019-05-24 深圳瑞银信信息技术有限公司 A kind of mobile payment SDK and method of payment for online store
CN109801050B (en) * 2019-01-22 2023-12-26 瑞银信支付技术有限公司 Mobile payment SDK and payment method for online mall
CN110889095A (en) * 2019-11-18 2020-03-17 中国银行股份有限公司 Control method and control device of virtual numeric keyboard
CN110889095B (en) * 2019-11-18 2022-02-25 中国银行股份有限公司 Control method and control device of virtual numeric keyboard
WO2021218452A1 (en) * 2020-04-27 2021-11-04 华为技术有限公司 Input method, input device and mobile terminal
CN113849873A (en) * 2021-09-26 2021-12-28 湖南财政经济学院 Password input method and device
CN113961904A (en) * 2021-11-01 2022-01-21 中国电信股份有限公司 Screen unlocking method and device, electronic equipment and readable medium

Similar Documents

Publication Publication Date Title
CN103186944A (en) Peeping-proof password input method
CN102638447B (en) Method and device for system login based on autonomously generated password of user
US6209104B1 (en) Secure data entry and visual authentication system and method
US4223403A (en) Cryptographic architecture for use with a high security personal identification system
CN106682903B (en) A kind of feedback validation method of bank paying Licensing Authority information
US7210622B2 (en) Enhanced PIN and password protection system and method
CA2885512C (en) Method and system for secure entry of identification data for the authentication of a transaction being performed by means of a self-service terminal
CN101593389A (en) A kind of key management method and system that is used for the POS terminal
CN105205944A (en) Self-service deposit and withdrawal system based on intelligent terminal
JP2002073563A (en) Device and method for providing safe access to service facility, and program product
CN100583734C (en) Method for realizing volatile secret key and separated checking module by collecting human characteristic
CN104408363A (en) Safe password system
EP1604257A2 (en) A method and system for identifying an authorized individual by means of unpredictable single-use passwords
CN103366278A (en) Method and system for processing operation request
CN100412840C (en) User identification with improved password input method
CN101599192A (en) Realize the method for security guard of bank card
CN101986355A (en) Method, system and terminal for managing transaction authority of bank card
CN103297237A (en) Identity registration method, identity authentication method, identity registration system, identity authentication system, personal authentication equipment and authentication server
CN102262760A (en) Transaction secrecy method, acceptance apparatus and submission software
CN103606081A (en) Transaction protection method, transaction accepting device and transaction submitting device
JP2008129647A (en) Password operation system
CN105260889A (en) Authentication payment system
CN1987924A (en) System and method for more safety and convenient of bank account
CN110930603B (en) Bidirectional encryption verification system and cash recycling machine with same
KR100835260B1 (en) Internet-banking controll method

Legal Events

Date Code Title Description
C06 Publication
PB01 Publication
C05 Deemed withdrawal (patent law before 1993)
WD01 Invention patent application deemed withdrawn after publication

Application publication date: 20130703