PRESS-NEWS.org - Press Release Distribution
PRESS RELEASES DISTRIBUTION

Feature stops apps from stealing phone users' passwords

2013-06-27
(Press-News.org) DURHAM, N.C. -- Imagine downloading a NetFlix app to your phone so that you can watch movies on the go. You would expect the app to request your account's username and password the first time it runs. Most apps do.

But, not all apps are what they appear to be. They can steal log-in and password information. In 2011, researchers at North Carolina State University discovered a convincing imitation of the real Netflix app that forwarded users' login details to an untrusted server. And, in June, the security firm F-Secure discovered a malicious, fake version of the popular game "Bad Piggies" in the Google Play Store.

Attacks like these are rare, said Duke computer scientist Landon Cox, but, "we will likely see more of them in the future." To protect users against the threat of malicious apps, Cox and his team have built ScreenPass. ScreenPass adds new features to an Android phone's operating system to prevent malicious apps from stealing a user's passwords.

"Passwords are a critical glue between mobile apps and remote cloud services," Cox said. "The problem right now is that users have no idea what happens to the passwords they give to their apps."

This is where ScreenPass comes in. It provides a special-purpose software keyboard for users to securely enter sensitive text such as passwords. An area below the keyboard allows users to tell ScreenPass where they want their text sent, such as Google, Facebook, or Twitter. ScreenPass then tracks a users' password data as the app runs and notifies the user if an app tries to send a password to the wrong place.

ScreenPass guarantees that users always input passwords through the secure keyboard. It does this by using computer vision to periodically scan the screen for untrusted keyboards.

"If a malicious app can trick a user into inputting their password through a fake keyboard, then there is no way to guarantee that an app's password is sent only to the right servers," Cox said. If ScreenPass detects an untrusted keyboard, then an app may be trying to "spoof" the secure keyboard in order to steal the user's password.

Cox and his team presented ScreenPass at the MobiSys 2013 conference in Taipei on June 27.

In trials on a prototype phone, ScreenPass detected attack keyboards that tried to avoid detection by changing the font, color, and blurriness of letters on the keys. "The only attack keyboard that ScreenPass could not detect was a keyboard with a flowery background that blended in with the keyboard letters," Cox said.

He and his team also installed ScreenPass on the phones of 18 volunteers for three weeks to test how user-friendly it was. Users reported no additional burden at having to tell ScreenPass where their passwords should be sent.

Finally, testing ScreenPass on 27 apps from the Android Marketplace, the team found three apps sent passwords over the network in plaintext, four stored passwords in the local file system without encryption, and three apps sent passwords from different domains to a third-party server owned by the app developer. Cox would not provide the names of the apps, but said ScreenPass also easily detected the fake Netflix app.

Cox's team plans to make ScreenPass publicly available to continue to improve smartphone password security.



INFORMATION:

Citation: "ScreenPass: Secure Password Entry on Touchscreen Devices." Liu, D. et. al. MobiSys 2013. June 27, 2013.





ELSE PRESS RELEASES FROM THIS DATE:

How to boost Hispanics' participation in clinical trials? Relate to them, Moffitt study shows

2013-06-27
Hispanic cancer patients rarely participate in clinical trials, but researchers want to tailor a Spanish DVD to help change this. To create a relevant educational tool, Moffitt Cancer Center researchers investigated why awareness of and participation in trials are so low in this population. Using focus groups with 36 Spanish-speaking cancer survivors from Tampa and Puerto Rico, researchers found that a language barrier, as well as a cultural idea that only doctors, not patients, guide treatment decisions, may help account for low participation rates. Looking for ways ...

Easily forgotten, digital assets are an important part of estate planning

2013-06-27
Easily forgotten, digital assets are an important part of estate planning Article provided by Louis Pacella Law Offices Visit us at http://www.athomeplanning.com/ As you create a will or engage in estate planning, when you think of property that you need to distribute, you may think of your home, personal effects and other real estate. However, as technological advances have changed the world, many people neglect to address important electronic assets. These types of assets are collectively known as digital assets. They include property such as digital photos, ...

Tampa shooting suspect charged with hate crimes

2013-06-27
Tampa shooting suspect charged with hate crimes Article provided by Jaime J. Garcia Attorney at Law Visit us at http://www.jaimegarcialaw.com Most people in Florida understand that robbing, assaulting or otherwise harming another person is a serious crime that can carry significant penalties. However, not everyone realizes that the penalties for these crimes can be even higher if prosecutors can show that perpetrator was motivated by prejudice against a class of people to which the victim belongs. These offenses are called "hate crimes." An example ...

Workers' compensation in Illinois

2013-06-27
Workers' compensation in Illinois Article provided by Short & Smith PC Visit us at http://www.shortandsmith.com The Chicago Tribune recently reported sad news, the tragic death of a worker at a construction site. Incidents like this are a reminder of the importance of workplace safety precautions and the need for workers' compensation coverage. Accident under investigation The construction accident happened at Northwestern University, where a Schaumburg construction company is under contract to build a $108 million structure to house the school of music. ...

Seeking custody of a grandchild in Texas

2013-06-27
Seeking custody of a grandchild in Texas Article provided by Connolly & Shireman, L.L.P. Visit us at http://www.connollyshireman.com It is a longstanding principle under both federal and Texas state law that parents have a fundamental right to make decisions about the care and custody of their children. Part of this includes the right to make decisions about which family members get to spend time with the child. As such, grandparents have no automatic rights to custody of their grandchildren, or even to visit with them occasionally. However, in situations ...

Brothers in Final Stages of Development on Indie Title, Organic Panic

2013-06-27
Before Indie Game: The Movie, before BioShock2, before Left 4 Dead, before Halo 3, and before Little BIG Planet was even announced, brothers Damon and Anatole Branch begin working together on Organic Panic [www.lastlimb.com]. Both brothers have extensive experience in the console and mobile video game space and their combined resume includes work with EA, HBO, Ford, Take 2 and the MLB as well as independent titles including GBA Thunderbirds and Xbox 360 Wing Commander Arena. Damon, who initiated the project in 2008, developed many of the game's core elements, including ...

The Orchilles Realty Group Helps First Time Home Buyer Close on a Single Family Home in Metrowest

2013-06-27
Francisco Orchilles, founder of the Orchilles Realty Group with Keller Williams Classic Realty, helped the first time buyers find a house for sale in the 32835 zipcode. The property is a 3 bedroom/ 2 bathroom home and the transaction closed within 45 days of a contract being accepted. The Orlando home was for sale for about 40 days before Orchilles showed it to his clients. The 32835 real estate market was experiencing an uptick in prices like most of the Orlando real estate market. The Orlando home was originally listed for $169,000 when the Orchilles Realty Group first ...

The Global Art League International Winter Exhibition of Professional and Emerging Artists Call For Submissions

2013-06-27
The Global Art League announces it has opened submissions for the annual International Winter Exhibition of Emerging Artists. The exhibition will be held in the galleries of the Montreal Art Centre from 1st to 21st December 2013. Open to Global Art League members over the age of 18 from around the world, the exhibition will feature over 100 selected entrants who will be eligible to be judged among the three best in the exhibition and share a prize of $1000. With the aim of supporting and highlighting emerging visual artists, the inaugural exhibition will feature work ...

The Speedo LZR Elite Swimwear is Now Available in New Colors

2013-06-27
D&J Sports is pleased to announce they now carry the Speedo LZR Elite swimwear for men and women in three new colors. In the past, this swimwear was only available in black, giving swimmers few choices in their competitive swimwear. Today, the suits are also available in combinations of black and sapphire, black and green and navy and raspberry. These brilliant colors allow swimmers to choose something that reflects their personality and helps them stand out from the other swimmers in the pool. The LZR Elite can be found in the jammer style for men and the recordbreaker ...

Ventura County Film Commission Premieres Liaison Position

2013-06-27
To promote Ventura County's role in film and strengthen the local economy, the Economic Development Collaborative-Ventura County, which oversees the county's film commission and the online directory venturacountyfilm411.org, recently contracted with Karen Kelley to fill the newly created film liaison position. Kelley gained valuable experience and contacts through her recent work as the film liaison for the city of Ventura and the Ventura Visitors & Convention Bureau. EDC-VC collaborated with both organizations to expand the position's focus countywide. In this ...

LAST 30 PRESS RELEASES:

KIST develops full-color-emitting upconversion nanoparticle technology for color displays with ultra-high color reproducibility

Towards a fully automated approach for assessing English proficiency

Increase in alcohol deaths in England an ‘acute crisis’

Government urged to tackle inequality in ‘low-carbon tech’ like solar panels and electric cars

Moffitt-led international study finds new drug delivery system effective against rare eye cancer

Boston stroke neurologist elected new American Academy of Neurology president

Center for Open Science launches collaborative health research replication initiative

Crystal L. Mackall, MD, FAACR, recognized with the 2025 AACR-Cancer Research Institute Lloyd J. Old Award in Cancer Immunology

A novel strategy for detecting trace-level nanoplastics in aquatic environments: Multi-feature machine learning-enhanced SERS quantification leveraging the coffee ring effect

Blending the old and the new: Phase-change perovskite enable traditional VCSEL to achieve low-threshold, tunable single-mode lasers

Enhanced photoacoustic microscopy with physics-embedded degeneration learning

Light boosts exciton transport in organic molecular crystal

On-chip multi-channel near-far field terahertz vortices with parity breaking and active modulation

The generation of avoided-mode-crossing soliton microcombs

Unlocking the vibrant photonic realm: A new horizon for structural colors

Integrated photonic polarizers with 2D reduced graphene oxide

Shouldering the burden of how to treat shoulder pain

Stevens researchers put glycemic response modeling on a data diet

Genotype-to-phenotype map of human pelvis illuminates evolutionary tradeoffs between walking and childbirth

Pleistocene-age Denisovan male identified in Taiwan

KATRIN experiment sets most precise upper limit on neutrino mass: 0.45 eV

How the cerebellum controls tongue movements to grab food

It’s not you—it’s cancer

Drug pollution alters migration behavior in salmon

Scientists decode citrus greening resistance and develop AI-assisted treatment

Venom characteristics of a deadly snake can be predicted from local climate

Brain pathway links inflammation to loss of motivation, energy in advanced cancer

Researchers discover large dormant virus can be reactivated in model green alga

New phase of the immune response uncovered

Drawing board rather than salt shaker

[Press-News.org] Feature stops apps from stealing phone users' passwords