1 + 1 = You: Measuring the comprehensibility of metaphors for configuring backup authentication
Thursday, July 16th, 2009http://cups.cs.cmu.edu/soups/2009/proceedings/a9-schechter.pdf
Stuart Schechter and Robert Reeder
What to do when the user forget their password? A common method is to provide security questions. Unfortunately, an initial analysis of the most commonly used security questions found that none were all that great, suffering from either poor memorability or poor security. What about e-mail based recovery? This doesn’t work [...]