跳到主要导航 跳到搜索 跳到主要内容

Robust password changing and DoS resilience for human-centric password authentication

  • Xidian University
  • Tsinghua University
  • Jinan University
  • Morgan State University

科研成果: 期刊稿件文章同行评审

摘要

In password-based or two-factor (password and smart card) authentications, password changing is one of common techniques used to improve the security of the systems protected by the password. However, the password-changing operations in existing password authentications either depend on the login phase or violate the common practice that an old password should not be valid for subsequent login after being updated. On the other hand, password mistyping is very common in reality, which may be random or be skewed by the adversary via technical means or social engineering manipulation [i.e., a kind of denial-of-service (DoS) attack]. In human-centric authentication mechanisms, password changing and DoS resilience are not marginal issues. The paper addresses the requirements of robust password changing in authentication and presents SPCA, a password authentication scheme with robust password changing, DoS resilience, and card-compromise security. Thus, the proposal can be viewed as a suitable candidate instantiation for authentication services of human-centric security, by embedding in the computer and software systems. SPCA also achieves other appealing features, such as self-healing ability and strong privacy protection, which may be useful for human-centric applications.

源语言英语
页(从-至)1552-1559
页数8
期刊Security and Communication Networks
7
10
DOI
出版状态已出版 - 1 10月 2014

指纹

探究 'Robust password changing and DoS resilience for human-centric password authentication' 的科研主题。它们共同构成独一无二的指纹。

引用此