【24h】

Security Analysis of Secure Password Authentication for Keystroke Dynamics

机译:按键动态的安全密码身份验证的安全性分析

获取原文
获取原文并翻译 | 示例

摘要

Password-based authentication and key distribution are important in today's computing environment. Since passwords are easy to remember for human users, the password-based system is used widely. However, due to the fact that the passwords are chosen from small space, the password-based schemes are more susceptible to various attacks including password guessing attacks. Recently, Choe and Kim proposed a new password authentication scheme for keystroke dynamics. However, in this paper, we cryptanalyze the Choe-Kim scheme and show it is vulnerable to various types of attacks such as server-deception attacks, server-impersonation attacks and password guessing attacks. We also comment on the scheme that more care must be taken when designing password-based schemes and briefly show how the standard like IEEE P1363.2 can be used for strengthening those schemes.
机译:在当今的计算环境中,基于密码的身份验证和密钥分发非常重要。由于密码对于人类用户来说很容易记住,因此基于密码的系统被广泛使用。但是,由于从很小的空间中选择了密码,基于密码的方案更容易受到各种攻击,包括密码猜测攻击。最近,Choe和Kim提出了一种用于击键动态的新密码验证方案。但是,在本文中,我们对Choe-Kim方案进行了加密分析,并表明它容易受到各种类型的攻击,例如服务器欺骗攻击,服务器模拟攻击和密码猜测攻击。我们还对该方案进行了评论,在设计基于密码的方案时必须格外小心,并简要说明如何使用IEEE P1363.2这样的标准来增强这些方案。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号