首页> 外文会议>International Conference on Intelligent Computation Technology and Automation >A New Dynamic Authentication Captcha Based on Negotiation Between Host and Mobile Terminal for Electronic Commerce
【24h】

A New Dynamic Authentication Captcha Based on Negotiation Between Host and Mobile Terminal for Electronic Commerce

机译:基于主机与移动终端协商的新型动态认证验证码

获取原文

摘要

In electronic commerce, the supply of peculiar commodity is not adequate to users' requirements. Many users are inclined to use malicious software to order scarce commodities instead of legal purchasing processes. To solve this problem, designers of E-commerce websites use CAPTCHA to distinguish if the purchase request is applied by human rather than software. It does not work because malicious software (malware) can identify various CAPTCHA by specific function. So websites attempt to use more complex CAPTCHA to resist malware, however, users cannot identify it either. As a result, using CAPTCHA is not a perfect method to deal with distinguishing problems. In this paper, we propose a novel dynamic authentication CAPTCHA to enhance security and overcome limitations existing in static scheme. Our system can distinguish human from software by the negotiation between host and mobile terminal. The security analysis shows that the method we proposed can resist known types of attacks efficiently.
机译:在电子商务中,特殊商品的供应不足以满足用户的需求。许多用户倾向于使用恶意软件来订购稀缺商品,而不是合法的购买流程。为了解决这个问题,电子商务网站的设计者使用CAPTCHA来区分购买请求是由人而不是软件来应用的。它不起作用,因为恶意软件(恶意软件)可以通过特定功能识别各种验证码。因此,网站试图使用更复杂的验证码来抵御恶意软件,但是,用户也无法识别它。结果,使用CAPTCHA并不是解决区别问题的理想方法。在本文中,我们提出了一种新颖的动态身份验证CAPTCHA,以增强安全性并克服静态方案中存在的局限性。通过主机与移动终端之间的协商,我们的系统可以将人与软件区分开。安全分析表明,我们提出的方法可以有效地抵抗已知类型的攻击。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号