首页> 外国专利> USABLE SECURITY OF ONLINE PASSWORD MANAGMENT WITH SENSOR-BASED AUTHENTICATION

USABLE SECURITY OF ONLINE PASSWORD MANAGMENT WITH SENSOR-BASED AUTHENTICATION

机译:具有基于传感器的身份验证的在线密码管理的安全性

摘要

A multi-party security protocol that incorporates biometric-based authentication and withstands attacks against any single party (e.g., mobile phone, cloud, or the user). The protocol involves the function split between mobile and cloud and the mechanisms to chain-hold the secrets. A key generation mechanisms binds secrets to a specific device or URL (uniform resource locator) by adding salt to a master credential. An inline CAPTCHA (Completely Automated Public Turing test to tell Computers and Humans Apart) handling mechanism uses the same sensor modality as the authentication process, which not only improves the usability, but also facilitates the authentication process. This architecture further enhances existing overall system security (e.g., handling untrusted or compromised cloud service, phone being lost, impersonation, etc.) and also improves the usability by automatically handling the CAPTCHA.
机译:一种多方安全协议,该协议包含基于生物特征的身份验证,可以抵御针对任何单方(例如移动电话,云或用户)的攻击。该协议涉及移动和云之间的功能拆分以及将秘密链式保持的机制。密钥生成机制通过将盐添加到主证书来将秘密绑定到特定设备或URL(统一资源定位符)。内联CAPTCHA(完全自动化的公共Turing测试,告诉计算机和人类分开)处理机制使用与身份验证过程相同的传感器模式,这不仅提高了可用性,而且还简化了身份验证过程。该体系结构进一步增强了现有的整体系统安全性(例如,处理不受信任或受损的云服务,电话丢失,冒充等),并且还通过自动处理CAPTCHA来提高可用性。

著录项

  • 公开/公告号US2016055328A1

    专利类型

  • 公开/公告日2016-02-25

    原文格式PDF

  • 申请/专利权人 MICROSOFT TECHNOLOGY LICENSING LLC;

    申请/专利号US201514832954

  • 发明设计人 FAN YANG;LIDONG ZHOU;GUOBIN SHEN;

    申请日2015-08-21

  • 分类号G06F21/32;H04L9/32;H04L29/06;H04L9/08;

  • 国家 US

  • 入库时间 2022-08-21 14:35:12

相似文献

  • 专利
  • 外文文献
  • 中文文献
获取专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号