Security analysis of secure password authentication for keystroke dynamics

被引:0
|
作者
Song, Hyunsoo [1 ]
Kwon, Taekyoung [1 ]
机构
[1] Sejong Univ, Informat Secur Lab, Seoul 143747, South Korea
关键词
D O I
暂无
中图分类号
TP18 [人工智能理论];
学科分类号
081104 ; 0812 ; 0835 ; 1405 ;
摘要
Password-based authentication and key distribution are important in today's computing environment. Since passwords are easy to remember for human users, the password-based system is used widely. However, due to the fact that the passwords are chosen from small space, the password-based schemes are more susceptible to various attacks including password guessing attacks. Recently, Choe and Kim proposed a new password authentication scheme for keystroke dynamics. However, in this paper, we cryptanalyze the Choe-Kim scheme and show it is vulnerable to various types of attacks such as server-deception attacks, server-impersonation attacks and password guessing attacks. We also comment on the scheme that more care must be taken when designing password-based schemes and briefly show how the standard like IEEE P1363.2 can be used for strengthening those schemes.
引用
收藏
页码:916 / 923
页数:8
相关论文
共 50 条
  • [31] Analysis and Evaluation of Keystroke Dynamics as a Feature of Contextual Authentication
    Bicakci, Kemal
    Salman, Oguzhan
    Uzunay, Yusuf
    Tan, Mehmet
    2020 INTERNATIONAL CONFERENCE ON INFORMATION SECURITY AND CRYPTOLOGY (ISCTURKEY 2020), 2020, : 11 - 17
  • [32] Password Recovery Mechanism Based on Keystroke Dynamics
    Roy, Soumen
    Roy, Utpal
    Sinha, D. D.
    INFORMATION SYSTEMS DESIGN AND INTELLIGENT APPLICATIONS, VOL 1, 2015, 339 : 245 - 257
  • [33] Provable Security Analysis of the Secure Remote Password Protocol
    Dayanikli, Dennis
    Lehmann, Anja
    2024 IEEE 37TH COMPUTER SECURITY FOUNDATIONS SYMPOSIUM, CSF 2024, 2024, : 620 - 635
  • [34] Security Enhancement of Knowledge-based User Authentication through Keystroke Dynamics
    Roy, Soumen
    Roy, Utpal
    Sinha, D. D.
    4TH INTERNATIONAL CONFERENCE ON ADVANCEMENTS IN ENGINEERING & TECHNOLOGY (ICAET-2016), 2016, 57
  • [35] High Security User Authentication Enabled by Piezoelectric Keystroke Dynamics and Machine Learning
    Huang, Anbiao
    Gao, Shuo
    Chen, Junliang
    Xu, Lijun
    Nathan, Arokia
    IEEE SENSORS JOURNAL, 2020, 20 (21) : 13037 - 13046
  • [36] Secure User Authentication Leveraging Keystroke Dynamics via Wi-Fi Sensing
    Gu, Yu
    Wang, Yantong
    Wang, Meng
    Pan, Zulie
    Hu, Zhihao
    Liu, Zhi
    Shi, Fan
    Dong, Mianxiong
    IEEE TRANSACTIONS ON INDUSTRIAL INFORMATICS, 2022, 18 (04) : 2784 - 2795
  • [37] Security analysis of the generalized key agreement and password authentication protocol
    Yeh, HT
    Sun, HM
    Hwang, T
    IEEE COMMUNICATIONS LETTERS, 2001, 5 (11) : 462 - 463
  • [38] Keystroke Dynamics Authentication For Collaborative Systems
    Giot, Romain
    El-Abed, Mohamad
    Rosenberger, Christophe
    PROCEEDINGS OF THE 2009 INTERNATIONAL SYMPOSIUM ON COLLABORATIVE TECHNOLOGIES AND SYSTEMS, 2009, : 172 - 179
  • [39] On the security of some password authentication protocols
    Hsieh, BT
    Sun, HM
    Hwang, T
    INFORMATICA, 2003, 14 (02) : 195 - 204
  • [40] Simple and secure password authentication protocol (SAS)
    Sandirigama, M
    Shimizu, A
    Noda, MT
    IEICE TRANSACTIONS ON COMMUNICATIONS, 2000, E83B (06) : 1363 - 1365