Single password authentication method for remote user based on mobile terminal assistance

To address the issue that users frequently reuse their weak passwords in password-based authentication system,single password authentication based on secret sharing between server and mobile terminal (SPASS) was proposed,which allows a remote user to use a single password to authenticate to multiple...

Full description

Saved in:
Bibliographic Details
Main Authors: Yuan XU, Chao YANG, Li YANG
Format: Article
Language:zho
Published: Editorial Department of Journal on Communications 2019-02-01
Series:Tongxin xuebao
Subjects:
Online Access:http://www.joconline.com.cn/zh/article/doi/10.11959/j.issn.1000-436x.2019044/
Tags: Add Tag
No Tags, Be the first to tag this record!
_version_ 1841539399300415488
author Yuan XU
Chao YANG
Li YANG
author_facet Yuan XU
Chao YANG
Li YANG
author_sort Yuan XU
collection DOAJ
description To address the issue that users frequently reuse their weak passwords in password-based authentication system,single password authentication based on secret sharing between server and mobile terminal (SPASS) was proposed,which allows a remote user to use a single password to authenticate to multiple services securely and has no need to store any secret of the user in the client PC.Even when the mobile device is lost or stolen,no damage to the user’s information will be induced.Security analysis and performance test show that SPASS greatly improves the security of the user’s secret information and resists dictionary attacks,honeypot attacks,cross-site scripting attacks etc.Furthermore,the proposed scheme can lighten burden of the user’s memory,reduce the storage pressure and easy to be deployed.
format Article
id doaj-art-02456c6e91374448857be5fd65f4b86e
institution Kabale University
issn 1000-436X
language zho
publishDate 2019-02-01
publisher Editorial Department of Journal on Communications
record_format Article
series Tongxin xuebao
spelling doaj-art-02456c6e91374448857be5fd65f4b86e2025-01-14T07:16:24ZzhoEditorial Department of Journal on CommunicationsTongxin xuebao1000-436X2019-02-014017418759725386Single password authentication method for remote user based on mobile terminal assistanceYuan XUChao YANGLi YANGTo address the issue that users frequently reuse their weak passwords in password-based authentication system,single password authentication based on secret sharing between server and mobile terminal (SPASS) was proposed,which allows a remote user to use a single password to authenticate to multiple services securely and has no need to store any secret of the user in the client PC.Even when the mobile device is lost or stolen,no damage to the user’s information will be induced.Security analysis and performance test show that SPASS greatly improves the security of the user’s secret information and resists dictionary attacks,honeypot attacks,cross-site scripting attacks etc.Furthermore,the proposed scheme can lighten burden of the user’s memory,reduce the storage pressure and easy to be deployed.http://www.joconline.com.cn/zh/article/doi/10.11959/j.issn.1000-436x.2019044/password-based authenticationsecret sharingauthentication based on mobile terminalmalwaredictionary attack
spellingShingle Yuan XU
Chao YANG
Li YANG
Single password authentication method for remote user based on mobile terminal assistance
Tongxin xuebao
password-based authentication
secret sharing
authentication based on mobile terminal
malware
dictionary attack
title Single password authentication method for remote user based on mobile terminal assistance
title_full Single password authentication method for remote user based on mobile terminal assistance
title_fullStr Single password authentication method for remote user based on mobile terminal assistance
title_full_unstemmed Single password authentication method for remote user based on mobile terminal assistance
title_short Single password authentication method for remote user based on mobile terminal assistance
title_sort single password authentication method for remote user based on mobile terminal assistance
topic password-based authentication
secret sharing
authentication based on mobile terminal
malware
dictionary attack
url http://www.joconline.com.cn/zh/article/doi/10.11959/j.issn.1000-436x.2019044/
work_keys_str_mv AT yuanxu singlepasswordauthenticationmethodforremoteuserbasedonmobileterminalassistance
AT chaoyang singlepasswordauthenticationmethodforremoteuserbasedonmobileterminalassistance
AT liyang singlepasswordauthenticationmethodforremoteuserbasedonmobileterminalassistance