Single password authentication method for remote user based on mobile terminal assistance
To address the issue that users frequently reuse their weak passwords in password-based authentication system,single password authentication based on secret sharing between server and mobile terminal (SPASS) was proposed,which allows a remote user to use a single password to authenticate to multiple...
Saved in:
Main Authors: | , , |
---|---|
Format: | Article |
Language: | zho |
Published: |
Editorial Department of Journal on Communications
2019-02-01
|
Series: | Tongxin xuebao |
Subjects: | |
Online Access: | http://www.joconline.com.cn/zh/article/doi/10.11959/j.issn.1000-436x.2019044/ |
Tags: |
Add Tag
No Tags, Be the first to tag this record!
|
_version_ | 1841539399300415488 |
---|---|
author | Yuan XU Chao YANG Li YANG |
author_facet | Yuan XU Chao YANG Li YANG |
author_sort | Yuan XU |
collection | DOAJ |
description | To address the issue that users frequently reuse their weak passwords in password-based authentication system,single password authentication based on secret sharing between server and mobile terminal (SPASS) was proposed,which allows a remote user to use a single password to authenticate to multiple services securely and has no need to store any secret of the user in the client PC.Even when the mobile device is lost or stolen,no damage to the user’s information will be induced.Security analysis and performance test show that SPASS greatly improves the security of the user’s secret information and resists dictionary attacks,honeypot attacks,cross-site scripting attacks etc.Furthermore,the proposed scheme can lighten burden of the user’s memory,reduce the storage pressure and easy to be deployed. |
format | Article |
id | doaj-art-02456c6e91374448857be5fd65f4b86e |
institution | Kabale University |
issn | 1000-436X |
language | zho |
publishDate | 2019-02-01 |
publisher | Editorial Department of Journal on Communications |
record_format | Article |
series | Tongxin xuebao |
spelling | doaj-art-02456c6e91374448857be5fd65f4b86e2025-01-14T07:16:24ZzhoEditorial Department of Journal on CommunicationsTongxin xuebao1000-436X2019-02-014017418759725386Single password authentication method for remote user based on mobile terminal assistanceYuan XUChao YANGLi YANGTo address the issue that users frequently reuse their weak passwords in password-based authentication system,single password authentication based on secret sharing between server and mobile terminal (SPASS) was proposed,which allows a remote user to use a single password to authenticate to multiple services securely and has no need to store any secret of the user in the client PC.Even when the mobile device is lost or stolen,no damage to the user’s information will be induced.Security analysis and performance test show that SPASS greatly improves the security of the user’s secret information and resists dictionary attacks,honeypot attacks,cross-site scripting attacks etc.Furthermore,the proposed scheme can lighten burden of the user’s memory,reduce the storage pressure and easy to be deployed.http://www.joconline.com.cn/zh/article/doi/10.11959/j.issn.1000-436x.2019044/password-based authenticationsecret sharingauthentication based on mobile terminalmalwaredictionary attack |
spellingShingle | Yuan XU Chao YANG Li YANG Single password authentication method for remote user based on mobile terminal assistance Tongxin xuebao password-based authentication secret sharing authentication based on mobile terminal malware dictionary attack |
title | Single password authentication method for remote user based on mobile terminal assistance |
title_full | Single password authentication method for remote user based on mobile terminal assistance |
title_fullStr | Single password authentication method for remote user based on mobile terminal assistance |
title_full_unstemmed | Single password authentication method for remote user based on mobile terminal assistance |
title_short | Single password authentication method for remote user based on mobile terminal assistance |
title_sort | single password authentication method for remote user based on mobile terminal assistance |
topic | password-based authentication secret sharing authentication based on mobile terminal malware dictionary attack |
url | http://www.joconline.com.cn/zh/article/doi/10.11959/j.issn.1000-436x.2019044/ |
work_keys_str_mv | AT yuanxu singlepasswordauthenticationmethodforremoteuserbasedonmobileterminalassistance AT chaoyang singlepasswordauthenticationmethodforremoteuserbasedonmobileterminalassistance AT liyang singlepasswordauthenticationmethodforremoteuserbasedonmobileterminalassistance |