Single password authentication method for remote user based on mobile terminal assistance

To address the issue that users frequently reuse their weak passwords in password-based authentication system,single password authentication based on secret sharing between server and mobile terminal (SPASS) was proposed,which allows a remote user to use a single password to authenticate to multiple...

Full description

Saved in:
Bibliographic Details
Main Authors: Yuan XU, Chao YANG, Li YANG
Format: Article
Language:zho
Published: Editorial Department of Journal on Communications 2019-02-01
Series:Tongxin xuebao
Subjects:
Online Access:http://www.joconline.com.cn/thesisDetails#10.11959/j.issn.1000-436x.2019044
Tags: Add Tag
No Tags, Be the first to tag this record!
_version_ 1850211455536726016
author Yuan XU
Chao YANG
Li YANG
author_facet Yuan XU
Chao YANG
Li YANG
author_sort Yuan XU
collection DOAJ
description To address the issue that users frequently reuse their weak passwords in password-based authentication system,single password authentication based on secret sharing between server and mobile terminal (SPASS) was proposed,which allows a remote user to use a single password to authenticate to multiple services securely and has no need to store any secret of the user in the client PC.Even when the mobile device is lost or stolen,no damage to the user’s information will be induced.Security analysis and performance test show that SPASS greatly improves the security of the user’s secret information and resists dictionary attacks,honeypot attacks,cross-site scripting attacks etc.Furthermore,the proposed scheme can lighten burden of the user’s memory,reduce the storage pressure and easy to be deployed.
format Article
id doaj-art-3d6cef7192444166aa6dcd6d1992298c
institution OA Journals
issn 1000-436X
language zho
publishDate 2019-02-01
publisher Editorial Department of Journal on Communications
record_format Article
series Tongxin xuebao
spelling doaj-art-3d6cef7192444166aa6dcd6d1992298c2025-08-20T02:09:33ZzhoEditorial Department of Journal on CommunicationsTongxin xuebao1000-436X2019-02-014017418759725386Single password authentication method for remote user based on mobile terminal assistanceYuan XUChao YANGLi YANGTo address the issue that users frequently reuse their weak passwords in password-based authentication system,single password authentication based on secret sharing between server and mobile terminal (SPASS) was proposed,which allows a remote user to use a single password to authenticate to multiple services securely and has no need to store any secret of the user in the client PC.Even when the mobile device is lost or stolen,no damage to the user’s information will be induced.Security analysis and performance test show that SPASS greatly improves the security of the user’s secret information and resists dictionary attacks,honeypot attacks,cross-site scripting attacks etc.Furthermore,the proposed scheme can lighten burden of the user’s memory,reduce the storage pressure and easy to be deployed.http://www.joconline.com.cn/thesisDetails#10.11959/j.issn.1000-436x.2019044password-based authentication;secret sharing;authentication based on mobile terminal;malware;dictionary attack
spellingShingle Yuan XU
Chao YANG
Li YANG
Single password authentication method for remote user based on mobile terminal assistance
Tongxin xuebao
password-based authentication;secret sharing;authentication based on mobile terminal;malware;dictionary attack
title Single password authentication method for remote user based on mobile terminal assistance
title_full Single password authentication method for remote user based on mobile terminal assistance
title_fullStr Single password authentication method for remote user based on mobile terminal assistance
title_full_unstemmed Single password authentication method for remote user based on mobile terminal assistance
title_short Single password authentication method for remote user based on mobile terminal assistance
title_sort single password authentication method for remote user based on mobile terminal assistance
topic password-based authentication;secret sharing;authentication based on mobile terminal;malware;dictionary attack
url http://www.joconline.com.cn/thesisDetails#10.11959/j.issn.1000-436x.2019044
work_keys_str_mv AT yuanxu singlepasswordauthenticationmethodforremoteuserbasedonmobileterminalassistance
AT chaoyang singlepasswordauthenticationmethodforremoteuserbasedonmobileterminalassistance
AT liyang singlepasswordauthenticationmethodforremoteuserbasedonmobileterminalassistance