• DocumentCode
    3080759
  • Title

    ProcurePass: A User Authentication Protocol to Resist Password Stealing and Password Reuse Attack

  • Author

    Kassim, Mariam M. ; Sujitha, A.

  • Author_Institution
    Comput. Sci. & Eng. Dept., Sasurie Coll. of Eng., Tirupur, India
  • fYear
    2013
  • fDate
    24-26 Aug. 2013
  • Firstpage
    31
  • Lastpage
    34
  • Abstract
    The most popular form of user authentication is the text password, which is the most convenient and the simplest. Users mostly choose weak passwords and reuse the same password across different websites and thus, a domino effect. i.e., when an adversary compromises one password, she exploits, gaining access to more websites. Also typing passwords into public computers (kiosks) suffers password thief threat, thereby the adversary can launch several password stealing attacks, such as phishing, key loggers and malware. Therefore user´s passwords tend to be stolen and compromised under different threats and vulnerabilities. A user authentication protocol named Procure Pass, which benefits a user´s cell phone and short message service to prevent password stealing and password reuse attacks. Procure Pass adopts the one-time password strategy, which free users from having to remember or type any passwords into conventional public computers for authentication. In case of users lose their cell phones, this still works by reissuing the SIM cards and long-term passwords.
  • Keywords
    electronic messaging; message authentication; mobile handsets; ProcurePass; SIM cards; long-term passwords; one-time password strategy; password reuse attack; password stealing resistance; password thief threat; short message service; text password; user authentication protocol; user cell phone; Authentication; Computers; Cryptography; Human factors; Protocols; Servers; Network security; password reuse attack; password stealing attack; user authentication;
  • fLanguage
    English
  • Publisher
    ieee
  • Conference_Titel
    Computational and Business Intelligence (ISCBI), 2013 International Symposium on
  • Conference_Location
    New Delhi
  • Print_ISBN
    978-0-7695-5066-4
  • Type

    conf

  • DOI
    10.1109/ISCBI.2013.14
  • Filename
    6724318