• DocumentCode
    3077877
  • Title

    Web based security with LOPass user authentication protocol in mobile application

  • Author

    Bhole, Ashish T. ; Chaudhari, Sneha

  • Author_Institution
    SSBT´s Coll. of Eng. & Technol., North Maharashtra Univ., Jalgaon, India
  • fYear
    2013
  • fDate
    26-28 Dec. 2013
  • Firstpage
    1
  • Lastpage
    6
  • Abstract
    Today, the internet has became most convenient and widely used media for people exchanging information and doing business over the internet such as accessing web based emails, online auctions or banking sites. But nowadays, accessing the internet is faced with many challenges. One of the most important challenges is to ensure security with vital role to provide security in websites. The text passwords are convenient and simplest form for a user authentication on websites and this level is more prone to security attacks. User mostly uses theses weak passwords and it is often used across several websites. The reuse of the same password in untrusted websites causes password threats. Hackers invoke password stealing methods to grab password such as phishing, malware and keyloggers. Hereby we propose the user authentication protocol named LOPass which creates long term password and one time password for authenticating the user. It has three phases as registration, login and recovery phase. In LOPass, random password is generated for each login. Registration is used for the registration of the user. Recovery phase is used, if the user´s mobile phone gets lost. The user needs to remember only his long term password which is secret.
  • Keywords
    Web sites; authorisation; computer crime; cryptographic protocols; invasive software; message authentication; mobile computing; telecommunication security; Internet; LOPass user authentication protocol; Web based security; Website security; hackers; information exchange; keyloggers; login phase; long term password; malware; mobile application; one time password; password stealing methods; password threats; phishing; random password; recovery phase; registration phase; security attacks; text passwords; user mobile phone; Authentication; Databases; Mobile communication; Mobile handsets; Protocols; Servers; LOPass; Web security; long term password; one time password; user authentication;
  • fLanguage
    English
  • Publisher
    ieee
  • Conference_Titel
    Computational Intelligence and Computing Research (ICCIC), 2013 IEEE International Conference on
  • Conference_Location
    Enathi
  • Print_ISBN
    978-1-4799-1594-1
  • Type

    conf

  • DOI
    10.1109/ICCIC.2013.6724167
  • Filename
    6724167