Detailed Information

Cited 0 time in webofscience Cited 0 time in scopus
Metadata Downloads

Password typographical error resilience in honey encryption

Full metadata record
DC Field Value Language
dc.contributor.authorChoi, Hoyul-
dc.contributor.authorJeong, Jongmin-
dc.contributor.authorWoo, Simon S.-
dc.contributor.authorKang, Kyungtae-
dc.contributor.authorHur, Junbeom-
dc.date.accessioned2021-06-22T09:25:43Z-
dc.date.available2021-06-22T09:25:43Z-
dc.date.created2021-01-21-
dc.date.issued2019-11-
dc.identifier.issn0167-4048-
dc.identifier.urihttps://scholarworks.bwise.kr/erica/handle/2021.sw.erica/2060-
dc.description.abstractHoney encryption (HE) is a novel password-based encryption scheme that is secure against brute-force attacks even if users' passwords have min-entropy. However, in HE, decryption with an incorrect key produces fake messages that appear valid. Hence, password typographical errors may confuse even legitimate users. This has been one of the most challenging problems in HE. To tackle this challenge, we propose three types of protocols that enable legitimate users to detect password typographical errors in HE. We conducted a theoretical analysis and performed an IRB-approved user study with 150 participants to compare the performance of each scheme. We also analyzed the security of the proposed schemes against online and offline brute-force attacks. The results from the user study and theoretical analysis show that the proposed schemes can effectively solve the typographical error problem of HE, which can detect typographical errors with 99% accuracy. (C) 2018 Elsevier Ltd. All rights reserved.-
dc.language영어-
dc.language.isoen-
dc.publisherELSEVIER ADVANCED TECHNOLOGY-
dc.titlePassword typographical error resilience in honey encryption-
dc.typeArticle-
dc.contributor.affiliatedAuthorKang, Kyungtae-
dc.identifier.doi10.1016/j.cose.2018.07.020-
dc.identifier.scopusid2-s2.0-85055653864-
dc.identifier.wosid000494048500043-
dc.identifier.bibliographicCitationCOMPUTERS & SECURITY, v.87, pp.1 - 12-
dc.relation.isPartOfCOMPUTERS & SECURITY-
dc.citation.titleCOMPUTERS & SECURITY-
dc.citation.volume87-
dc.citation.startPage1-
dc.citation.endPage12-
dc.type.rimsART-
dc.type.docTypeArticle-
dc.description.journalClass1-
dc.description.isOpenAccessN-
dc.description.journalRegisteredClassscie-
dc.description.journalRegisteredClassscopus-
dc.relation.journalResearchAreaComputer Science-
dc.relation.journalWebOfScienceCategoryComputer Science, Information Systems-
dc.subject.keywordPlusDESIGN-
dc.subject.keywordAuthorPassword-based encryption-
dc.subject.keywordAuthorHoney encryption-
dc.subject.keywordAuthorPassword typographical error-
dc.subject.keywordAuthorBrute-force resilience-
dc.subject.keywordAuthorTypographical error resilience-
dc.identifier.urlhttps://www.sciencedirect.com/science/article/pii/S0167404818311246?via%3Dihub-
Files in This Item
Go to Link
Appears in
Collections
COLLEGE OF COMPUTING > DEPARTMENT OF ARTIFICIAL INTELLIGENCE > 1. Journal Articles

qrcode

Items in ScholarWorks are protected by copyright, with all rights reserved, unless otherwise indicated.

Related Researcher

Researcher Kang, Kyung tae photo

Kang, Kyung tae
COLLEGE OF COMPUTING (DEPARTMENT OF ARTIFICIAL INTELLIGENCE)
Read more

Altmetrics

Total Views & Downloads

BROWSE