dc.contributor.author
Güldenring, Benjamin
dc.contributor.author
Roth, Volker
dc.contributor.author
Ries, Lars
dc.date.accessioned
2018-06-08T03:31:34Z
dc.date.available
2015-06-11T07:22:50.215Z
dc.identifier.uri
https://refubium.fu-berlin.de/handle/fub188/15372
dc.identifier.uri
http://dx.doi.org/10.17169/refubium-19560
dc.description.abstract
We present Knock Yourself Out (KYO), a password generator that enables secure
authentication against a computationally unbounded adversary. Master passwords
can be surprisingly short and may be re-used for multiple service accounts
even in the event of client compromises and multiple server compromises. At
the same time, KYO is transparent to service operators and backwards-
compatible. Master passwords are fully client-manageable while secrets shared
with service operators can be kept constant. Likewise, secrets can be changed
without having to change one’s passwords. KYO does not rely on collision-
resistant hash functions and can be implemented with fast non-cryptographic
hash functions. We detail the design of KYO and we analyze its security
mathematically in a random hash function model. In our empirical evaluation we
find that KYO remains secure even if small sets of hash functions are used
instead, in other words, KYO requires minimal storage and is highly practical.
en
dc.rights.uri
http://creativecommons.org/licenses/by-nc-sa/3.0/
dc.subject
Authentication
dc.subject.ddc
000 Informatik, Informationswissenschaft, allgemeine Werke::000 Informatik, Wissen, Systeme::000 Informatik, Informationswissenschaft, allgemeine Werke
dc.title
Knock Yourself Out
dc.type
Konferenzveröffentlichung
dcterms.bibliographicCitation
The 2015 Network and Distributed System Security (NDSS) Symposium was hosted
February 8-11, 2015 at the Catamaran Resort Hotel and Spa in San Diego,
California
dc.title.subtitle
Secure Authentication with Short Re-Usable Passwords
dcterms.bibliographicCitation.doi
10.14722/ndss.2015.23261
dcterms.bibliographicCitation.url
http://www.internetsociety.org/doc/knock-yourself-out-secure-authentication-short-re-usable-passwords
refubium.affiliation
Mathematik und Informatik
de
refubium.affiliation.other
Institut für Informatik
refubium.mycore.fudocsId
FUDOCS_document_000000022603
refubium.resourceType.isindependentpub
no
refubium.mycore.derivateId
FUDOCS_derivate_000000005035
dcterms.accessRights.openaire
open access