| | SLO | ENG | Cookies and privacy

Bigger font | Smaller font

Show document Help

Title:Security analysis and improvements to the psychopass method
Authors:ID Brumen, Boštjan (Author)
ID Heričko, Marjan (Author)
ID Rozman, Ivan (Author)
ID Hölbl, Marko (Author)
Files:.pdf Journal_of_Medical_Internet_Research_2013_Brumen_et_al._Security_Analysis_and_Improvements_to_the_PsychoPass_Method.pdf (542,01 KB)
MD5: 53EE0C3A1E855B54D93F9550A252CD11
PID: 20.500.12556/dkum/522c5a21-e6c0-49c7-bacf-ce5ae7ad787d
 
URL http://www.jmir.org/2013/8/e161/
 
Language:English
Work type:Scientific work
Typology:1.01 - Original Scientific Article
Organization:FERI - Faculty of Electrical Engineering and Computer Science
Abstract:Background: In a recent paper, Pietro Cipresso et al proposed the PsychoPass method, a simple way to create strong passwords that are easy to remember. However, the method has some security issues that need to be addressed. Objective: To perform a security analysis on the PsychoPass method and outline the limitations of and possible improvements to the method. Methods: We used the brute force analysis and dictionary attack analysis of the PsychoPass method to outline its weaknesses. Results: The first issue with the Psychopass method is that it requires the password reproduction on the same keyboard layout as was used to generate the password. The second issue is a security weakness: although the produced password is 24 characters long, the password is still weak. We elaborate on the weakness and propose a solution that produces strong passwords. The proposed version first requires the use of the SHIFT and ALT-GR keys in combination with other keys, and second, the keys need to be 1-2 distances apart. Conclusions: The proposed improved PsychoPass method yields passwords that can be broken only in hundreds of years based on current computing powers. The proposed PsychoPass method requires 10 keys, as opposed to 20 keys in the original method, for comparable password strength.
Keywords:passwords, cryptanalysis, data security
Publication status:Published
Publication version:Version of Record
Year of publishing:2013
Number of pages:str. 1-7
Numbering:Letn. 15, št. 8
PID:20.500.12556/DKUM-67103 New window
ISSN:1438-8871
UDC:61:004.6
ISSN on article:1438-8871
COBISS.SI-ID:17522198 New window
DOI:10.2196/jmir.2366 New window
NUK URN:URN:SI:UM:DK:QVWAUX2Q
Publication date in DKUM:02.08.2017
Views:1490
Downloads:734
Metadata:XML DC-XML DC-RDF
Categories:Misc.
:
Copy citation
  
Average score:(0 votes)
Your score:Voting is allowed only for logged in users.
Share:Bookmark and Share



Hover the mouse pointer over a document title to show the abstract or click on the title to get all document metadata.

Record is a part of a journal

Title:Journal of medical internet research
Shortened title:JMIR, J. med. internet res.
Publisher:s. n.
ISSN:1438-8871
COBISS.SI-ID:2406629 New window

Licences

License:CC BY 4.0, Creative Commons Attribution 4.0 International
Link:http://creativecommons.org/licenses/by/4.0/
Description:This is the standard Creative Commons license that gives others maximum freedom to do what they want with the work as long as they credit the author.
Licensing start date:02.08.2017

Secondary language

Language:Slovenian
Keywords:varnost podatkov, gesla, kriptografija


Comments

Leave comment

You must log in to leave a comment.

Comments (0)
0 - 0 / 0
 
There are no comments!

Back
Logos of partners University of Maribor University of Ljubljana University of Primorska University of Nova Gorica