https://scholars.lib.ntu.edu.tw/handle/123456789/374375
標題: | Password Cracking Based on Special Keyboard Patterns | 作者: | Hsien-Cheng Chou, Hung-Chang Lee, Chih-Wen Hsueh, Fei-Pei Lai, FEI-PEI LAI |
關鍵字: | Brute-force attack; Dictionary attack; Keyboard pattern; Password cracking | 公開日期: | 一月-2012 | 卷: | 8 | 期: | 1A | 起(迄)頁: | 387-402 | 來源出版物: | International Journal of Innovative Computing, Information and Control | 摘要: | Passwords are still the most commonly used mechanism for user authentication. However, they are vulnerable to dictionary attacks. In order to guard against such attacks, administrative policies force the use of complex rules to create passwords. One commonly used "trick" is to use keyboard patterns, i.e., key patterns on a keyboard, to create passwords that conform to the complex rules. This paper proposes an efficient and effective method to attack passwords generated from some special keyboard patterns. We create a framework to formally describe the commonly used keyboard patterns of adjacent keys and parallel keys, called AP patterns, to generate password databases. Our simulation results show that the password space generated using AP patterns is about 2 44.47 times smaller than that generated for a brute-force attack. We also design a hybrid password cracking system consisting of different attacking methods to verify the effectiveness. Our results show that the number of passwords cracked increases up to 114% on average than without applying AP patterns. © 2012 ICIC International. |
URI: | http://scholars.lib.ntu.edu.tw/handle/123456789/374375 | SDG/關鍵字: | Brute-force attack; Dictionary attack; Key Patterns; Keyboard pattern; Password cracking; User authentication; Authentication; Computer crime |
顯示於: | 生醫電子與資訊學研究所 |
在 IR 系統中的文件,除了特別指名其著作權條款之外,均受到著作權保護,並且保留所有的權利。