Cantitate/Preț
Produs

Leakage Resilient Password Systems: SpringerBriefs in Computer Science

Autor Yingjiu Li, Qiang Yan, Robert H. Deng
en Limba Engleză Paperback – 12 mai 2015
This book investigates tradeoff between security and usability in designing leakage resilient password systems (LRP) and introduces two practical LRP systems named Cover Pad and ShadowKey. It demonstrates that existing LRP systems are subject to both brute force attacks and statistical attacks and that these attacks cannot be effectively mitigated without sacrificing the usability of LRP systems. Quantitative analysis proves that a secure LRP system in practical settings imposes a considerable amount of cognitive workload unless certain secure channels are involved. The book introduces a secure and practical LRP system, named Cover Pad, for password entry on touch-screen mobile devices. Cover Pad leverages a temporary secure channel between a user and a touch screen which can be easily realized by placing a hand shielding gesture on the touch screen. The temporary secure channel is used to deliver a hidden message to the user for transforming each password symbol before entering it on the touch screen. A user study shows the impact of these testing conditions on the users' performance in practice. Finally, this book introduces a new LRP system named ShadowKey. Shadow Key is designed to achieve better usability for leakage resilient password entry. It leverages either a permanent secure channel, which naturally exists between a user and the display unit of certain mobile devices, or a temporary secure channel, which can be easily realized between a user and a touch screen with a hand-shielding gesture. The secure channel protects the mappings between original password symbols and associated random symbols. Unlike previous LRP system users, Shadow Key users do not need to remember anything except their passwords. Leakage Resilient Password Systems is designed for professionals working in the security industry. Advanced-level students studying computer science and electrical engineering will find this brief full of useful material.
Citește tot Restrânge

Din seria SpringerBriefs in Computer Science

Preț: 32311 lei

Preț vechi: 40388 lei
-20%

Puncte Express: 485

Carte tipărită la comandă

Livrare economică 12-26 octombrie

Livrare prin curier în România Termenul estimat este afișat lângă disponibilitate.
Transport gratuit de la 40000 lei Plată online sau ramburs, în funcție de opțiunile comenzii.
Retur gratuit în 14 zile Comandă securizată și suport în română.

Specificații

ISBN-13: 9783319175027
ISBN-10: 3319175025
Pagini: 76
Ilustrații: X, 64 p. 24 illus., 9 illus. in color.
Dimensiuni: 155 x 235 x 5 mm
Greutate: 0.13 kg
Ediția:2015
Editura: Springer
Colecția SpringerBriefs in Computer Science
Seria SpringerBriefs in Computer Science

Locul publicării:Cham, Switzerland

Public țintă

Research

Cuprins

Leakage Resilient Password Systems: Attacks, Principles and Usability.- Cover Pad: A Leakage Resilient Password System on Touch-Screen Mobile Devices.- Shadow Key: A Practical Leakage Resilient Password System.

Notă biografică

Yingjiu Li is currently an Associate Professor in the School of Information Systems at Singapore Management University (SMU). His research interests include RFID Security and Privacy, Applied Cryptography and System Security, Privacy Preserving Data Analytics, and Data Applications Security. He has published over 100 technical papers in international conferences and journals, including Oakland, CCS, USENIX Security, NDSS, ESORICS, ASIACCS, TISSEC, TDSC, and JCS. He has served in the program committees for over 80 international conferences and workshops, including the most recent ones such as Oakland 2014, CCS 2013, ESORICS 2013, and RFIDSec 2013. He founded the RFID Security Lab in SMU and his research was supported by A*STAR SERC Public Sector Funding (PSF) in Singapore. Yingjiu Li is a senior member of the ACM and a member of the IEEE Computer Society.Robert H.Deng has been a Professor at the School of Information Systems, Singapore Management University, since 2004. Prior tothis, he was Principal Scientist and Manager of Infocomm Security Department, Institute for Infocomm Research, Singapore. His research interests include data security and privacy, multimedia security, network, and system security. He was Associate Editor of the IEEE Transactions on Information Forensics and Security from 2009-2012 and Associate Editor of Security and Communication Networks from 2007-2013. He is currently Associate Editor of IEEE Transactions on Dependable and Secure Computing, and a member of Editorial Board of Journal of Computer Science and Technology and International Journal of Information Security. He is the chair of the Steering Committee of the ACM Symposium on Information, Computer and Communications Security. He received the University Outstanding Researcher Award from the National University of Singapore in 1999 and the Lee Kuan Yew Fellow for Research Excellence from the Singapore Management University in 2006. He was named Community Service Star and Showcased Senior Information Security Professional by (ISC)2 under its Asia-Pacific Information Security Leadership Achievements program in 2010.
Robert H.Deng has been a Professor at the School of Information Systems, Singapore Management University, since 2004. Prior to this, he was Principal Scientist and Manager of Infocomm Security Department, Institute for Infocomm Research, Singapore. His research interests include data security and privacy, multimedia security, network, and system security. He was Associate Editor of the IEEE Transactions on Information Forensics and Security from 2009-2012 and Associate Editor of Security and Communication Networks from 2007-2013. He is currently Associate Editor of IEEE Transactions on Dependable and Secure Computing, and a member of Editorial Board of Journal of Computer Science and Technology and International Journal of Information Security. He is the chair of the Steering Committee of the ACM Symposium on Information, Computer and Communications Security. He received the University Outstanding Researcher Award from the National University of Singapore in 1999 and the Lee Kuan Yew Fellow for Research Excellence from the Singapore Management University in 2006. He was named Community Service Star and Showcased Senior Information Security Professional by (ISC)2 under its Asia-Pacific Information Security Leadership Achievements program in 2010.
Elisa Bertino is a professor with the Computer Science Department at Purdue University and serves as research director of CERIAS. Previously, she was a faculty member in the Department of Computer Science and Communication of the University of Milan. Her main research interests include security, privacy, digital identity management systems, database systems, distributed systems, and multimedia systems. She is a fellow of the IEEE and a fellow of the ACM. She received the 2002 IEEE Computer Society Technical Achievement Award for outstanding contributions