2014International Journal of Computer ApplicationsOpen access

M-Pass: Web Authentication Protocol Resistant to Malware and Phishing

Ajinkya S.Yadav, A. K. Gupta

Open full text 0 citations

Abstract

In this digital world all information and data is kept safe by passwords.The simple and convenient format of password is in the form of text.But, text passwords are not always strong enough and under different vulnerabilities they are very easily stolen and changed.When a person creates a weak password or same password is reused in many sites it may be possible that others can acquire that password.If one password is stolen, then it is possible that it can be used for all the websites.This phenomenon is known as the Domino Effect.Another possible risky attacks are related to phishing, malware and key loggers etc.A protocol is designed which makes use of the user's customer's mobile i.e. cellular phone and SMS (short message service) to ensure protection against password stealing attacks.This user authentication protocol is named as m-Pass.The unique phone number is required which will be possessed by each participating website.The telecommunication service provider plays important role in the registration and the recovery phases.The main theme is to reduce the password reuse attack.It works with one time password technology, and results in reduction of the password validity time.The results show improvement in performance of the security.

Open-access reader

About this research paper

What this paper is about

In this digital world all information and data is kept safe by passwords.The simple and convenient format of password is in the form of text.But, text passwords are not always strong enough and under different vulnerabilities they are very easily stolen and changed.When a person creates a weak password or same password is reused in many sites it may be possible that others can acquire that password.If one password is stolen, then it is possible that it can be used for all the websites.This phenomenon is known as the Domino Effect.Another possible risky attacks are related to phishing, malware and key loggers etc.A protocol is designed which makes use of the user's customer's mobile i.e. cellular phone and SMS (short message service) to ensure protection against password stealing attacks.This user authentication protocol is named as m-Pass.The unique phone number is required which will be possessed by each participating website.The telecommunication service provider plays important role in the registration and the recovery phases.The main theme is to reduce the password reuse attack.It works with one time password technology, and results in reduction of the password validity time.The results show improvement in performance of the security.

Why it matters

A significance statement is not available in the OpenAlex record.

Key contribution

A contribution statement is not available in the OpenAlex record.

Method / approach

Method details are not available in the OpenAlex metadata.

Main findings

Findings are not separately available in the OpenAlex metadata.

Limitations

Limitations are not available in the OpenAlex metadata.

Applications

Application details are not available in the OpenAlex metadata.

Available abstract

In this digital world all information and data is kept safe by passwords.The simple and convenient format of password is in the form of text.But, text passwords are not always strong enough and under different vulnerabilities they are very easily stolen and changed.When a person creates a weak password or same password is reused in many sites it may be possible that others can acquire that password.If one password is stolen, then it is possible that it can be used for all the websites.This phenomenon is known as the Domino Effect.Another possible risky attacks are related to phishing, malware and key loggers etc.A protocol is designed which makes use of the user's customer's mobile i.e. cellular phone and SMS (short message service) to ensure protection against password stealing attacks.This user authentication protocol is named as m-Pass.The unique phone number is required which will be possessed by each participating website.The telecommunication service provider plays important role in the registration and the recovery phases.The main theme is to reduce the password reuse attack.It works with one time password technology, and results in reduction of the password validity time.The results show improvement in performance of the security.

Key concepts: Computer science, Phishing, Malware, Protocol (science), Authentication (law), Computer security, World Wide Web, Authentication protocol

Related papers

Back to paper searchBrowse research topicsOriginal source
M-Pass: Web Authentication Protocol Resistant to Malware and Phishing — Research Paper | ScholarLens