2022
DOI: 10.1007/978-3-031-07727-2_15
|View full text |Cite
|
Sign up to set email alerts
|

Verified Password Generation from Password Composition Policies

Abstract: Password managers (PMs) are important tools that enable the use of stronger passwords, freeing users from the cognitive burden of remembering them. Despite this, there are still many users who do not fully trust PMs. In this paper, we focus on a feature that most PMs offer that might impact the user's trust, which is the process of generating a random password. We present three of the most commonly used algorithms and we propose a solution for a formally verified reference implementation of a password generati… Show more

Help me understand this report

Search citation statements

Order By: Relevance

Paper Sections

Select...
1
1
1
1

Citation Types

0
4
0

Year Published

2022
2022
2023
2023

Publication Types

Select...
2
1

Relationship

0
3

Authors

Journals

citations
Cited by 3 publications
(4 citation statements)
references
References 18 publications
0
4
0
Order By: Relevance
“…Also, high entropy can be gained by including mnemonic aids for ALPHANUM, removing obscure words from the DICEWARE word list, and combining upper case letters and punctuations to the PRONOUNCE3 schemes (Smith, 2020). Grilo, Ferreira & Almeida (2021) studied 15 password managers to understand commonly used generation algorithms, and Google, Bitwarden, and KeePass algorithms were critically reviewed since they are open-source and widely used in the industry. They defined that generated passwords must satisfy the password composition policies including password character length and different character classes to avoid passwords being easily guessed or reused.…”
Section: Literature Reviewmentioning
confidence: 99%
See 2 more Smart Citations
“…Also, high entropy can be gained by including mnemonic aids for ALPHANUM, removing obscure words from the DICEWARE word list, and combining upper case letters and punctuations to the PRONOUNCE3 schemes (Smith, 2020). Grilo, Ferreira & Almeida (2021) studied 15 password managers to understand commonly used generation algorithms, and Google, Bitwarden, and KeePass algorithms were critically reviewed since they are open-source and widely used in the industry. They defined that generated passwords must satisfy the password composition policies including password character length and different character classes to avoid passwords being easily guessed or reused.…”
Section: Literature Reviewmentioning
confidence: 99%
“…The main advantage of this is that users only have to remember a single password and the tool memorizes all other sensitive data for themselves (Rahalkar & Gujar, 2019). Grilo, Ferreira & Almeida (2021) stated that security experts are strongly recommending password managers for password creation and storage which also frees the users from the cognitive burden of password management. Gupta et al (2020b) Guo et al (2019) presented that password managers can mainly be divided Fernando, Dissanayake, Dushmantha, Liyanage, and Karunatilake, 2023. into two kinds.…”
Section: Password Alternativesmentioning
confidence: 99%
See 1 more Smart Citation
“…Some studies have focused on one security procedure, such as resetting passwords [9][10][11]. Other studies have focused on only one part of a security procedure, such as password policies [12][13][14][15][16][17] or password meters [18][19][20][21][22]. Some research has focused on specific authentication methods, such as passwords [23][24][25], biometrics [26][27][28][29], or two-factor authentication [30][31][32][33][34][35].…”
Section: Introductionmentioning
confidence: 99%