Visible to the public Authentication Protocols Based on One-Time Passwords

TitleAuthentication Protocols Based on One-Time Passwords
Publication TypeConference Paper
Year of Publication2019
AuthorsBabkin, Sergey, Epishkina, Anna
Conference Name2019 IEEE Conference of Russian Young Researchers in Electrical and Electronic Engineering (EIConRus)
Date Publishedjan
Keywordsauthentication, Authentication protocols, complicated protocols, cryptographic algorithms, cryptographic protocols, cryptography, e-commerce, electronic commerce, Fingerprint recognition, human factors, Information security, information technologies, message authentication, one-time password, one-time passwords, phishing, protocol, pubcrawl, relatively old Lamport's hash-chain protocol, Resistance, reviewed protocols, Servers, Two factor Authentication, two-factor authentication, Vulnerability
AbstractNowadays one-time passwords are used in a lot of areas of information technologies including e-commerce. A few vulnerabilities in authentication protocols based on one-time passwords are widely known. In current work, we analyze authentication protocols based on one-time passwords and their vulnerabilities. Both simple and complicated protocols which are implementing cryptographic algorithms are reviewed. For example, an analysis of relatively old Lamport's hash-chain protocol is provided. At the same time, we examine HOTP and TOTP protocols which are actively used nowadays. The main result of the work are conclusions about the security of reviewed protocols based on one-time passwords.
DOI10.1109/EIConRus.2019.8656839
Citation Keybabkin_authentication_2019