Title | Authentication Protocols Based on One-Time Passwords |
Publication Type | Conference Paper |
Year of Publication | 2019 |
Authors | Babkin, Sergey, Epishkina, Anna |
Conference Name | 2019 IEEE Conference of Russian Young Researchers in Electrical and Electronic Engineering (EIConRus) |
Date Published | jan |
Keywords | authentication, Authentication protocols, complicated protocols, cryptographic algorithms, cryptographic protocols, cryptography, e-commerce, electronic commerce, Fingerprint recognition, human factors, Information security, information technologies, message authentication, one-time password, one-time passwords, phishing, protocol, pubcrawl, relatively old Lamport's hash-chain protocol, Resistance, reviewed protocols, Servers, Two factor Authentication, two-factor authentication, Vulnerability |
Abstract | Nowadays one-time passwords are used in a lot of areas of information technologies including e-commerce. A few vulnerabilities in authentication protocols based on one-time passwords are widely known. In current work, we analyze authentication protocols based on one-time passwords and their vulnerabilities. Both simple and complicated protocols which are implementing cryptographic algorithms are reviewed. For example, an analysis of relatively old Lamport's hash-chain protocol is provided. At the same time, we examine HOTP and TOTP protocols which are actively used nowadays. The main result of the work are conclusions about the security of reviewed protocols based on one-time passwords. |
DOI | 10.1109/EIConRus.2019.8656839 |
Citation Key | babkin_authentication_2019 |