Open Access. Powered by Scholars. Published by Universities.®

Business Commons

Open Access. Powered by Scholars. Published by Universities.®

E-Commerce

Conference papers

Series

2011

Articles 1 - 1 of 1

Full-Text Articles in Business

Password-Based Authentication And Phishing, Edina Hatunic-Webster, Fredrick Mtenzi, Brendan O'Shea Jan 2011

Password-Based Authentication And Phishing, Edina Hatunic-Webster, Fredrick Mtenzi, Brendan O'Shea

Conference papers

The most common mechanism for online authenti- cation is the username-password. Majority of e- commerce applications are designed to provide pass- word authentication via an HTML form, with the assumption that the user needs to determine if it is safe to enter the password. In order to avoid phish- ing attacks, the user is expected to distinguish be- tween a phishing and a genuine website by checking the browser security indicators. Alternative authentication models suggest using images for authentication, introducing variations of Password Authenticated Key Exchange (PAKE) pro- tocols into TLS, using digital objects as passwords. Some authentication models suggest …