A Survey on Password Guessing

12/17/2022
by   Lam Tran, et al.
0

Text password has served as the most popular method for user authentication so far, and is not likely to be totally replaced in foreseeable future. Password authentication offers several desirable properties (e.g., low-cost, highly available, easy-to-implement, reusable). However, it suffers from a critical security issue mainly caused by the inability to memorize complicated strings of humans. Users tend to choose easy-to-remember passwords which are not uniformly distributed in the key space. Thus, user-selected passwords are susceptible to guessing attacks. In order to encourage and support users to use strong passwords, it is necessary to simulate automated password guessing methods to determine the passwords' strength and identify weak passwords. A large number of password guessing models have been proposed in the literature. However, little attention was paid to the task of providing a systematic survey which is necessary to review the state-of-the-art approaches, identify gaps, and avoid duplicate studies. Motivated by that, we conduct a comprehensive survey on all password guessing studies presented in the literature from 1979 to 2022. We propose a generic methodology map to present an overview of existing methods. Then, we explain each representative approach in detail. The experimental procedures and available datasets used to evaluate password guessing models are summarized, and the reported performances of representative studies are compared. Finally, the current limitations and the open problems as future research directions are discussed. We believe that this survey is helpful to both experts and newcomers who are interested in password security

READ FULL TEXT

page 1

page 2

page 3

page 4

research
10/05/2021

System Security Assurance: A Systematic Literature Review

Security assurance provides the confidence that security features, pract...
research
03/03/2021

Information Security Games: A Survey

We introduce some preliminaries about game theory and information securi...
research
02/05/2022

A Survey on Poisoning Attacks Against Supervised Machine Learning

With the rise of artificial intelligence and machine learning in modern ...
research
03/26/2023

A Survey on Dual-Quaternions

Over the past few years, the applications of dual-quaternions have not o...
research
12/16/2022

A Survey on Biometrics Authentication

Nowadays, traditional authentication methods are vulnerable to face atta...
research
07/11/2019

Challenges and Directions for Authentication in Pervasive Computing

We quickly approach a "pervasive future" where pervasive computing is th...
research
08/18/2022

Mouse Dynamics Behavioral Biometrics: A Survey

Utilization of internet in everyday life has made us vulnerable in terms...

Please sign up or login with your details

Forgot password? Click here to reset