CLAS: A Novel Communications Latency Based Authentication Scheme

المؤلفون المشاركون

Dou, Zuochao
Khalil, Issa
Khreishah, Abdallah

المصدر

Security and Communication Networks

العدد

المجلد 2017، العدد 2017 (31 ديسمبر/كانون الأول 2017)، ص ص. 1-20، 20ص.

الناشر

Hindawi Publishing Corporation

تاريخ النشر

2017-06-12

دولة النشر

مصر

عدد الصفحات

20

التخصصات الرئيسية

تكنولوجيا المعلومات وعلم الحاسوب

الملخص EN

We design and implement a novel communications latency based authentication scheme, dubbed CLAS, that strengthens the security of state-of-the-art web authentication approaches by leveraging the round trip network communications latency (RTL) between clients and authenticators.

In addition to the traditional credentials, CLAS profiles RTL values of clients and uses them to defend against password compromise.

The key challenges are (i) to prevent RTL manipulation, (ii) to alleviate network instabilities, and (iii) to address mobile clients.

CLAS addresses the first challenge by introducing a novel network architecture, which makes it extremely difficult for attackers to simulate legitimate RTL values.

The second challenge is addressed by outlier removal and multiple temporal profiling, while the last challenge is addressed by augmenting CLAS with out-of-band-channels or other authentication schemes.

CLAS restricts login to profiled locations while demanding additional information for nonprofiled ones, which highly reduces the attack surface even when the legitimate credentials are compromised.

Additionally, unlike many state-of-the-art authentication mechanisms, CLAS is resilient to phishing, pharming, man-in-the-middle, and social engineering attacks.

Furthermore, CLAS is transparent to users and incurs negligible overhead.

The experimental results show that CLAS can achieve very low false positive and false negative rates.

نمط استشهاد جمعية علماء النفس الأمريكية (APA)

Dou, Zuochao& Khalil, Issa& Khreishah, Abdallah. 2017. CLAS: A Novel Communications Latency Based Authentication Scheme. Security and Communication Networks،Vol. 2017, no. 2017, pp.1-20.
https://search.emarefa.net/detail/BIM-1202907

نمط استشهاد الجمعية الأمريكية للغات الحديثة (MLA)

Dou, Zuochao…[et al.]. CLAS: A Novel Communications Latency Based Authentication Scheme. Security and Communication Networks No. 2017 (2017), pp.1-20.
https://search.emarefa.net/detail/BIM-1202907

نمط استشهاد الجمعية الطبية الأمريكية (AMA)

Dou, Zuochao& Khalil, Issa& Khreishah, Abdallah. CLAS: A Novel Communications Latency Based Authentication Scheme. Security and Communication Networks. 2017. Vol. 2017, no. 2017, pp.1-20.
https://search.emarefa.net/detail/BIM-1202907

نوع البيانات

مقالات

لغة النص

الإنجليزية

الملاحظات

Includes bibliographical references

رقم السجل

BIM-1202907