Modified Password Guessing Methods Based on TarGuess-I

Joint Authors

Li, Zhenhan
Xie, Zhijie
Zhang, Min
Guo, Yuqi
Wang, Hongjun

Source

Wireless Communications and Mobile Computing

Issue

Vol. 2020, Issue 2020 (31 Dec. 2020), pp.1-22, 22 p.

Publisher

Hindawi Publishing Corporation

Publication Date

2020-12-02

Country of Publication

Egypt

No. of Pages

22

Main Subjects

Information Technology and Computer Science

Abstract EN

TarGuess−I is a leading online targeted password guessing model using users’ personally identifiable information (PII) proposed at ACM CCS 2016 by Wang et al.

It has attracted widespread attention in password security owing to its superior guessing performance.

Yet, after analyzing the users’ vulnerable behaviors of using popular passwords and constructing passwords with users’ PII, we find that this model does not take into account popular passwords, keyboard patterns, and the special strings.

The special strings are the strings related to users but do not appear in the users’ demographic information.

Thus, we propose TarGuess−I+KPX, a modified password guessing model with three semantic methods, including (1) identifying popular passwords by generating top-300 lists from similar websites, (2) recognizing keyboard patterns by relative position, and (3) catching the special strings by extracting continuous characters from user-generated PII.

We conduct a series of evaluations on six large-scale real-world leaked password datasets.

The experimental results show that our modified model outperforms TarGuess−I by 2.62% within 100 guesses.

American Psychological Association (APA)

Xie, Zhijie& Zhang, Min& Guo, Yuqi& Li, Zhenhan& Wang, Hongjun. 2020. Modified Password Guessing Methods Based on TarGuess-I. Wireless Communications and Mobile Computing،Vol. 2020, no. 2020, pp.1-22.
https://search.emarefa.net/detail/BIM-1214661

Modern Language Association (MLA)

Xie, Zhijie…[et al.]. Modified Password Guessing Methods Based on TarGuess-I. Wireless Communications and Mobile Computing No. 2020 (2020), pp.1-22.
https://search.emarefa.net/detail/BIM-1214661

American Medical Association (AMA)

Xie, Zhijie& Zhang, Min& Guo, Yuqi& Li, Zhenhan& Wang, Hongjun. Modified Password Guessing Methods Based on TarGuess-I. Wireless Communications and Mobile Computing. 2020. Vol. 2020, no. 2020, pp.1-22.
https://search.emarefa.net/detail/BIM-1214661

Data Type

Journal Articles

Language

English

Notes

Includes bibliographical references

Record ID

BIM-1214661