中文
相关论文

相关论文: Automated Password Extraction Attack on Modern Pas…

200 篇论文

Anti-phishing tools typically display generic warnings that offer users limited explanation on why a website is considered malicious, which can prevent end-users from developing the mental models needed to recognize phishing cues on their…

密码学与安全 · 计算机科学 2025-05-20 Sayak Saha Roy , Cesar Torres , Shirin Nilizadeh

Website Fingerprinting attacks enable a passive eavesdropper to recover the user's otherwise anonymized web browsing activity by matching the observed traffic with prerecorded web traffic templates. The defenses that have been proposed to…

密码学与安全 · 计算机科学 2016-07-20 Marc Juarez , Mohsen Imani , Mike Perry , Claudia Diaz , Matthew Wright

Searching accounts for one of the most frequently performed computations over the Internet as well as one of the most important applications of outsourced computing, producing results that critically affect users' decision-making behaviors.…

The scarcity of data and the high complexity of Advanced Persistent Threats (APTs) attacks have created challenges in comprehending their behavior and hindered the exploration of effective detection techniques. To create an effective APT…

密码学与安全 · 计算机科学 2025-02-14 Almuthanna Alageel , Sergio Maffeis , Imperial College London

Phishing has grown significantly in the past few years and is predicted to further increase in the future. The dynamics of phishing introduce challenges in implementing a robust phishing detection system and selecting features which can…

密码学与安全 · 计算机科学 2020-07-24 Rizka Purwanto , Arindam Pal , Alan Blair , Sanjay Jha

In the recent years, the fast development and the exponential utilization of social networks have prompted an expansion of social Computing. In social networks users are interconnected by edges or links, where Facebook, twitter, LinkedIn…

密码学与安全 · 计算机科学 2018-04-27 Fatna Elmendili , Nisrine Maqran , Younes El Bouzekri El Idrissi , Habiba Chaoui

In the past decade, billions of user passwords have been exposed to the dangerous threat of offline password cracking attacks. An offline attacker who has stolen the cryptographic hash of a user's password can check as many password guesses…

密码学与安全 · 计算机科学 2022-06-28 Wenjie Bai , Jeremiah Blocki , Mohammad Hassan Ameri

Phishing is the most prevalent type of cyber-attack today and is recognized as the leading source of data breaches with significant consequences for both individuals and corporations. Web-based phishing attacks are the most frequent with…

密码学与安全 · 计算机科学 2025-02-20 Muhammad Fahad Zia , Sri Harish Kalidass

To prevent credential stuffing attacks, industry best practice now proactively checks if user credentials are present in known data breaches. Recently, some web services, such as HaveIBeenPwned (HIBP) and Google Password Checkup (GPC), have…

密码学与安全 · 计算机科学 2019-09-05 Lucy Li , Bijeeta Pal , Junade Ali , Nick Sullivan , Rahul Chatterjee , Thomas Ristenpart

We introduce the concept of "universal password model" -- a password model that, once pre-trained, can automatically adapt its guessing strategy based on the target system. To achieve this, the model does not need to access any plaintext…

密码学与安全 · 计算机科学 2024-03-14 Dario Pasquini , Giuseppe Ateniese , Carmela Troncoso

We present LINSPECTOR WEB, an open source multilingual inspector to analyze word representations. Our system provides researchers working in low-resource settings with an easily accessible web based probing tool to gain quick insights into…

计算与语言 · 计算机科学 2019-10-16 Max Eichler , Gözde Gül Şahin , Iryna Gurevych

The majority of systems rely on user authentication on passwords, but passwords have so many weaknesses and widespread use that easily raise significant security concerns, regardless of their encrypted form. Users hold the same password for…

The threat of phishing attacks in financial systems is continuously growing. Therefore, protecting sensitive information from unauthorized access is paramount. This paper discusses the critical need for robust email phishing detection.…

密码学与安全 · 计算机科学 2025-07-08 Novruz Amirov , Leminur Celik , Egemen Ali Caner , Emre Yurdakul , Fahri Anil Yerlikaya , Serif Bahtiyar

Automated browsers are widely used to study the web at scale. Their premise is that they measure what regular browsers would encounter on the web. In practice, deviations due to detection of automation have been found. To what extent…

密码学与安全 · 计算机科学 2022-05-19 Benjamin Krumnow , Hugo Jonker , Stefan Karsch

Offline attacks on passwords are increasingly commonplace and dangerous. An offline adversary is limited only by the amount of computational resources he or she is willing to invest to crack a user's password. The danger is compounded by…

密码学与安全 · 计算机科学 2016-03-04 Jeremiah Blocki , Anirudh Sridhar

An attacker who breaks into an authentication server and steals all of the cryptographic password hashes is able to mount an offline-brute force attack against each user's password. Offline brute-force attacks against passwords are…

密码学与安全 · 计算机科学 2021-02-02 Wenjie Bai , Jeremiah Blocki

A password composition policy restricts the space of allowable passwords to eliminate weak passwords that are vulnerable to statistical guessing attacks. Usability studies have demonstrated that existing password composition policies can…

密码学与安全 · 计算机科学 2013-02-26 Jeremiah Blocki , Saranga Komanduri , Ariel Procaccia , Or Sheffet

This paper presents a novel key-based access control technique for secure outsourcing key-value stores where values correspond to documents that are indexed and accessed using keys. The proposed approach adopts Shamir's secret-sharing that…

密码学与安全 · 计算机科学 2025-07-16 Yin Li , Sharad Mehrota , Shantanu Sharma , Komal Kumari

With the fast development of large language models (LLMs), LLM-driven Web Agents (Web Agents for short) have obtained tons of attention due to their superior capability where LLMs serve as the core part of making decisions like the human…

密码学与安全 · 计算机科学 2024-02-28 Fangzhou Wu , Shutong Wu , Yulong Cao , Chaowei Xiao

This paper describes a new password-based mutual authentication protocol for Web systems which prevents various kinds of phishing attacks. This protocol provides a protection of user's passwords against any phishers even if dictionary…

密码学与安全 · 计算机科学 2009-11-30 Yutaka Oiwa , Hajime Watanabe , Hiromitsu Takagi