(Enter summary)
Abstract: Classical cryptographic protocols based on user-chosen keys allow an attacker to mount password-guessing attacks. We introduce a novel combination of asymmetric (public-key) and symmetric (secret-key) cryptography that allow two parties sharing a common password to exchange confidential and authenticated information over an insecure network. These protocols are secure against active attacks, and have the property that the password is protected against off-line "dictionary" attacks. There are a... (Update)
Cited by: More
Spelling-Error Tolerant, Order-Independent.. - Damerau-Levenshtein..
(Correct)
Stateless Model For The Prevention Of - Malicious Tunnels Abhishek
(Correct)
ICMP Tunneling: Defense Against the Vulnerability - Abhishek Singh Chenguhai
(Correct)
Active bibliography (related documents): More All
0.5: A Method for Examining Cryptographic Protocols - Tjaden (1997)
(Correct)
0.4: Augmented Encrypted Key Exchange: a Password-Based Protocol.. - Bellovin, Merritt (1993)
(Correct)
0.3: Arriving at FPGA based Hardware Unix-Encription using.. - Cyliax, Johnson, Bose (1997)
(Correct)
Similar documents based on text: More All
0.2: The AuthA Protocol for Password-Based Authenticated Key Exchange - Bellare, Rogaway (2000)
(Correct)
0.2: Authenticated Key Exchange Secure Against Dictionary Attacks - Bellare, Pointcheval.. (2000)
(Correct)
0.2: Limitations of the Kerberos Protocol - Bellovin, Merritt (1991)
(Correct)
Related documents from co-citation: More All
46: Protecting Poorly Chosen Secrets from Guessing Attacks
- Gong, Lomas et al. - 1993
43: Strong password-only authenticated key exchange
- Jablon - 1996
35: Augmented Encrypted Key Exchange: A Password-Based Protocol Secure Against Dicti..
- Bellovin, Merritt - 1993
BibTeX entry: (Update)
S. Bellovin and M. Merritt, "Encrypted Key Exchange: Password-Based Protocols Secure Against Dictionary Attacks", in Proceedings of the IEEE Symposium on Security and Privacy, Oakland, California, May, 1992, pp.72-84. http://citeseer.ist.psu.edu/bellovin92encrypted.html More
@inproceedings{ bellovinencrypted,
author = "Steven M. Bellovin and Michael Merritt",
title = "Encrypted Key Exchange: Password-Based Protocols Secure Against Dictionary Attacks",
pages = "72--84",
url = "citeseer.ist.psu.edu/bellovin92encrypted.html" }
Citations (may not include all citations):
1529
A method of obtaining digital signatures and public-key cryp..
- Rivest, Shamir et al. - 1978
635
New directions in cryptography
- Diffie, Hellman - 1976 ACM
601
A public key cryptosystem and a signature scheme based on di.. (context) - ElGamal - 1985 ACM DBLP
317
Kerberos: An authentication service for open network systems
- Steiner, Neuman et al. - 1988 DBLP
244
Cryptography and Data Security (context) - Denning - 1982 ACM DBLP
168
An improved algorithm for computing logarithms over GF (p) a.. (context) - Pohlig, Hellman - 1978
60
SPX: Global authentication using public key certificates (context) - Tardo, Alagappan - 1991 DBLP
53
Security for Computer Networks (context) - Davies, Price - 1989
47
Discrete logarithms in finite fields and their cryptographic..
- Odlyzko - 1984 ACM DBLP
44
Reducing risks from poorly chosen keys
- Lomas, Gong et al. - 1989 ACM DBLP
40
Computation of discrete logarithms in prime fields
- LaMacchia, Odlyzko - 1991 ACM DBLP
27
Unix operating system security (context) - Grampp, Morris - 1984 ACM DBLP
21
How to expose an eavesdropper (context) - Rivest, Shamir - 1984 ACM DBLP
13
Protocols for data security (context) - DeMillo, Merritt - 1983
13
Unix password security (context) - Morris, Thompson - 1979
11
Foiling the cracker (context) - Klein - 1990
7
Verifiable-text attacks in cryptographic protocols (context) - Gong - 1990 DBLP
6
A note on redundancy in encrypted messages
- Gong - 1990 ACM
4
Unix password encryption considered insecure (context) - Leong, Tham - 1991
1
An attack on password-authenticated exponential key exchange (context) - Bellovin, Merritt
1
Private conversation (context) - Odlyzko - 1991
The graph only includes citing articles where the year of publication is known.
Documents on the same site (http://www.sevenlocks.com/papers/PapersCryptogr.htm): More
Visa Protocols for Controlling Inter-Organizational Datagram .. - Estrin, Mogul, Tsudik (1989)
(Correct)
Network Security via Private-Key Certificates - Davis (1990)
(Correct)
Using Content-Addressable Search Engines To Encrypt and Break DES - Wayner (1993)
(Correct)
Online articles have much greater impact More about CiteSeer.IST Add search form to your site Submit documents Feedback
CiteSeer.IST - Copyright Penn State and NEC