See this document in CiteSeerX!

Encrypted Key Exchange: Password-Based Protocols Secure Against Dictionary Attacks (1992)  (Make Corrections)  (150 citations)
Steven M. Bellovin, Michael Merritt



  Home/Search   Context   Related

 
View or download:
sevenlocks.com/papers/crypto/neke.ps
telstra.com.au/pub/docs/sec...neke.ps.Z
nih.gov/Security/FIRST/papers...neke.ps
Cached:  PS.gz  PS  PDF   Image  Update  Help

From:  sevenlocks.com/p...PapersCryptogr (more)
From:  telstra.com.au/pub/docs/securi...
(Enter author homepages)

Rate this article: (best)
  Comment on this article  
(Enter summary)

Abstract: Classical cryptographic protocols based on user-chosen keys allow an attacker to mount password-guessing attacks. We introduce a novel combination of asymmetric (public-key) and symmetric (secret-key) cryptography that allow two parties sharing a common password to exchange confidential and authenticated information over an insecure network. These protocols are secure against active attacks, and have the property that the password is protected against off-line "dictionary" attacks. There are a... (Update)

Cited by:   More
Spelling-Error Tolerant, Order-Independent.. - Damerau-Levenshtein..   (Correct)
Stateless Model For The Prevention Of - Malicious Tunnels Abhishek   (Correct)
ICMP Tunneling: Defense Against the Vulnerability - Abhishek Singh Chenguhai   (Correct)

Active bibliography (related documents):   More   All
0.5:   A Method for Examining Cryptographic Protocols - Tjaden (1997)   (Correct)
0.4:   Augmented Encrypted Key Exchange: a Password-Based Protocol.. - Bellovin, Merritt (1993)   (Correct)
0.3:   Arriving at FPGA based Hardware Unix-Encription using.. - Cyliax, Johnson, Bose (1997)   (Correct)

Similar documents based on text:   More   All
0.2:   The AuthA Protocol for Password-Based Authenticated Key Exchange - Bellare, Rogaway (2000)   (Correct)
0.2:   Authenticated Key Exchange Secure Against Dictionary Attacks - Bellare, Pointcheval.. (2000)   (Correct)
0.2:   Limitations of the Kerberos Protocol - Bellovin, Merritt (1991)   (Correct)

Related documents from co-citation:   More   All
46:   Protecting Poorly Chosen Secrets from Guessing Attacks - Gong, Lomas et al. - 1993
43:   Strong password-only authenticated key exchange - Jablon - 1996
35:   Augmented Encrypted Key Exchange: A Password-Based Protocol Secure Against Dicti.. - Bellovin, Merritt - 1993

BibTeX entry:   (Update)

S. Bellovin and M. Merritt, "Encrypted Key Exchange: Password-Based Protocols Secure Against Dictionary Attacks", in Proceedings of the IEEE Symposium on Security and Privacy, Oakland, California, May, 1992, pp.72-84. http://citeseer.ist.psu.edu/bellovin92encrypted.html   More

@inproceedings{ bellovinencrypted,
    author = "Steven M. Bellovin and Michael Merritt",
    title = "Encrypted Key Exchange: Password-Based Protocols Secure Against Dictionary Attacks",
    pages = "72--84",
    url = "citeseer.ist.psu.edu/bellovin92encrypted.html" }
Citations (may not include all citations):
1529   A method of obtaining digital signatures and public-key cryp.. - Rivest, Shamir et al. - 1978
635   New directions in cryptography - Diffie, Hellman - 1976  ACM
601   A public key cryptosystem and a signature scheme based on di.. (context) - ElGamal - 1985  ACM   DBLP
317   Kerberos: An authentication service for open network systems - Steiner, Neuman et al. - 1988  DBLP
244   Cryptography and Data Security (context) - Denning - 1982  ACM   DBLP
168   An improved algorithm for computing logarithms over GF (p) a.. (context) - Pohlig, Hellman - 1978
60   SPX: Global authentication using public key certificates (context) - Tardo, Alagappan - 1991  DBLP
53   Security for Computer Networks (context) - Davies, Price - 1989
47   Discrete logarithms in finite fields and their cryptographic.. - Odlyzko - 1984  ACM   DBLP
44   Reducing risks from poorly chosen keys - Lomas, Gong et al. - 1989  ACM   DBLP
40   Computation of discrete logarithms in prime fields - LaMacchia, Odlyzko - 1991  ACM   DBLP
27   Unix operating system security (context) - Grampp, Morris - 1984  ACM   DBLP
21   How to expose an eavesdropper (context) - Rivest, Shamir - 1984  ACM   DBLP
13   Protocols for data security (context) - DeMillo, Merritt - 1983
13   Unix password security (context) - Morris, Thompson - 1979
11   Foiling the cracker (context) - Klein - 1990
7   Verifiable-text attacks in cryptographic protocols (context) - Gong - 1990  DBLP
6   A note on redundancy in encrypted messages - Gong - 1990  ACM
4   Unix password encryption considered insecure (context) - Leong, Tham - 1991
1   An attack on password-authenticated exponential key exchange (context) - Bellovin, Merritt
1   Private conversation (context) - Odlyzko - 1991



The graph only includes citing articles where the year of publication is known.


Documents on the same site (http://www.sevenlocks.com/papers/PapersCryptogr.htm):   More
Visa Protocols for Controlling Inter-Organizational Datagram .. - Estrin, Mogul, Tsudik (1989)   (Correct)
Network Security via Private-Key Certificates - Davis (1990)   (Correct)
Using Content-Addressable Search Engines To Encrypt and Break DES - Wayner (1993)   (Correct)

Online articles have much greater impact   More about CiteSeer.IST   Add search form to your site   Submit documents   Feedback  

CiteSeer.IST - Copyright Penn State and NEC