Authors
Marina Sanusi Bohuk, Mazharul Islam, Suleman Ahmad, Michael Swift, Thomas Ristenpart, Rahul Chatterjee
Publication date
2022
Conference
31st USENIX Security Symposium (USENIX Security 22)
Pages
1867-1884
Description
Passwords remain the primary way to authenticate users online. Yet little is known about the characteristics of login requests submitted to login systems due to the sensitivity of monitoring submitted passwords. This means we don't have answers to basic questions, such as how often users submit a password similar to their actual password, whether users often resubmit the same incorrect password, how many users utilize passwords known to be in a public breach, and more. Whether we can build and deploy measurement infrastructure to safely answer such questions is, itself, an open question.
Total citations
Scholar articles
MS Bohuk, M Islam, S Ahmad, M Swift, T Ristenpart… - 31st USENIX Security Symposium (USENIX Security …, 2022