Enhanced Evaluation Model of Security Strength for Passwords Using Integrated Korean and English Password Dictionaries
In the field of information security, passwords are a means of authenticating users. Passwords with weak security cannot perform the role of user authentication and personal information protection because confidentiality is easily violated. To ensure confidentiality, it is important to evaluate the...
Main Authors: | , , |
---|---|
Format: | Article |
Language: | English |
Published: |
Hindawi-Wiley
2021-01-01
|
Series: | Security and Communication Networks |
Online Access: | http://dx.doi.org/10.1155/2021/3122627 |
id |
doaj-59d337ac8dcf49c8a0ccc2fd50b1e521 |
---|---|
record_format |
Article |
spelling |
doaj-59d337ac8dcf49c8a0ccc2fd50b1e5212021-10-04T01:58:14ZengHindawi-WileySecurity and Communication Networks1939-01222021-01-01202110.1155/2021/3122627Enhanced Evaluation Model of Security Strength for Passwords Using Integrated Korean and English Password DictionariesKi Hyeon Hong0Un Gu Kang1Byung Mun Lee2Department of IT Convergence EngineeringDepartment of Computer EngineeringDepartment of Computer EngineeringIn the field of information security, passwords are a means of authenticating users. Passwords with weak security cannot perform the role of user authentication and personal information protection because confidentiality is easily violated. To ensure confidentiality, it is important to evaluate the strength of the password and choose a very secure password. Due to this fact, security evaluation models for various passwords have been presented. However, existing evaluation models evaluate security based on the English alphabet. Passwords depend on the memory of the user and are closely related to the language or environment used by the user. In this regard, there are limitations in applying the existing security evaluation models to passwords chosen by non-English speakers. We compose a non-English, Korean language-based password dictionary and propose a password security evaluation model based on this for Korean users. In addition, to verify the effectiveness of the proposed model, we conducted experiments to evaluate the security of Korean language-based passwords using a database of passwords that have been actually leaked. As a result, the proposed model showed 99.38% accuracy for Korean language-based leaked passwords. This is superior to the 80.06% accuracy shown by the existing model. In conclusion, the use of the Korean language-based password security evaluation model proposed in this paper will contribute to choosing more secure passwords for Korean language-based sites or users.http://dx.doi.org/10.1155/2021/3122627 |
collection |
DOAJ |
language |
English |
format |
Article |
sources |
DOAJ |
author |
Ki Hyeon Hong Un Gu Kang Byung Mun Lee |
spellingShingle |
Ki Hyeon Hong Un Gu Kang Byung Mun Lee Enhanced Evaluation Model of Security Strength for Passwords Using Integrated Korean and English Password Dictionaries Security and Communication Networks |
author_facet |
Ki Hyeon Hong Un Gu Kang Byung Mun Lee |
author_sort |
Ki Hyeon Hong |
title |
Enhanced Evaluation Model of Security Strength for Passwords Using Integrated Korean and English Password Dictionaries |
title_short |
Enhanced Evaluation Model of Security Strength for Passwords Using Integrated Korean and English Password Dictionaries |
title_full |
Enhanced Evaluation Model of Security Strength for Passwords Using Integrated Korean and English Password Dictionaries |
title_fullStr |
Enhanced Evaluation Model of Security Strength for Passwords Using Integrated Korean and English Password Dictionaries |
title_full_unstemmed |
Enhanced Evaluation Model of Security Strength for Passwords Using Integrated Korean and English Password Dictionaries |
title_sort |
enhanced evaluation model of security strength for passwords using integrated korean and english password dictionaries |
publisher |
Hindawi-Wiley |
series |
Security and Communication Networks |
issn |
1939-0122 |
publishDate |
2021-01-01 |
description |
In the field of information security, passwords are a means of authenticating users. Passwords with weak security cannot perform the role of user authentication and personal information protection because confidentiality is easily violated. To ensure confidentiality, it is important to evaluate the strength of the password and choose a very secure password. Due to this fact, security evaluation models for various passwords have been presented. However, existing evaluation models evaluate security based on the English alphabet. Passwords depend on the memory of the user and are closely related to the language or environment used by the user. In this regard, there are limitations in applying the existing security evaluation models to passwords chosen by non-English speakers. We compose a non-English, Korean language-based password dictionary and propose a password security evaluation model based on this for Korean users. In addition, to verify the effectiveness of the proposed model, we conducted experiments to evaluate the security of Korean language-based passwords using a database of passwords that have been actually leaked. As a result, the proposed model showed 99.38% accuracy for Korean language-based leaked passwords. This is superior to the 80.06% accuracy shown by the existing model. In conclusion, the use of the Korean language-based password security evaluation model proposed in this paper will contribute to choosing more secure passwords for Korean language-based sites or users. |
url |
http://dx.doi.org/10.1155/2021/3122627 |
work_keys_str_mv |
AT kihyeonhong enhancedevaluationmodelofsecuritystrengthforpasswordsusingintegratedkoreanandenglishpassworddictionaries AT ungukang enhancedevaluationmodelofsecuritystrengthforpasswordsusingintegratedkoreanandenglishpassworddictionaries AT byungmunlee enhancedevaluationmodelofsecuritystrengthforpasswordsusingintegratedkoreanandenglishpassworddictionaries |
_version_ |
1716844734022942720 |