Enhanced Evaluation Model of Security Strength for Passwords Using Integrated Korean and English Password Dictionaries

In the field of information security, passwords are a means of authenticating users. Passwords with weak security cannot perform the role of user authentication and personal information protection because confidentiality is easily violated. To ensure confidentiality, it is important to evaluate the...

Full description

Bibliographic Details
Main Authors: Ki Hyeon Hong, Un Gu Kang, Byung Mun Lee
Format: Article
Language:English
Published: Hindawi-Wiley 2021-01-01
Series:Security and Communication Networks
Online Access:http://dx.doi.org/10.1155/2021/3122627
id doaj-59d337ac8dcf49c8a0ccc2fd50b1e521
record_format Article
spelling doaj-59d337ac8dcf49c8a0ccc2fd50b1e5212021-10-04T01:58:14ZengHindawi-WileySecurity and Communication Networks1939-01222021-01-01202110.1155/2021/3122627Enhanced Evaluation Model of Security Strength for Passwords Using Integrated Korean and English Password DictionariesKi Hyeon Hong0Un Gu Kang1Byung Mun Lee2Department of IT Convergence EngineeringDepartment of Computer EngineeringDepartment of Computer EngineeringIn the field of information security, passwords are a means of authenticating users. Passwords with weak security cannot perform the role of user authentication and personal information protection because confidentiality is easily violated. To ensure confidentiality, it is important to evaluate the strength of the password and choose a very secure password. Due to this fact, security evaluation models for various passwords have been presented. However, existing evaluation models evaluate security based on the English alphabet. Passwords depend on the memory of the user and are closely related to the language or environment used by the user. In this regard, there are limitations in applying the existing security evaluation models to passwords chosen by non-English speakers. We compose a non-English, Korean language-based password dictionary and propose a password security evaluation model based on this for Korean users. In addition, to verify the effectiveness of the proposed model, we conducted experiments to evaluate the security of Korean language-based passwords using a database of passwords that have been actually leaked. As a result, the proposed model showed 99.38% accuracy for Korean language-based leaked passwords. This is superior to the 80.06% accuracy shown by the existing model. In conclusion, the use of the Korean language-based password security evaluation model proposed in this paper will contribute to choosing more secure passwords for Korean language-based sites or users.http://dx.doi.org/10.1155/2021/3122627
collection DOAJ
language English
format Article
sources DOAJ
author Ki Hyeon Hong
Un Gu Kang
Byung Mun Lee
spellingShingle Ki Hyeon Hong
Un Gu Kang
Byung Mun Lee
Enhanced Evaluation Model of Security Strength for Passwords Using Integrated Korean and English Password Dictionaries
Security and Communication Networks
author_facet Ki Hyeon Hong
Un Gu Kang
Byung Mun Lee
author_sort Ki Hyeon Hong
title Enhanced Evaluation Model of Security Strength for Passwords Using Integrated Korean and English Password Dictionaries
title_short Enhanced Evaluation Model of Security Strength for Passwords Using Integrated Korean and English Password Dictionaries
title_full Enhanced Evaluation Model of Security Strength for Passwords Using Integrated Korean and English Password Dictionaries
title_fullStr Enhanced Evaluation Model of Security Strength for Passwords Using Integrated Korean and English Password Dictionaries
title_full_unstemmed Enhanced Evaluation Model of Security Strength for Passwords Using Integrated Korean and English Password Dictionaries
title_sort enhanced evaluation model of security strength for passwords using integrated korean and english password dictionaries
publisher Hindawi-Wiley
series Security and Communication Networks
issn 1939-0122
publishDate 2021-01-01
description In the field of information security, passwords are a means of authenticating users. Passwords with weak security cannot perform the role of user authentication and personal information protection because confidentiality is easily violated. To ensure confidentiality, it is important to evaluate the strength of the password and choose a very secure password. Due to this fact, security evaluation models for various passwords have been presented. However, existing evaluation models evaluate security based on the English alphabet. Passwords depend on the memory of the user and are closely related to the language or environment used by the user. In this regard, there are limitations in applying the existing security evaluation models to passwords chosen by non-English speakers. We compose a non-English, Korean language-based password dictionary and propose a password security evaluation model based on this for Korean users. In addition, to verify the effectiveness of the proposed model, we conducted experiments to evaluate the security of Korean language-based passwords using a database of passwords that have been actually leaked. As a result, the proposed model showed 99.38% accuracy for Korean language-based leaked passwords. This is superior to the 80.06% accuracy shown by the existing model. In conclusion, the use of the Korean language-based password security evaluation model proposed in this paper will contribute to choosing more secure passwords for Korean language-based sites or users.
url http://dx.doi.org/10.1155/2021/3122627
work_keys_str_mv AT kihyeonhong enhancedevaluationmodelofsecuritystrengthforpasswordsusingintegratedkoreanandenglishpassworddictionaries
AT ungukang enhancedevaluationmodelofsecuritystrengthforpasswordsusingintegratedkoreanandenglishpassworddictionaries
AT byungmunlee enhancedevaluationmodelofsecuritystrengthforpasswordsusingintegratedkoreanandenglishpassworddictionaries
_version_ 1716844734022942720