课题基金 / 基金详情

基于蜜字的抗泄露身份认证协议研究

批准号:
62072010
项目类别:
面上项目
资助金额:
57.0 万元
负责人:
王平
依托单位:
学科分类:
信息安全
结题年份:
2024
批准年份:
2020
项目状态:
已结题
项目参与者:
王平

项目摘要

结项摘要

王平的其他基金

相似基金

相关文献

中文摘要
身份认证作为网络防护的第一道关口,是构建信息系统安全的基石,而实际信息系统中服务器存储的用户认证信息却面临严重的泄漏风险。现有身份认证协议研究主要针对传输安全等个别环节,未能解决认证服务器存储文件的泄漏问题。本项目拟针对基于蜜字的泄漏检测机制,采用形式化的方法,利用贝叶斯、可证明安全等理论,对抗泄露身份认证协议进行研究。拟实现3个目标:1)构建基于蜜字的服务器存储文件泄露检测机制;2)提出抗泄露口令认证密钥交换协议;3)建立针对抗泄漏身份认证协议的可证明安全理论及评估方法。拟重点解决:1)蜜字安全模型构建及生成算法构造问题;2)抗腐化的口令认证密钥交换协议构造问题;3)协议形式化安全模型构建和应用评估问题。课题的开展将开启抗泄露身份认证协议这一研究方向,为解决现有身份认证协议无法实现的口令泄露检测问题,提供重要的理论依据和技术参考,同时为用户相关隐私数据保护奠定基础。
英文摘要
Acting as the vanguard of network defense, identity authentication is the cornerstone of information system security. However, it has a drawback that user information used for authentication is usually stored in an authentication server without necessary protection, so that this sensitive information may suffer from malicious leakage. Most of the current researches on identity authentication focus on the use of individual links, such as transmission security, but fail to consider the leak detection of stored files on authentication servers. This project intends to start with the honeyword-based leak detection mechanism, adopt a formal method, and use Bayesian, provable security, and other information security techniques to conduct research on leakage-resistant identity authentication protocols. Three goals are planned to be achieved: 1) a honeyword-based leak detection mechanism for server storage file; 2) a leakage-resistant password-authenticated key exchange protocol; 3) a set of provable security theory and evaluation methods for leakage-resistant identity authentication protocols. To achieve the goals, the project will technically focus on: 1) the construction of the honeyword security model and the construction of the generation algorithm; 2) the construction of the anti-corruption password-authenticated key exchange protocol; 3) the construction of the formal security model of the protocol and the application evaluation scheme. The design and implementation yielded by this project will lead the research direction of the leakage-resistant identity authentication, provide important theoretical basis and technical reference for solving the problem of password leakage detection, which cannot be tackled by the existing authentication protocols, and at the same time build up the foundation for user-related privacy data protection.
身份认证协议的安全性是保护用户隐私和系统安全的关键,蜜口令技术作为一种增强身份认证防护的方法,能够有效提升认证协议的抗泄漏性。本项目围绕蜜口令技术在身份认证协议中的应用展开,重点研究泄漏检测与防护机制,旨在提升现有认证协议的抗泄漏能力。经过四年的执行,项目在以下三个主要研究方向上取得了显著进展:(1)优化蜜口令泄漏检测模型,通过改进的概率模型,成功提高了口令泄漏的检测精度,并在多个公开数据集上验证了其有效性;(2)设计了基于蜜口令技术的身份认证密钥交换协议,实验验证了其在防止离线猜测攻击和会话窃取中的优势;(3)提出了新的蜜口令系统安全性指标,并为系统的参数选择提供了理论支持。研究成果已在国际知名学术期刊TIFS和会议USENIX Security等中发表,展示了蜜口令技术在身份认证领域的应用潜力。项目不仅成功实现了预定的研究目标,还为身份认证协议的安全性提供了理论依据和实践指导,具有重要的学术价值和广阔的应用前景。
全外延ScAlN薄膜及其HEMT结构的铁电极化调控研究
  • 批准号:
    62374002
  • 项目类别:
    面上项目
  • 资助金额:
    48万元
  • 批准年份:
    2023
  • 负责人:
    王平
  • 依托单位:
云计算环境下的匿名多因子认证协议研究
  • 批准号:
    61472016
  • 项目类别:
    面上项目
  • 资助金额:
    82.0万元
  • 批准年份:
    2014
  • 负责人:
    王平
  • 依托单位:
淋巴细胞骨架研究
  • 批准号:
    39170384
  • 项目类别:
    面上项目
  • 资助金额:
    3.5万元
  • 批准年份:
    1991
  • 负责人:
    王平
  • 依托单位:
国内基金
海外基金