A Note on Proactive Password Checking
Author(s): Jianxin Jeff Yan

Date: September 2001
Publication: ACM New Security Paradigms Workshop
Page(s): 127 - 135
Publisher: ACM
Source 1: http://www.nspw.org/papers/2001/nspw2001-yan.pdf
Source 2: http://dx.doi.org/10.1145/508171.508194 - Subscription or payment required

Abstract or Summary:
Nowadays, proactive password checking algorithms are based on the philosophy of the dictionary attack, and they often fail to prevent some weak passwords with low entropy. In this paper, a new approach is proposed to deal with this new class of weak passwords by (roughly) measuring entropy. A simple example is given to exploit effective patterns to prevent low-entropy passwords as the first step of entropy-based proactive password checking.

