Skip to main content

Showing 1–1 of 1 results for author: Sanusi, M

Searching in archive cs. Search in all archives.
.
  1. arXiv:2109.14490  [pdf

    cs.CR

    Might I Get Pwned: A Second Generation Compromised Credential Checking Service

    Authors: Bijeeta Pal, Mazharul Islam, Marina Sanusi, Nick Sullivan, Luke Valenta, Tara Whalen, Christopher Wood, Thomas Ristenpart, Rahul Chattejee

    Abstract: Credential stuffing attacks use stolen passwords to log into victim accounts. To defend against these attacks, recently deployed compromised credential checking (C3) services provide APIs that help users and companies check whether a username, password pair is exposed. These services however only check if the exact password is leaked, and therefore do not mitigate credential tweaking attacks - att… ▽ More

    Submitted 18 March, 2022; v1 submitted 29 September, 2021; originally announced September 2021.