{"id":"https://openalex.org/W2921685785","doi":"https://doi.org/10.1109/tdsc.2019.2902551","title":"Building and Studying a Password Store that Perfectly Hides Passwords from Itself","display_name":"Building and Studying a Password Store that Perfectly Hides Passwords from Itself","publication_year":2019,"publication_date":"2019-03-14","ids":{"openalex":"https://openalex.org/W2921685785","doi":"https://doi.org/10.1109/tdsc.2019.2902551","mag":"2921685785"},"language":"en","primary_location":{"id":"doi:10.1109/tdsc.2019.2902551","is_oa":false,"landing_page_url":"https://doi.org/10.1109/tdsc.2019.2902551","pdf_url":null,"source":{"id":"https://openalex.org/S133795288","display_name":"IEEE Transactions on Dependable and Secure Computing","issn_l":"1545-5971","issn":["1545-5971","1941-0018","2160-9209"],"is_oa":false,"is_in_doaj":false,"is_core":true,"host_organization":"https://openalex.org/P4310320439","host_organization_name":"IEEE Computer Society","host_organization_lineage":["https://openalex.org/P4310320439","https://openalex.org/P4310319808"],"host_organization_lineage_names":["IEEE Computer Society","Institute of Electrical and Electronics Engineers"],"type":"journal"},"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"IEEE Transactions on Dependable and Secure Computing","raw_type":"journal-article"},"type":"article","indexed_in":["crossref"],"open_access":{"is_oa":false,"oa_status":"closed","oa_url":null,"any_repository_has_fulltext":false},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5045531459","display_name":"Maliheh Shirvanian","orcid":"https://orcid.org/0000-0001-9735-3723"},"institutions":[{"id":"https://openalex.org/I32389192","display_name":"University of Alabama at Birmingham","ror":"https://ror.org/008s83205","country_code":"US","type":"education","lineage":["https://openalex.org/I32389192"]}],"countries":["US"],"is_corresponding":true,"raw_author_name":"Maliheh Shirvanian","raw_affiliation_strings":["University of Alabama at Birmingham, Birmingham, AL, USA"],"affiliations":[{"raw_affiliation_string":"University of Alabama at Birmingham, Birmingham, AL, USA","institution_ids":["https://openalex.org/I32389192"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5059730489","display_name":"Nitesh Saxena","orcid":"https://orcid.org/0000-0001-6083-104X"},"institutions":[{"id":"https://openalex.org/I32389192","display_name":"University of Alabama at Birmingham","ror":"https://ror.org/008s83205","country_code":"US","type":"education","lineage":["https://openalex.org/I32389192"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Nitesh Saxena","raw_affiliation_strings":["University of Alabama at Birmingham, Birmingham, AL, USA"],"affiliations":[{"raw_affiliation_string":"University of Alabama at Birmingham, Birmingham, AL, USA","institution_ids":["https://openalex.org/I32389192"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5041605156","display_name":"Stanis\u0142aw Jarecki","orcid":"https://orcid.org/0000-0002-5055-2407"},"institutions":[{"id":"https://openalex.org/I204250578","display_name":"University of California, Irvine","ror":"https://ror.org/04gyf1771","country_code":"US","type":"education","lineage":["https://openalex.org/I204250578"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Stanislaw Jarecki","raw_affiliation_strings":["University of California, Irvine, CA, USA"],"affiliations":[{"raw_affiliation_string":"University of California, Irvine, CA, USA","institution_ids":["https://openalex.org/I204250578"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5057824781","display_name":"Hugo Krawczyk","orcid":"https://orcid.org/0000-0003-3130-1888"},"institutions":[{"id":"https://openalex.org/I1341412227","display_name":"IBM (United States)","ror":"https://ror.org/05hh8d621","country_code":"US","type":"company","lineage":["https://openalex.org/I1341412227"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Hugo Krawczyk","raw_affiliation_strings":["IBM Research, New York, NY, USA"],"affiliations":[{"raw_affiliation_string":"IBM Research, New York, NY, USA","institution_ids":["https://openalex.org/I1341412227"]}]}],"institutions":[],"countries_distinct_count":1,"institutions_distinct_count":4,"corresponding_author_ids":["https://openalex.org/A5045531459"],"corresponding_institution_ids":["https://openalex.org/I32389192"],"apc_list":null,"apc_paid":null,"fwci":3.1666,"has_fulltext":false,"cited_by_count":12,"citation_normalized_percentile":{"value":0.92845788,"is_in_top_1_percent":false,"is_in_top_10_percent":true},"cited_by_percentile_year":{"min":89,"max":99},"biblio":{"volume":"16","issue":"5","first_page":"770","last_page":"782"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T11800","display_name":"User Authentication and Security Systems","score":1.0,"subfield":{"id":"https://openalex.org/subfields/1710","display_name":"Information Systems"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T11800","display_name":"User Authentication and Security Systems","score":1.0,"subfield":{"id":"https://openalex.org/subfields/1710","display_name":"Information Systems"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11241","display_name":"Advanced Malware Detection Techniques","score":0.9983000159263611,"subfield":{"id":"https://openalex.org/subfields/1711","display_name":"Signal Processing"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11045","display_name":"Privacy, Security, and Data Protection","score":0.9750999808311462,"subfield":{"id":"https://openalex.org/subfields/3312","display_name":"Sociology and Political Science"},"field":{"id":"https://openalex.org/fields/33","display_name":"Social Sciences"},"domain":{"id":"https://openalex.org/domains/2","display_name":"Social Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/password","display_name":"Password","score":0.9413176774978638},{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.8289836645126343},{"id":"https://openalex.org/keywords/sphinx","display_name":"Sphinx","score":0.6840671896934509},{"id":"https://openalex.org/keywords/computer-security","display_name":"Computer security","score":0.6832271218299866},{"id":"https://openalex.org/keywords/password-cracking","display_name":"Password cracking","score":0.5590784549713135},{"id":"https://openalex.org/keywords/password-policy","display_name":"Password policy","score":0.49366554617881775},{"id":"https://openalex.org/keywords/password-strength","display_name":"Password strength","score":0.4523162245750427},{"id":"https://openalex.org/keywords/one-time-password","display_name":"One-time password","score":0.393688440322876}],"concepts":[{"id":"https://openalex.org/C109297577","wikidata":"https://www.wikidata.org/wiki/Q161157","display_name":"Password","level":2,"score":0.9413176774978638},{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.8289836645126343},{"id":"https://openalex.org/C2777299493","wikidata":"https://www.wikidata.org/wiki/Q151480","display_name":"Sphinx","level":2,"score":0.6840671896934509},{"id":"https://openalex.org/C38652104","wikidata":"https://www.wikidata.org/wiki/Q3510521","display_name":"Computer security","level":1,"score":0.6832271218299866},{"id":"https://openalex.org/C3847113","wikidata":"https://www.wikidata.org/wiki/Q2746524","display_name":"Password cracking","level":5,"score":0.5590784549713135},{"id":"https://openalex.org/C98705547","wikidata":"https://www.wikidata.org/wiki/Q3394687","display_name":"Password policy","level":4,"score":0.49366554617881775},{"id":"https://openalex.org/C70530487","wikidata":"https://www.wikidata.org/wiki/Q1990841","display_name":"Password strength","level":4,"score":0.4523162245750427},{"id":"https://openalex.org/C89479133","wikidata":"https://www.wikidata.org/wiki/Q1137840","display_name":"One-time password","level":3,"score":0.393688440322876},{"id":"https://openalex.org/C153349607","wikidata":"https://www.wikidata.org/wiki/Q36649","display_name":"Visual arts","level":1,"score":0.0},{"id":"https://openalex.org/C142362112","wikidata":"https://www.wikidata.org/wiki/Q735","display_name":"Art","level":0,"score":0.0}],"mesh":[],"locations_count":1,"locations":[{"id":"doi:10.1109/tdsc.2019.2902551","is_oa":false,"landing_page_url":"https://doi.org/10.1109/tdsc.2019.2902551","pdf_url":null,"source":{"id":"https://openalex.org/S133795288","display_name":"IEEE Transactions on Dependable and Secure Computing","issn_l":"1545-5971","issn":["1545-5971","1941-0018","2160-9209"],"is_oa":false,"is_in_doaj":false,"is_core":true,"host_organization":"https://openalex.org/P4310320439","host_organization_name":"IEEE Computer Society","host_organization_lineage":["https://openalex.org/P4310320439","https://openalex.org/P4310319808"],"host_organization_lineage_names":["IEEE Computer Society","Institute of Electrical and Electronics Engineers"],"type":"journal"},"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"IEEE Transactions on Dependable and Secure Computing","raw_type":"journal-article"}],"best_oa_location":null,"sustainable_development_goals":[],"awards":[],"funders":[],"has_content":{"grobid_xml":false,"pdf":false},"content_urls":null,"referenced_works_count":32,"referenced_works":["https://openalex.org/W27238938","https://openalex.org/W140353411","https://openalex.org/W1501932514","https://openalex.org/W1540780277","https://openalex.org/W1550000763","https://openalex.org/W1607915502","https://openalex.org/W1884689072","https://openalex.org/W1889757464","https://openalex.org/W1959803714","https://openalex.org/W2030112111","https://openalex.org/W2030993695","https://openalex.org/W2037202491","https://openalex.org/W2048755632","https://openalex.org/W2096938398","https://openalex.org/W2100783932","https://openalex.org/W2122087485","https://openalex.org/W2123544182","https://openalex.org/W2124926080","https://openalex.org/W2125011234","https://openalex.org/W2129768690","https://openalex.org/W2139842203","https://openalex.org/W2145994642","https://openalex.org/W2148327104","https://openalex.org/W2149929743","https://openalex.org/W2184653176","https://openalex.org/W2406790903","https://openalex.org/W2534419286","https://openalex.org/W2735788045","https://openalex.org/W6632475054","https://openalex.org/W6632930104","https://openalex.org/W6636250284","https://openalex.org/W6679081015"],"related_works":["https://openalex.org/W4299928509","https://openalex.org/W2969720675","https://openalex.org/W2017283799","https://openalex.org/W1571454820","https://openalex.org/W2743151892","https://openalex.org/W2953105088","https://openalex.org/W3157555135","https://openalex.org/W2596766976","https://openalex.org/W2989690789","https://openalex.org/W3088784215"],"abstract_inverted_index":{"We":[0,120,140],"introduce":[1],"a":[2,143,155],"novel":[3],"approach":[4],"to":[5,100],"password":[6,16,61,64,151],"management,":[7],"called":[8],"SPHINX,":[9,23,129],"which":[10,108],"remains":[11],"secure":[12],"even":[13,47],"when":[14],"the":[15,24,28,34,45,49,51,59,63,69,98,105,122],"manager":[17],"itself":[18],"has":[19],"been":[20],"compromised.":[21],"In":[22],"information":[25,82],"stored":[26],"on":[27,83,154],"device":[29,70],"is":[30,65],"theoretically":[31],"independent":[32],"of":[33,44,128,147,159],"user's":[35],"master":[36,60],"password.":[37],"Moreover,":[38],"an":[39],"attacker":[40],"with":[41,54,104,149],"full":[42],"control":[43],"device,":[46],"at":[48],"time":[50],"user":[52],"interacts":[53],"it,":[55],"learns":[56],"nothing":[57],"about":[58],"-":[62],"not":[66],"entered":[67],"into":[68],"in":[71,75],"plaintext":[72],"form":[73],"or":[74],"any":[76],"other":[77,150],"way":[78],"that":[79],"may":[80],"leak":[81],"it.":[84],"Unlike":[85],"existing":[86],"managers,":[87],"SPHINX":[88,148],"produces":[89],"strictly":[90],"high-entropy":[91],"passwords":[92,103],"and":[93,113,125,136,162],"makes":[94],"it":[95],"compulsory":[96],"for":[97],"users":[99],"register":[101],"these":[102],"web":[106],"services,":[107],"defeats":[109],"online":[110],"guessing":[111],"attacks":[112],"offline":[114],"dictionary":[115],"attack":[116],"upon":[117],"service":[118],"compromise.":[119],"present":[121],"design,":[123],"implementation":[124],"performance":[126],"evaluation":[127,146],"offering":[130],"prototype":[131],"browser":[132],"plugins,":[133],"smartphone":[134],"apps":[135],"transparent":[137],"device-client":[138],"communication.":[139],"further":[141],"provide":[142],"comparative":[144],"analytical":[145],"managers":[152],"based":[153],"formal":[156],"framework":[157],"consisting":[158],"security,":[160],"usability,":[161],"deployability":[163],"metrics.":[164]},"counts_by_year":[{"year":2026,"cited_by_count":1},{"year":2025,"cited_by_count":1},{"year":2023,"cited_by_count":1},{"year":2022,"cited_by_count":4},{"year":2021,"cited_by_count":2},{"year":2020,"cited_by_count":3}],"updated_date":"2026-03-20T23:20:44.827607","created_date":"2025-10-10T00:00:00"}
