{"id":"https://openalex.org/W2108132369","doi":"https://doi.org/10.1145/1378063.1378107","title":"A note on the security of code memo","display_name":"A note on the security of code memo","publication_year":2007,"publication_date":"2007-09-10","ids":{"openalex":"https://openalex.org/W2108132369","doi":"https://doi.org/10.1145/1378063.1378107","mag":"2108132369"},"language":"en","primary_location":{"id":"doi:10.1145/1378063.1378107","is_oa":false,"landing_page_url":"https://doi.org/10.1145/1378063.1378107","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Proceedings of the 4th international conference on mobile technology, applications, and systems and the 1st international symposium on Computer human interaction in mobile technology","raw_type":"proceedings-article"},"type":"article","indexed_in":["crossref"],"open_access":{"is_oa":false,"oa_status":"closed","oa_url":null,"any_repository_has_fulltext":false},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5109220671","display_name":"Ruben Wolf","orcid":null},"institutions":[{"id":"https://openalex.org/I4210133470","display_name":"Fraunhofer Institute for Secure Information Technology","ror":"https://ror.org/03qt2gs44","country_code":"DE","type":"facility","lineage":["https://openalex.org/I4210133470","https://openalex.org/I4923324"]}],"countries":["DE"],"is_corresponding":true,"raw_author_name":"Ruben Wolf","raw_affiliation_strings":["Fraunhofer-Institute for Secure Information Technology (SIT), Darmstadt, Germany"],"affiliations":[{"raw_affiliation_string":"Fraunhofer-Institute for Secure Information Technology (SIT), Darmstadt, Germany","institution_ids":["https://openalex.org/I4210133470"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5101819568","display_name":"Markus Schneider","orcid":"https://orcid.org/0000-0003-0543-2593"},"institutions":[{"id":"https://openalex.org/I4210133470","display_name":"Fraunhofer Institute for Secure Information Technology","ror":"https://ror.org/03qt2gs44","country_code":"DE","type":"facility","lineage":["https://openalex.org/I4210133470","https://openalex.org/I4923324"]}],"countries":["DE"],"is_corresponding":false,"raw_author_name":"Markus Schneider","raw_affiliation_strings":["Fraunhofer-Institute for Secure Information Technology (SIT), Darmstadt, Germany"],"affiliations":[{"raw_affiliation_string":"Fraunhofer-Institute for Secure Information Technology (SIT), Darmstadt, Germany","institution_ids":["https://openalex.org/I4210133470"]}]}],"institutions":[],"countries_distinct_count":1,"institutions_distinct_count":2,"corresponding_author_ids":["https://openalex.org/A5109220671"],"corresponding_institution_ids":["https://openalex.org/I4210133470"],"apc_list":null,"apc_paid":null,"fwci":0.0,"has_fulltext":false,"cited_by_count":0,"citation_normalized_percentile":{"value":0.1313877,"is_in_top_1_percent":false,"is_in_top_10_percent":false},"cited_by_percentile_year":null,"biblio":{"volume":null,"issue":null,"first_page":"261","last_page":"267"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T11800","display_name":"User Authentication and Security Systems","score":0.9901000261306763,"subfield":{"id":"https://openalex.org/subfields/1710","display_name":"Information Systems"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T11800","display_name":"User Authentication and Security Systems","score":0.9901000261306763,"subfield":{"id":"https://openalex.org/subfields/1710","display_name":"Information Systems"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T10951","display_name":"Cryptographic Implementations and Security","score":0.9857000112533569,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11017","display_name":"Chaos-based Image/Signal Encryption","score":0.9775000214576721,"subfield":{"id":"https://openalex.org/subfields/1707","display_name":"Computer Vision and Pattern Recognition"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/password","display_name":"Password","score":0.8783049583435059},{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.7660949230194092},{"id":"https://openalex.org/keywords/computer-security","display_name":"Computer security","score":0.7453616261482239},{"id":"https://openalex.org/keywords/code","display_name":"Code (set theory)","score":0.5571766495704651},{"id":"https://openalex.org/keywords/password-policy","display_name":"Password policy","score":0.5471207499504089},{"id":"https://openalex.org/keywords/firmware","display_name":"Firmware","score":0.48474809527397156},{"id":"https://openalex.org/keywords/authentication","display_name":"Authentication (law)","score":0.4458933174610138},{"id":"https://openalex.org/keywords/key","display_name":"Key (lock)","score":0.4276217222213745},{"id":"https://openalex.org/keywords/message-authentication-code","display_name":"Message authentication code","score":0.4106020927429199},{"id":"https://openalex.org/keywords/cryptography","display_name":"Cryptography","score":0.38156628608703613},{"id":"https://openalex.org/keywords/one-time-password","display_name":"One-time password","score":0.3583129346370697},{"id":"https://openalex.org/keywords/operating-system","display_name":"Operating system","score":0.10903602838516235},{"id":"https://openalex.org/keywords/programming-language","display_name":"Programming language","score":0.07942524552345276}],"concepts":[{"id":"https://openalex.org/C109297577","wikidata":"https://www.wikidata.org/wiki/Q161157","display_name":"Password","level":2,"score":0.8783049583435059},{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.7660949230194092},{"id":"https://openalex.org/C38652104","wikidata":"https://www.wikidata.org/wiki/Q3510521","display_name":"Computer security","level":1,"score":0.7453616261482239},{"id":"https://openalex.org/C2776760102","wikidata":"https://www.wikidata.org/wiki/Q5139990","display_name":"Code (set theory)","level":3,"score":0.5571766495704651},{"id":"https://openalex.org/C98705547","wikidata":"https://www.wikidata.org/wiki/Q3394687","display_name":"Password policy","level":4,"score":0.5471207499504089},{"id":"https://openalex.org/C67212190","wikidata":"https://www.wikidata.org/wiki/Q104851","display_name":"Firmware","level":2,"score":0.48474809527397156},{"id":"https://openalex.org/C148417208","wikidata":"https://www.wikidata.org/wiki/Q4825882","display_name":"Authentication (law)","level":2,"score":0.4458933174610138},{"id":"https://openalex.org/C26517878","wikidata":"https://www.wikidata.org/wiki/Q228039","display_name":"Key (lock)","level":2,"score":0.4276217222213745},{"id":"https://openalex.org/C141492731","wikidata":"https://www.wikidata.org/wiki/Q1052621","display_name":"Message authentication code","level":3,"score":0.4106020927429199},{"id":"https://openalex.org/C178489894","wikidata":"https://www.wikidata.org/wiki/Q8789","display_name":"Cryptography","level":2,"score":0.38156628608703613},{"id":"https://openalex.org/C89479133","wikidata":"https://www.wikidata.org/wiki/Q1137840","display_name":"One-time password","level":3,"score":0.3583129346370697},{"id":"https://openalex.org/C111919701","wikidata":"https://www.wikidata.org/wiki/Q9135","display_name":"Operating system","level":1,"score":0.10903602838516235},{"id":"https://openalex.org/C199360897","wikidata":"https://www.wikidata.org/wiki/Q9143","display_name":"Programming language","level":1,"score":0.07942524552345276},{"id":"https://openalex.org/C177264268","wikidata":"https://www.wikidata.org/wiki/Q1514741","display_name":"Set (abstract data type)","level":2,"score":0.0}],"mesh":[],"locations_count":5,"locations":[{"id":"doi:10.1145/1378063.1378107","is_oa":false,"landing_page_url":"https://doi.org/10.1145/1378063.1378107","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Proceedings of the 4th international conference on mobile technology, applications, and systems and the 1st international symposium on Computer human interaction in mobile technology","raw_type":"proceedings-article"},{"id":"pmh:oai:CiteSeerX.psu:10.1.1.333.2713","is_oa":false,"landing_page_url":"http://citeseerx.ist.psu.edu/viewdoc/summary?doi=10.1.1.333.2713","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"submittedVersion","is_accepted":false,"is_published":false,"raw_source_name":"http://private.sit.fraunhofer.de/~rwolf/publications/security-codememo.pdf","raw_type":"text"},{"id":"pmh:oai:CiteSeerX.psu:10.1.1.95.3682","is_oa":false,"landing_page_url":"http://citeseerx.ist.psu.edu/viewdoc/summary?doi=10.1.1.95.3682","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"submittedVersion","is_accepted":false,"is_published":false,"raw_source_name":"http://private.sit.fraunhofer.de/~rwolf/publications/security-codememo.pdf","raw_type":"text"},{"id":"pmh:oai:fraunhofer.de:N-128946","is_oa":false,"landing_page_url":"http://publica.fraunhofer.de/documents/N-128946.html","pdf_url":null,"source":{"id":"https://openalex.org/S4306400801","display_name":"Publikationsdatenbank der Fraunhofer-Gesellschaft (Fraunhofer-Gesellschaft)","issn_l":null,"issn":null,"is_oa":false,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/I4923324","host_organization_name":"Fraunhofer-Gesellschaft","host_organization_lineage":["https://openalex.org/I4923324"],"host_organization_lineage_names":[],"type":"repository"},"license":null,"license_id":null,"version":"submittedVersion","is_accepted":false,"is_published":false,"raw_source_name":"Fraunhofer SIT","raw_type":"Conference Paper"},{"id":"pmh:oai:publica.fraunhofer.de:publica/357274","is_oa":false,"landing_page_url":"https://publica.fraunhofer.de/handle/publica/357274","pdf_url":null,"source":{"id":"https://openalex.org/S4306400318","display_name":"Fraunhofer-Publica (Fraunhofer-Gesellschaft)","issn_l":null,"issn":null,"is_oa":false,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/I4923324","host_organization_name":"Fraunhofer-Gesellschaft","host_organization_lineage":["https://openalex.org/I4923324"],"host_organization_lineage_names":[],"type":"repository"},"license":null,"license_id":null,"version":"submittedVersion","is_accepted":false,"is_published":false,"raw_source_name":null,"raw_type":"conference paper"}],"best_oa_location":null,"sustainable_development_goals":[{"score":0.5600000023841858,"id":"https://metadata.un.org/sdg/16","display_name":"Peace, Justice and strong institutions"}],"awards":[],"funders":[],"has_content":{"pdf":false,"grobid_xml":false},"content_urls":null,"referenced_works_count":2,"referenced_works":["https://openalex.org/W1971139376","https://openalex.org/W2109394932"],"related_works":["https://openalex.org/W2969720675","https://openalex.org/W2359085393","https://openalex.org/W2156083280","https://openalex.org/W2743151892","https://openalex.org/W3034387269","https://openalex.org/W2237863779","https://openalex.org/W2025554913","https://openalex.org/W2019897613","https://openalex.org/W2526316819","https://openalex.org/W2021087413"],"abstract_inverted_index":{"Today,":[0],"secret":[1,24,55,69,93],"codes":[2,56,70,94],"such":[3],"as":[4,102],"passwords":[5,44,171,203],"and":[6,47,175,196,204],"PINs":[7],"are":[8,28,76],"the":[9,18,112,115,138,192,201],"most":[10],"prevalent":[11],"means":[12],"for":[13,167],"user":[14],"authentication.":[15],"Because":[16],"of":[17,22,65,114,179],"constantly":[19],"growing":[20],"number":[21],"required":[23],"codes,":[25],"computer":[26],"users":[27],"increasingly":[29],"overtaxed.":[30],"This":[31,182],"leads":[32],"to":[33,42,61,67,91,120,127,148,190,198],"many":[34],"problems":[35,49],"in":[36,45,95,160,186],"daily":[37],"use,":[38],"e.g.,":[39],"costs":[40],"due":[41],"forgotten":[43],"enterprises":[46],"security":[48],"through":[50],"bad":[51],"password":[52],"practice.":[53],"Storing":[54],"on":[57,88,104],"mobile":[58,74,89,107],"phones":[59,75,90],"seems":[60],"be":[62,165],"some":[63],"kind":[64],"panacea":[66],"have":[68,156],"always":[71],"available":[72],"since":[73],"today's":[77],"permanent":[78],"companions.":[79],"Code":[80,116,150,161],"Memo":[81,117,162],"is":[82,86,100],"a":[83,96,187],"software":[84],"that":[85,111,163],"used":[87],"store":[92],"safe":[97],"way;":[98],"it":[99,131],"provided":[101],"firmware":[103],"Sony":[105],"Ericsson":[106],"phones.":[108],"We":[109],"assume":[110],"intention":[113],"designers":[118],"was":[119],"provide":[121],"an":[122,133],"ideal":[123],"cipher":[124],"system":[125],"according":[126],"Shannon's":[128],"classification,":[129],"i.e.,":[130],"leaves":[132],"adversary":[134],"with":[135],"uncertainty":[136],"w.r.t.":[137],"correct":[139,169,193],"decryption":[140],"key.":[141],"In":[142],"this":[143],"paper":[144],"we":[145,155],"show":[146],"how":[147],"break":[149],"Memo.":[151],"For":[152],"our":[153],"attack,":[154],"identified":[157],"feedback":[158],"channels":[159],"can":[164],"exploited":[166],"distinguishing":[168],"master":[170,180,194],"from":[172],"incorrect":[173],"ones,":[174],"thereby,":[176],"sieving":[177],"candidates":[178],"passwords.":[181],"weakness":[183],"allows":[184],"attackers":[185],"realistic":[188],"setting":[189],"identify":[191],"password,":[195],"thus,":[197],"obtain":[199],"all":[200],"stored":[202],"PINs.":[205]},"counts_by_year":[],"updated_date":"2026-04-05T17:49:38.594831","created_date":"2025-10-10T00:00:00"}
