{"id":"https://openalex.org/W2793573497","doi":"https://doi.org/10.1145/3176258.3176332","title":"The Next Domino to Fall","display_name":"The Next Domino to Fall","publication_year":2018,"publication_date":"2018-03-13","ids":{"openalex":"https://openalex.org/W2793573497","doi":"https://doi.org/10.1145/3176258.3176332","mag":"2793573497"},"language":"en","primary_location":{"id":"doi:10.1145/3176258.3176332","is_oa":false,"landing_page_url":"https://doi.org/10.1145/3176258.3176332","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Proceedings of the Eighth ACM Conference on Data and Application Security and Privacy","raw_type":"proceedings-article"},"type":"article","indexed_in":["crossref"],"open_access":{"is_oa":false,"oa_status":"closed","oa_url":null,"any_repository_has_fulltext":false},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5100367591","display_name":"Chun Wang","orcid":"https://orcid.org/0000-0003-2695-9781"},"institutions":[{"id":"https://openalex.org/I859038795","display_name":"Virginia Tech","ror":"https://ror.org/02smfhw86","country_code":"US","type":"education","lineage":["https://openalex.org/I859038795"]}],"countries":["US"],"is_corresponding":true,"raw_author_name":"Chun Wang","raw_affiliation_strings":["Virginia Tech, Blacksburg, VA, USA"],"affiliations":[{"raw_affiliation_string":"Virginia Tech, Blacksburg, VA, USA","institution_ids":["https://openalex.org/I859038795"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5036795344","display_name":"Steve T. K. Jan","orcid":null},"institutions":[{"id":"https://openalex.org/I859038795","display_name":"Virginia Tech","ror":"https://ror.org/02smfhw86","country_code":"US","type":"education","lineage":["https://openalex.org/I859038795"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Steve T.K. Jan","raw_affiliation_strings":["Virginia Tech, Blacksburg, VA, USA"],"affiliations":[{"raw_affiliation_string":"Virginia Tech, Blacksburg, VA, USA","institution_ids":["https://openalex.org/I859038795"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5030977980","display_name":"Hang Hu","orcid":"https://orcid.org/0000-0002-8590-9787"},"institutions":[{"id":"https://openalex.org/I859038795","display_name":"Virginia Tech","ror":"https://ror.org/02smfhw86","country_code":"US","type":"education","lineage":["https://openalex.org/I859038795"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Hang Hu","raw_affiliation_strings":["Virginia Tech, Blacksburg, VA, USA"],"affiliations":[{"raw_affiliation_string":"Virginia Tech, Blacksburg, VA, USA","institution_ids":["https://openalex.org/I859038795"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5091114430","display_name":"Douglas Bossart","orcid":null},"institutions":[{"id":"https://openalex.org/I859038795","display_name":"Virginia Tech","ror":"https://ror.org/02smfhw86","country_code":"US","type":"education","lineage":["https://openalex.org/I859038795"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Douglas Bossart","raw_affiliation_strings":["Virginia Tech, Blacksburg, VA, USA"],"affiliations":[{"raw_affiliation_string":"Virginia Tech, Blacksburg, VA, USA","institution_ids":["https://openalex.org/I859038795"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5100367418","display_name":"Gang Wang","orcid":"https://orcid.org/0000-0002-8910-8979"},"institutions":[{"id":"https://openalex.org/I859038795","display_name":"Virginia Tech","ror":"https://ror.org/02smfhw86","country_code":"US","type":"education","lineage":["https://openalex.org/I859038795"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Gang Wang","raw_affiliation_strings":["Virginia Tech, Blacksburg, VA, USA"],"affiliations":[{"raw_affiliation_string":"Virginia Tech, Blacksburg, VA, USA","institution_ids":["https://openalex.org/I859038795"]}]}],"institutions":[],"countries_distinct_count":1,"institutions_distinct_count":5,"corresponding_author_ids":["https://openalex.org/A5100367591"],"corresponding_institution_ids":["https://openalex.org/I859038795"],"apc_list":null,"apc_paid":null,"fwci":11.3879,"has_fulltext":false,"cited_by_count":52,"citation_normalized_percentile":{"value":0.9842858,"is_in_top_1_percent":false,"is_in_top_10_percent":true},"cited_by_percentile_year":{"min":96,"max":99},"biblio":{"volume":null,"issue":null,"first_page":"196","last_page":"203"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T11800","display_name":"User Authentication and Security Systems","score":1.0,"subfield":{"id":"https://openalex.org/subfields/1710","display_name":"Information Systems"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T11800","display_name":"User Authentication and Security Systems","score":1.0,"subfield":{"id":"https://openalex.org/subfields/1710","display_name":"Information Systems"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11241","display_name":"Advanced Malware Detection Techniques","score":0.9876000285148621,"subfield":{"id":"https://openalex.org/subfields/1711","display_name":"Signal Processing"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11644","display_name":"Spam and Phishing Detection","score":0.965499997138977,"subfield":{"id":"https://openalex.org/subfields/1710","display_name":"Information Systems"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/password","display_name":"Password","score":0.9599677324295044},{"id":"https://openalex.org/keywords/reuse","display_name":"Reuse","score":0.7946352958679199},{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.7176360487937927},{"id":"https://openalex.org/keywords/computer-security","display_name":"Computer security","score":0.6572400331497192},{"id":"https://openalex.org/keywords/domino-effect","display_name":"Domino effect","score":0.47437721490859985},{"id":"https://openalex.org/keywords/domino","display_name":"Domino","score":0.47356879711151123},{"id":"https://openalex.org/keywords/data-breach","display_name":"Data breach","score":0.46359437704086304},{"id":"https://openalex.org/keywords/internet-privacy","display_name":"Internet privacy","score":0.40803396701812744},{"id":"https://openalex.org/keywords/engineering","display_name":"Engineering","score":0.10526862740516663},{"id":"https://openalex.org/keywords/law","display_name":"Law","score":0.05618533492088318}],"concepts":[{"id":"https://openalex.org/C109297577","wikidata":"https://www.wikidata.org/wiki/Q161157","display_name":"Password","level":2,"score":0.9599677324295044},{"id":"https://openalex.org/C206588197","wikidata":"https://www.wikidata.org/wiki/Q846574","display_name":"Reuse","level":2,"score":0.7946352958679199},{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.7176360487937927},{"id":"https://openalex.org/C38652104","wikidata":"https://www.wikidata.org/wiki/Q3510521","display_name":"Computer security","level":1,"score":0.6572400331497192},{"id":"https://openalex.org/C155223936","wikidata":"https://www.wikidata.org/wiki/Q682875","display_name":"Domino effect","level":2,"score":0.47437721490859985},{"id":"https://openalex.org/C2776416436","wikidata":"https://www.wikidata.org/wiki/Q3751781","display_name":"Domino","level":3,"score":0.47356879711151123},{"id":"https://openalex.org/C165609540","wikidata":"https://www.wikidata.org/wiki/Q1172486","display_name":"Data breach","level":2,"score":0.46359437704086304},{"id":"https://openalex.org/C108827166","wikidata":"https://www.wikidata.org/wiki/Q175975","display_name":"Internet privacy","level":1,"score":0.40803396701812744},{"id":"https://openalex.org/C127413603","wikidata":"https://www.wikidata.org/wiki/Q11023","display_name":"Engineering","level":0,"score":0.10526862740516663},{"id":"https://openalex.org/C199539241","wikidata":"https://www.wikidata.org/wiki/Q7748","display_name":"Law","level":1,"score":0.05618533492088318},{"id":"https://openalex.org/C55493867","wikidata":"https://www.wikidata.org/wiki/Q7094","display_name":"Biochemistry","level":1,"score":0.0},{"id":"https://openalex.org/C161790260","wikidata":"https://www.wikidata.org/wiki/Q82264","display_name":"Catalysis","level":2,"score":0.0},{"id":"https://openalex.org/C548081761","wikidata":"https://www.wikidata.org/wiki/Q180388","display_name":"Waste management","level":1,"score":0.0},{"id":"https://openalex.org/C185592680","wikidata":"https://www.wikidata.org/wiki/Q2329","display_name":"Chemistry","level":0,"score":0.0},{"id":"https://openalex.org/C17744445","wikidata":"https://www.wikidata.org/wiki/Q36442","display_name":"Political science","level":0,"score":0.0}],"mesh":[],"locations_count":1,"locations":[{"id":"doi:10.1145/3176258.3176332","is_oa":false,"landing_page_url":"https://doi.org/10.1145/3176258.3176332","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Proceedings of the Eighth ACM Conference on Data and Application Security and Privacy","raw_type":"proceedings-article"}],"best_oa_location":null,"sustainable_development_goals":[{"score":0.6899999976158142,"id":"https://metadata.un.org/sdg/16","display_name":"Peace, Justice and strong institutions"}],"awards":[{"id":"https://openalex.org/G3797189155","display_name":null,"funder_award_id":"CNS-1717028","funder_id":"https://openalex.org/F4320306076","funder_display_name":"National Science Foundation"}],"funders":[{"id":"https://openalex.org/F4320306076","display_name":"National Science Foundation","ror":"https://ror.org/021nxhr62"}],"has_content":{"grobid_xml":false,"pdf":false},"content_urls":null,"referenced_works_count":29,"referenced_works":["https://openalex.org/W1463944966","https://openalex.org/W1466389411","https://openalex.org/W1521626219","https://openalex.org/W1532325895","https://openalex.org/W1987516957","https://openalex.org/W2007488200","https://openalex.org/W2019578814","https://openalex.org/W2054626033","https://openalex.org/W2073342447","https://openalex.org/W2086553822","https://openalex.org/W2091833612","https://openalex.org/W2111397260","https://openalex.org/W2113266120","https://openalex.org/W2133824719","https://openalex.org/W2135359429","https://openalex.org/W2167841397","https://openalex.org/W2171920515","https://openalex.org/W2258871870","https://openalex.org/W2260434259","https://openalex.org/W2413416220","https://openalex.org/W2417993288","https://openalex.org/W2463456957","https://openalex.org/W2490171383","https://openalex.org/W2524553946","https://openalex.org/W2538793708","https://openalex.org/W2613407938","https://openalex.org/W2620672633","https://openalex.org/W2765227388","https://openalex.org/W2765667105"],"related_works":["https://openalex.org/W3180090903","https://openalex.org/W4387844122","https://openalex.org/W2383431396","https://openalex.org/W2984306696","https://openalex.org/W2745797843","https://openalex.org/W3209158787","https://openalex.org/W4361865958","https://openalex.org/W2060027500","https://openalex.org/W2990336147","https://openalex.org/W4320006734"],"abstract_inverted_index":{"Leaked":[0],"passwords":[1,17,67,117],"from":[2],"data":[3,127],"breaches":[4],"can":[5,157],"pose":[6],"a":[7,30,33,56,137],"serious":[8],"threat":[9],"if":[10],"users":[11,62,111],"reuse":[12,51,78,114],"or":[13],"slightly":[14],"modify":[15],"the":[16,44,88,101,115,125,132,154],"for":[18,118,122],"other":[19,119],"services.":[20],"With":[21],"more":[22,145],"services":[23,70,92,99,121],"getting":[24],"breached":[25],"today,":[26],"there":[27],"is":[28,81],"still":[29,113],"lack":[31],"of":[32,36,49,59,87,153],"quantitative":[34],"understanding":[35],"this":[37,40],"risk.":[38],"In":[39],"paper,":[41],"we":[42,135],"perform":[43],"first":[45],"large-scale":[46],"empirical":[47],"analysis":[48],"password":[50,77,149],"and":[52,63,79,97,104],"modification":[53,80],"patterns":[54],"using":[55],"ground-truth":[57],"dataset":[58],"28.8":[60],"million":[61,66,148],"their":[64],"61.5":[65],"in":[68],"107":[69],"over":[71],"8":[72],"years.":[73],"We":[74,107,142],"find":[75],"that":[76,110,144],"very":[82],"common":[83],"(observed":[84],"on":[85],"52%":[86],"users).":[89],"Sensitive":[90],"online":[91,120],"such":[93],"as":[94],"shopping":[95],"websites":[96],"email":[98],"received":[100],"most":[102],"reused":[103],"modified":[105,155],"passwords.":[106],"also":[108],"observe":[109],"would":[112],"already-leaked":[116],"years":[123],"after":[124],"initial":[126],"breach.":[128],"Finally,":[129],"to":[130],"quantify":[131],"security":[133],"risks,":[134],"develop":[136],"new":[138],"training-based":[139],"guessing":[140],"algorithm.":[141],"show":[143],"than":[146],"16":[147],"pairs":[150],"(including":[151],"30%":[152],"passwords)":[156],"be":[158],"cracked":[159],"within":[160],"just":[161],"10":[162],"guesses.":[163]},"counts_by_year":[{"year":2025,"cited_by_count":3},{"year":2024,"cited_by_count":7},{"year":2023,"cited_by_count":5},{"year":2022,"cited_by_count":8},{"year":2021,"cited_by_count":7},{"year":2020,"cited_by_count":10},{"year":2019,"cited_by_count":9},{"year":2018,"cited_by_count":3}],"updated_date":"2025-11-06T03:46:38.306776","created_date":"2025-10-10T00:00:00"}
