Title :
An Security-Enhanced Authentication System Based on OTP System in E-Commerce
Author :
Wang, Liang ; Zhang, Runtong
Author_Institution :
Inst. of Inf. Syst., Beijing Jiaotong Univ., Beijing, China
Abstract :
This paper analyzed the shortages of S/KEY OTP system in mobile commerce identity authentication and suggested an improved one-time password system based on bidirectional virtual authorization in mobile application systems. On one hand, this suggestion can reduce the calculation stress of both client and server, accordingly increases the efficiency of authorization and withstands the DoS attack. On the other hand, the suggestion can implement the bidirectional authorization and reduce the possibility of fishing attack.
Keywords :
authorisation; client-server systems; cryptography; electronic commerce; mobile computing; DoS attack; S/KEY OTP system; bidirectional virtual authorization; client-server system; e-commerce; identity authentication; mobile application system; mobile commerce; one-time password system; phishing attack; security-enhanced authentication system; Analytical models; Authentication; Authorization; Business; Computer crime; Mobile communication; Servers;
Conference_Titel :
Management and Service Science (MASS), 2010 International Conference on
Conference_Location :
Wuhan
Print_ISBN :
978-1-4244-5325-2
Electronic_ISBN :
978-1-4244-5326-9
DOI :
10.1109/ICMSS.2010.5576870