Skip to main content
Log in

Password hardening based on keystroke dynamics

  • Regular contribution
  • Published:
International Journal of Information Security Aims and scope Submit manuscript

Abstract.

We present a novel approach to improving the security of passwords. In our approach, the legitimate user’s typing patterns (e.g., durations of keystrokes and latencies between keystrokes) are combined with the user’s password to generate a hardened password that is convincingly more secure than conventional passwords alone. In addition, our scheme automatically adapts to gradual changes in a user’s typing patterns while maintaining the same hardened password across multiple logins, for use in file encryption or other applications requiring a long-term secret key. Using empirical data and a prototype implementation of our scheme, we give evidence that our approach is viable in practice, in terms of ease of use, improved security, and performance.

This is a preview of subscription content, log in via an institution to check access.

Access this article

Price excludes VAT (USA)
Tax calculation will be finalised during checkout.

Instant access to the full article PDF.

Similar content being viewed by others

Author information

Authors and Affiliations

Authors

Additional information

Published online: 26 October 2001

Rights and permissions

Reprints and permissions

About this article

Cite this article

Monrose, F., Reiter, M. & Wetzel, S. Password hardening based on keystroke dynamics. IJIS 1, 69–83 (2002). https://doi.org/10.1007/s102070100006

Download citation

  • Issue Date:

  • DOI: https://doi.org/10.1007/s102070100006

Navigation