2008 Second International Conference on Emerging Security Information, Systems and Technologies 2008
DOI: 10.1109/securware.2008.38
|View full text |Cite
|
Sign up to set email alerts
|

A New Anti-phishing Method in OpenID

Abstract: Following recent developments in digital environments, online services have become more diverse. Because of this, many users find it difficult to manage their ID and password. As such, there is a rising need for effective ID management systems. Among them, OpenID is a simple, light and usercentric ID management system. However, because of OpenID is vulnerable to phishing, so many measures being are taken to solve this problem, although no perfect anti-phishing method has so far been devised. In this paper, new… Show more

Help me understand this report

Search citation statements

Order By: Relevance

Paper Sections

Select...
3
1
1

Citation Types

0
6
0

Year Published

2010
2010
2021
2021

Publication Types

Select...
4
3

Relationship

0
7

Authors

Journals

citations
Cited by 13 publications
(6 citation statements)
references
References 0 publications
0
6
0
Order By: Relevance
“…Some works argue that OpenID is vulnerable to phishing attack [], a malicious relying party could redirect the user to a phishing website and obtain the user's password. Many further researches have been conducted to address the phishing problem.…”
Section: Related Workmentioning
confidence: 99%
See 1 more Smart Citation
“…Some works argue that OpenID is vulnerable to phishing attack [], a malicious relying party could redirect the user to a phishing website and obtain the user's password. Many further researches have been conducted to address the phishing problem.…”
Section: Related Workmentioning
confidence: 99%
“…Many further researches have been conducted to address the phishing problem. Lee et al [] proposed a mechanism to prevent phishing attack by using token and email verification. Urien et al [] also gave a solution to the phishing problem on the basis of secure sockets layer smart cards.…”
Section: Related Workmentioning
confidence: 99%
“…One of the most recent works related to the OpenID Phishing problem was by Lee et al . , where the authors proposed anti‐phishing methods using token and authentication emails. Feng et al and Huang et al .…”
Section: Related Workmentioning
confidence: 99%
“…This mechanism has several security risks, as it depends on the generally limited human capacity to create and remember secret phrases [4]. On the other hand, the OpenID protocol coupled with the use of password authentication is vulnerable to phishing attacks, in which the user is taken to a malicious SP to enter his password on a fake form that mimics the IdP [11] [12]. To eliminate the vulnerabilities like phishing attacks, the proposed model of identity management (IdM) is heavily dependent on protected hardware.…”
Section: Secfunet Identity Managementmentioning
confidence: 99%