Proceedings of the 18th International Conference on Availability, Reliability and Security 2023
DOI: 10.1145/3600160.3605024
|View full text |Cite
|
Sign up to set email alerts
|

Evaluation of Real-World Risk-Based Authentication at Online Services Revisited: Complexity Wins

Jan-Phillip Makowski,
Daniela Pöhn

Abstract: Risk-based authentication (RBA) aims to protect end-users against attacks involving stolen or otherwise guessed passwords without requiring a second authentication method all the time. Online services typically set limits on what is still seen as normal and what is not, as well as the actions taken afterward. Consequently, RBA monitors different features, such as geolocation and device during login. If the features' values differ from the expected values, then a second authentication method might be requested.… Show more

Help me understand this report

Search citation statements

Order By: Relevance

Paper Sections

Select...

Citation Types

0
0
0

Year Published

2024
2024
2024
2024

Publication Types

Select...
1
1

Relationship

0
2

Authors

Journals

citations
Cited by 2 publications
references
References 36 publications
0
0
0
Order By: Relevance