Two-factor secure password manager

The usage of password managers nowadays has seen a tremendous increase. These applications provide many services to users that make user authentication easier. The password database is commonly locked by a master password, which when supplied allows the password manager to interact with the appropri...

Full description

Saved in:
Bibliographic Details
Main Author: Jayakumar Sanjana
Other Authors: Alwen Fernanto Tiu
Format: Final Year Project
Language:English
Published: 2017
Subjects:
Online Access:http://hdl.handle.net/10356/70549
Tags: Add Tag
No Tags, Be the first to tag this record!
Institution: Nanyang Technological University
Language: English
id sg-ntu-dr.10356-70549
record_format dspace
spelling sg-ntu-dr.10356-705492023-03-03T20:34:10Z Two-factor secure password manager Jayakumar Sanjana Alwen Fernanto Tiu School of Computer Science and Engineering DRNTU::Engineering::Computer science and engineering The usage of password managers nowadays has seen a tremendous increase. These applications provide many services to users that make user authentication easier. The password database is commonly locked by a master password, which when supplied allows the password manager to interact with the appropriate online services. This encrypted database is commonly stored entirely in a particular device, protected only by the master password. However, the exposure of the password could result in the disclosure of the entire database. The encrypted database still provides an opportunity to leak the passwords if decoded. This has brought about a need for improved security of these applications as they store critical information. The aim of this project is to reduce the risk of stolen encrypted database and master password by utilizing the Shamir’s secret sharing scheme that would split the database into many shares. This would implement a password storage that would store the split in multiple locations and utilize an authentication protocol that would require the exchange of these shares. A proof-of-concept to employ the splitting of storage and recombining of shared secrets to unlock the stored password is implemented. The possible security breaches that are applicable on the system are analyzed. Overall, through thorough investigation and experiments, the feasibility of the model is portrayed. Bachelor of Engineering (Computer Science) 2017-04-27T05:58:24Z 2017-04-27T05:58:24Z 2017 Final Year Project (FYP) http://hdl.handle.net/10356/70549 en Nanyang Technological University 49 p. application/pdf
institution Nanyang Technological University
building NTU Library
continent Asia
country Singapore
Singapore
content_provider NTU Library
collection DR-NTU
language English
topic DRNTU::Engineering::Computer science and engineering
spellingShingle DRNTU::Engineering::Computer science and engineering
Jayakumar Sanjana
Two-factor secure password manager
description The usage of password managers nowadays has seen a tremendous increase. These applications provide many services to users that make user authentication easier. The password database is commonly locked by a master password, which when supplied allows the password manager to interact with the appropriate online services. This encrypted database is commonly stored entirely in a particular device, protected only by the master password. However, the exposure of the password could result in the disclosure of the entire database. The encrypted database still provides an opportunity to leak the passwords if decoded. This has brought about a need for improved security of these applications as they store critical information. The aim of this project is to reduce the risk of stolen encrypted database and master password by utilizing the Shamir’s secret sharing scheme that would split the database into many shares. This would implement a password storage that would store the split in multiple locations and utilize an authentication protocol that would require the exchange of these shares. A proof-of-concept to employ the splitting of storage and recombining of shared secrets to unlock the stored password is implemented. The possible security breaches that are applicable on the system are analyzed. Overall, through thorough investigation and experiments, the feasibility of the model is portrayed.
author2 Alwen Fernanto Tiu
author_facet Alwen Fernanto Tiu
Jayakumar Sanjana
format Final Year Project
author Jayakumar Sanjana
author_sort Jayakumar Sanjana
title Two-factor secure password manager
title_short Two-factor secure password manager
title_full Two-factor secure password manager
title_fullStr Two-factor secure password manager
title_full_unstemmed Two-factor secure password manager
title_sort two-factor secure password manager
publishDate 2017
url http://hdl.handle.net/10356/70549
_version_ 1759858079360352256