Abstract
EnFilter is a Proactive Password Checking System, designed to avoid password guessing attacks. It is made of a set of configurable filters, each one based on a specific pattern recognition measure that can be tuned by the system administrator depending on the adopted password policy. Filters use decision trees, lexical analysers, as well as Levenshtein distance based techniques. EnFilter is implemented for Windows 2000/2003/XP.
Chapter PDF
References
Bergadano, F., Crispo, B., Ruffo, G.: High Dictionary Compression for proactive password checking on ACM TISSEC, vol. 1(1) (November 1998)
Blundo, C., D’Arco, P., De Santis, A., Galdi, C.: Hyppocrates: a new proactive password checker. The Journal of Systems and Software (71) (2004)
Davies, C., Ganesan, R.: Bapasswd: a new proactive password checker. In: Proc. of 16th NIST-NCSC National Computer Security Conference (1993)
Levenshtein, V.I.: Binary codes capable of correcting deletions, insertions and reversals. Sov. Phys. Dokl. 6, 707–710 (1966)
Microsoft Knowledge Base HOWTO: Password Change Filtering & Notification in Windows NT - article n. 151082
Muffett, A.: Crack 4.0, 5.0 11
Nagle, J.B.: An obvious password detector. USENET news - comp.sources.unix 16(60) (1988)
Quinlan, J.R.: C4.5: Programs for Machine Learning. Morgan Kaufmann, San Mateo
Spafford, E.H.: OPUS: Preventing Weak Password Choices. Computers and Security 11, 273–278 (1992)
Yan, J.: A Note on Proactive Password Checking. In: ACM New Security Paradigms Workshop, New Mexico, USA (September 2001)
Author information
Authors and Affiliations
Editor information
Editors and Affiliations
Rights and permissions
Copyright information
© 2005 Springer-Verlag Berlin Heidelberg
About this paper
Cite this paper
Ruffo, G., Bergadano, F. (2005). EnFilter: A Password Enforcement and Filter Tool Based on Pattern Recognition Techniques. In: Roli, F., Vitulano, S. (eds) Image Analysis and Processing – ICIAP 2005. ICIAP 2005. Lecture Notes in Computer Science, vol 3617. Springer, Berlin, Heidelberg. https://doi.org/10.1007/11553595_9
Download citation
DOI: https://doi.org/10.1007/11553595_9
Publisher Name: Springer, Berlin, Heidelberg
Print ISBN: 978-3-540-28869-5
Online ISBN: 978-3-540-31866-8
eBook Packages: Computer ScienceComputer Science (R0)