A large-scale analysis of Wi-Fi passwords

被引:4
|
作者
Veroni, Eleni [1 ]
Ntantogian, Christoforos [2 ]
Xenakis, Christos [1 ]
机构
[1] Univ Piraeus, Dept Digital Syst, Piraeus, Greece
[2] Ionian Univ, Dept Informat, Corfu, Greece
关键词
Wi-Fi networks; Passwords; Password characteristics; Measurements; Security; Access control; SECURITY;
D O I
10.1016/j.jisa.2022.103190
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Passwords remain the most common method of authentication in computers and networks. Thus, passwords have been the prime targets of attackers, and the number of data breaches in the last few years proves the high value of passwords. A detailed analysis of such data can provide insight on password trends and patterns users follow when they create a password. While there is a wealth of research investigating online password choices, to the best of our knowledge, there are no studies specifically designed to capture user behavior towards Wi-Fi passwords. In this paper, we perform a large-scale analysis of Wi-Fi passwords categorizing them as public Wi-Fi passwords created for Wi-Fi hotspots and private Wi-Fi passwords created for private/home Wi-Fi installations. First, we analyze public Wi-Fi passwords by collecting and analyzing a corpus of more than one million passwords of Wi-Fi hotspots. The aim of the analysis of public Wi-Fi passwords is to reveal password characteristics and compare them against web account passwords, to discover similarities and differences between them. While comparing the collected dataset with a set of popular leaked web password databases, several similarities between them can be identified, despite the fact that these password categories serve different purposes. Secondly, we explore through an online survey, the characteristics of passwords in private/home Wi-Fi installations. The aim is to give greater insight into private Wi-Fi password selection of users and highlight password trends when it comes to context, length, strength and architecture. Results reveal that users follow several poor security practices when selecting their private Wi-Fi passwords and tend to underestimate their importance with regards to their security and privacy. To the best of the authors' knowledge, this is the first work to examine Wi-Fi passwords characteristics and shed light on how users choose them in terms of structure and composition.
引用
收藏
页数:16
相关论文
共 50 条
  • [41] Preamble Injection and Spoofing Attacks in Wi-Fi Networks
    Zhang, Zhengguang
    Krunz, Marwan
    2021 IEEE GLOBAL COMMUNICATIONS CONFERENCE (GLOBECOM), 2021,
  • [42] Emulation of Secure Wi-Fi Communication: A Performance Gap Analysis against a Virtual Test-bed
    Soderi, Simone
    Viittala, Harri
    Saloranta, Jani
    Mancini, Alessandro
    Hamalainen, Matti
    Iinatti, Jari
    2013 13TH INTERNATIONAL CONFERENCE ON ITS TELECOMMUNICATIONS (ITST), 2013, : 226 - 231
  • [43] Location-Aware Wi-Fi Authentication Scheme Using Smart Contract
    Chen, Yongle
    Wang, Xiaojian
    Yang, Yuli
    Li, Hong
    SENSORS, 2020, 20 (04)
  • [44] Survey of Algorithms and Techniques Used to Improve the Security of A Public Wi-Fi Network
    Aloufi, Hanouf
    Alsuwat, Hatim
    INTERNATIONAL JOURNAL OF COMPUTER SCIENCE AND NETWORK SECURITY, 2022, 22 (06): : 194 - 202
  • [45] A Novel Process to Avoid Redundant Encryption and Decryption in Wi-Fi Mesh Network
    Thangadorai, Kavin Kumar
    Murugesan, Kumar
    Joseph, Vimal Bastin
    Das, Debabrata
    2018 IEEE INTERNATIONAL CONFERENCE ON ELECTRONICS, COMPUTING AND COMMUNICATION TECHNOLOGIES (CONECCT), 2018,
  • [46] Following the Wi-Fi breadcrumbs: Network based mobile application privacy threats
    Kennedy, Michael
    Sulaiman, Rossilawati
    5TH INTERNATIONAL CONFERENCE ON ELECTRICAL ENGINEERING AND INFORMATICS 2015, 2015, : 265 - 270
  • [47] Mobile Application and Wi-Fi Network Security for e-Learning Platforms
    Suciu, George
    Anwar, Muneeb
    Istrate, Cristiana
    NEW TECHNOLOGIES AND REDESIGNING LEARNING SPACES, VOL I, 2019, : 393 - 399
  • [48] A Review of Security Challenges for Control of Access to Wi-Fi Networks in Tertiary Institutions
    Musarurwa, Stanford
    Gamundani, Attlee M.
    Bhunu Shava, Fungai
    2017 IST-AFRICA WEEK CONFERENCE (IST-AFRICA), 2017,
  • [49] Wi-Fi Network Testing Using an Integrated Evil-Twin Framework
    Esser, Andre
    Serrao, Carlos
    2018 FIFTH INTERNATIONAL CONFERENCE ON INTERNET OF THINGS: SYSTEMS, MANAGEMENT AND SECURITY, 2018, : 216 - 221
  • [50] Localization to Enhance Security and Services in Wi-Fi Networks under Privacy Constraints
    Ayres, Gareth
    Mehmood, Rashid
    Mitchell, Keith
    Race, Nicholas J. P.
    COMMUNICATIONS INFRASTRUCTURE: SYSTEMS AND APPLICATIONS IN EUROPE, 2009, 16 : 175 - +