A large-scale analysis of Wi-Fi passwords

被引:4
|
作者
Veroni, Eleni [1 ]
Ntantogian, Christoforos [2 ]
Xenakis, Christos [1 ]
机构
[1] Univ Piraeus, Dept Digital Syst, Piraeus, Greece
[2] Ionian Univ, Dept Informat, Corfu, Greece
关键词
Wi-Fi networks; Passwords; Password characteristics; Measurements; Security; Access control; SECURITY;
D O I
10.1016/j.jisa.2022.103190
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Passwords remain the most common method of authentication in computers and networks. Thus, passwords have been the prime targets of attackers, and the number of data breaches in the last few years proves the high value of passwords. A detailed analysis of such data can provide insight on password trends and patterns users follow when they create a password. While there is a wealth of research investigating online password choices, to the best of our knowledge, there are no studies specifically designed to capture user behavior towards Wi-Fi passwords. In this paper, we perform a large-scale analysis of Wi-Fi passwords categorizing them as public Wi-Fi passwords created for Wi-Fi hotspots and private Wi-Fi passwords created for private/home Wi-Fi installations. First, we analyze public Wi-Fi passwords by collecting and analyzing a corpus of more than one million passwords of Wi-Fi hotspots. The aim of the analysis of public Wi-Fi passwords is to reveal password characteristics and compare them against web account passwords, to discover similarities and differences between them. While comparing the collected dataset with a set of popular leaked web password databases, several similarities between them can be identified, despite the fact that these password categories serve different purposes. Secondly, we explore through an online survey, the characteristics of passwords in private/home Wi-Fi installations. The aim is to give greater insight into private Wi-Fi password selection of users and highlight password trends when it comes to context, length, strength and architecture. Results reveal that users follow several poor security practices when selecting their private Wi-Fi passwords and tend to underestimate their importance with regards to their security and privacy. To the best of the authors' knowledge, this is the first work to examine Wi-Fi passwords characteristics and shed light on how users choose them in terms of structure and composition.
引用
收藏
页数:16
相关论文
共 50 条
  • [41] Wi-Fi Radar: Recognizing Human Behavior with Commodity Wi-Fi
    Zou, Yongpan
    Liu, Weifeng
    Wu, Kaishun
    Ni, Lionel M.
    IEEE COMMUNICATIONS MAGAZINE, 2017, 55 (10) : 105 - 111
  • [42] Passive Wi-Fi: Bringing Low Power to Wi-Fi Transmissions
    Kellogg, Bryce
    Talla, Vamsi
    Gollakota, Shyamnath
    Smith, Joshua R.
    13TH USENIX SYMPOSIUM ON NETWORKED SYSTEMS DESIGN AND IMPLEMENTATION (NSDI '16), 2016, : 151 - 164
  • [43] Downlink Capacity of Super Wi-Fi Coexisting with Conventional Wi-Fi
    Kim, Hyoil
    Shin, Kyubo
    Joo, Changhee
    2013 IEEE GLOBAL COMMUNICATIONS CONFERENCE (GLOBECOM), 2013, : 980 - 985
  • [44] Echoes of Fingertip: Unveiling POS Terminal Passwords Through Wi-Fi Beamforming Feedback
    Chen, Siyu
    Jiang, Hongbo
    Hu, Jingyang
    Zheng, Tianyue
    Wang, Mengyuan
    Xiao, Zhu
    Liu, Daibo
    Luo, Jun
    IEEE TRANSACTIONS ON MOBILE COMPUTING, 2025, 24 (02) : 662 - 676
  • [45] PASSIVE WI-FI: Bringing Low Power to Wi-Fi Transmissions
    Kellogg, Bryce
    Talla, Vamsi
    Smith, Joshua R.
    Gollakota, Shyamnath
    GETMOBILE-MOBILE COMPUTING & COMMUNICATIONS REVIEW, 2016, 20 (03) : 38 - 41
  • [46] Wi-Fi Channels Saturation Using Standard Wi-Fi Gateway
    Cortes Canas, Daniel
    Reyes Daza, Brayan S.
    Salcedo Parra, Octavio J.
    MOBILE, SECURE, AND PROGRAMMABLE NETWORKING, MSPN 2015, 2015, 9395 : 101 - 108
  • [47] Sampleless Wi-Fi: Bringing Low Power to Wi-Fi Communications
    Wang, Wei
    Chen, Yingjie
    Wang, Lu
    Zhang, Qian
    IEEE-ACM TRANSACTIONS ON NETWORKING, 2017, 25 (03) : 1663 - 1672
  • [48] Network Throughput Improvement in Wi-Fi 6 over Wi-Fi 5: A Comparative Performance Analysis
    Bandyopadhyay, Dwaipayan
    De, Sammilita
    Roy, Sinjini Hom
    Biswas, Deepshikha
    Bhose, Madhura
    Karmakar, Raja
    2023 INTERNATIONAL CONFERENCE ON COMPUTER, ELECTRICAL & COMMUNICATION ENGINEERING, ICCECE, 2023,
  • [49] A Large-Scale Empirical Analysis of Chinese Web Passwords
    Li, Zhigong
    Han, Weili
    Xu, Wenyuan
    PROCEEDINGS OF THE 23RD USENIX SECURITY SYMPOSIUM, 2014, : 559 - 574
  • [50] Speaking of Wi-Fi ...
    Lenton, D
    IEE REVIEW, 2003, 49 (07): : 44 - 47