Improving Security of E- Commerce application by using Multifactor Authentication
نویسندگان
چکیده
All e-commerce environments require support for security properties such as authentication, authorization, data confidentiality, and non -repudiation. The most common method of authentication or protection against intrusion in a computer system is to use alphanumeric usernames and password. Choosing a strong password and protecting the chosen password has always been a popular topic among security researchers. Studies reveal that users today have on an average approximately 15 passwords – protected accounts. One password may be easy to remember, but handling many passwords is time-consuming task and a security hazard. Every forgotten or lost password results in significant cost. Passwords are not secured at all as they can be guess they can be stolen. To overcome weakness of passwords we need stronger authentication solutions. Till date many techniques are proposed for protecting the passwords and tried to eliminate password hacking problem. Many biometric authentications have been proposed; however, users tend to resist using biometrics because of their intrusiveness and the effect on their privacy. In this paper, we present and evaluate our contribution, on the multifactor authentication technique. We tried to enhance the security by using multifactor authentication. In which two three factors are taken in to consideration what the requestor knows i.e. password, challenge response and what the owner has i.e. USB token. General Terms Web Application Security
منابع مشابه
Feasibility of Electronic Commerce at Cooperative in Gilan Province to Select an Appropriate E-Commerce Model by Using Fuzzy Analysis Network Process
Electronic commerce as one of the most important of Innovation aspects in the process of doing business is used by many organizations and companies in the world. Cooperatives as the main part of the country's economy have fundamental role in improving and promoting of economic. Therefore, innovation methods and tools, new processes and perform business tasks such as e-commerce will play an i...
متن کاملFeasibility of Electronic Commerce at Cooperative in Gilan Province to Select an Appropriate E-Commerce Model by Using Fuzzy Analysis Network Process
Electronic commerce as one of the most important of Innovation aspects in the process of doing business is used by many organizations and companies in the world. Cooperatives as the main part of the country's economy have fundamental role in improving and promoting of economic. Therefore, innovation methods and tools, new processes and perform business tasks such as e-commerce will play an i...
متن کاملThe Presentation of an Ideal Safe SMS based model in mobile Electronic commerce using Encryption hybrid algorithms AES and ECC
Mobile commerce is whatever electronic transfer or transaction via a mobile modem through a mobile net in which the true value or advance payment is done for goods, services or information. A mobile payment system should be beneficial for all related persons. For a payment system to be a Successful system, End-user, seller, exporter and operators should see a additional value in it. End-user ...
متن کاملAn on-line electronic check system with mutual authentication
In recent years, electronic check (echeck) has been more and more popular on the electronic commerce application. For this reason, there were many scholars have proposed the security issues for related echeck. Chang et al. present their views on echeck to improve the past scheme. Chang et al.’s scheme achieves the security of system and provides mutual authentication between payer and payee. Ho...
متن کاملA Distributed Authentication Model for an E-Health Network Using Blockchain
Introduction: One of the most important and challenging areas under the influence of information technology is the field of health. This pervasive influence has led to the development of electronic health (e-health) networks with a variety of services of different qualities. The issue of security management, maintaining confidentiality and data integrity, and exchanging it in a secure environme...
متن کاملذخیره در منابع من
با ذخیره ی این منبع در منابع من، دسترسی به آن را برای استفاده های بعدی آسان تر کنید
عنوان ژورنال:
دوره شماره
صفحات -
تاریخ انتشار 2011