Logo des Repositoriums
 

Evaluation of Account Recovery Strategies with FIDO2-based Passwordless Authentication

dc.contributor.authorKunke, Johannes
dc.contributor.authorWiefling, Stephan
dc.contributor.authorUllmann, Markus
dc.contributor.authorLo Iacono, Luigi
dc.contributor.editorRoßnagel, Heiko
dc.contributor.editorSchunck, Christian H.
dc.contributor.editorMödersheim, Sebastian
dc.date.accessioned2021-05-20T13:12:14Z
dc.date.available2021-05-20T13:12:14Z
dc.date.issued2021
dc.description.abstractThreats to passwords are still very relevant due to attacks like phishing or credential stuffing. One way to solve this problem is to remove passwords completely. User studies on passwordless FIDO2 authentication using security tokens demonstrated the potential to replace passwords. However, widespread acceptance of FIDO2 depends, among other things, on how user accounts can be recovered when the security token becomes permanently unavailable. For this reason, we provide a heuristic evaluation of 12 account recovery mechanisms regarding their properties for FIDO2 passwordless authentication. Our results show that the currently used methods have many drawbacks. Some even rely on passwords, taking passwordless authentication ad absurdum. Still, our evaluation identifies promising account recovery solutions and provides recommendations for further studies.en
dc.identifier.isbn978-3-88579-706-7
dc.identifier.pissn1617-5468
dc.identifier.urihttps://dl.gi.de/handle/20.500.12116/36502
dc.language.isoen
dc.publisherGesellschaft für Informatik e.V.
dc.relation.ispartofOpen Identity Summit 2021
dc.relation.ispartofseriesLecture Notes in Informatics (LNI) - Proceedings, Volume P-312
dc.subjectFIDO2
dc.subjectPasswordless Authentication
dc.subjectAccount Recovery
dc.subjectFallback Authentication
dc.titleEvaluation of Account Recovery Strategies with FIDO2-based Passwordless Authenticationen
dc.typeText/Conference Paper
gi.citation.endPage70
gi.citation.publisherPlaceBonn
gi.citation.startPage59
gi.conference.date01.-02. June 2021
gi.conference.locationCopenhagen, Denmark
gi.conference.sessiontitleRegular Research Papers

Dateien

Originalbündel
1 - 1 von 1
Vorschaubild nicht verfügbar
Name:
proceedings-05.pdf
Größe:
261.83 KB
Format:
Adobe Portable Document Format