Strong password-based authentication in TLS using the three-party group Diffie Hellman protocol
Michel Abdalla⋆, Emmanuel Bresson, Olivier Chevassut, Bodo Möller, David Pointcheval · International Journal of Security and Networks · 2007
The internet has evolved into a very hostile ecosystem where 'phishing' attacks are common practice. This paper shows that the three-party group Diffie-Hellman key exchange can help protect against these attacks. We have developed password-based ciphersuites for the Transport Layer Security (TLS) protocol that are not only provably secure but also believed to be free from patent and licensing restrictions based on an analysis of relevant patents in the area.