Implementation of the Park Schema on User Authentication Services Using Password-Based Web Codeigniter Library to Overcome Man in the Middle Attack

Prasetyo Adi Wibowo Putro, Rizqy Rionaldy · 2019 Fourth International Conference on Informatics and Computing (ICIC) · 2019

Park Scheme is an OTP based on a hash chain that can be used to overcome password weaknesses by changing the password value in the database every time a user logs in. Changing password values makes this scheme resistance to MITM attacks because passwords obtained from an authentication process cannot be used for next login sessions. This method can provide better security for authentication services. This research will implement the Park scheme with the SHA-256 hash algorithm, AES-128, and the Codeigniter Web framework. The research method uses Design Research Methodology (DRM), while the software development method uses Secure Software Development Life Cycle (SSDLC). Authentication modules that have been created have been declared to have passed unit testing, system testing, integration testing, and security testing. Based on the results of the validation, it was concluded that the resulting library module succeeded in implementing user authentication services using web-based Codeigniter passwords in the form of libraries and it also proves that the Park library produced was resistant to MITM attacks.

Read the paper · More papers on PaperTik