Encrypted Honey Password Authentication for Online Banking System

R. Mekala, C Priyanka, P. Sakthi, Sri Vishnu Priya S · 2024

The most popular authentication method is password authentication since it is inexpensive and simple to implement. Most users create their passwords with well-known words to make them easier to remember. Weak systems could expose passwords. Every day, new vulnerabilities are found and not every system can be patched in time to fend off attacks. This gives attackers a chance to get unauthorised access to vulnerable systems. This article proposes a password authentication framework that can be simply integrated into current authentication systems and is intended for secure password storage in order to counteract password attacks. In proposed framework, introduces a comprehensive security framework integrating innovative techniques to enhance password protection and user authentication. The approach involves the incorporation of honey words and the implementation of the AES (Advanced Encryption Standard) algorithm for secure password storage. The password storage mechanism employs honey words as decoy passwords, creating a deceptive layer for potential attackers. Additionally, the honey passwords are encrypted using AES, heightening the overall security posture. During the login process, users are authenticated through a combination of factors, encompassing traditional password authentication method using username and password. A critical component of the proposed system is the server-based generation and transmission of decryption keys during login. This key allows the client to decrypt the stored password securely. The inclusion of honey words further fortifies the verification process, as any attempt to access these decoy passwords triggers an alert. Upon successful verification, users gain access to the banking application, where they can engage in secure online transactions.

Read the paper · More papers on PaperTik