{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2025,11,13]],"date-time":"2025-11-13T07:08:04Z","timestamp":1763017684662,"version":"3.40.3"},"publisher-location":"Cham","reference-count":30,"publisher":"Springer International Publishing","isbn-type":[{"type":"print","value":"9783319491479"},{"type":"electronic","value":"9783319491486"}],"license":[{"start":{"date-parts":[[2016,1,1]],"date-time":"2016-01-01T00:00:00Z","timestamp":1451606400000},"content-version":"unspecified","delay-in-days":0,"URL":"http:\/\/www.springer.com\/tdm"}],"content-domain":{"domain":["link.springer.com"],"crossmark-restriction":false},"short-container-title":[],"published-print":{"date-parts":[[2016]]},"DOI":"10.1007\/978-3-319-49148-6_36","type":"book-chapter","created":{"date-parts":[[2016,11,9]],"date-time":"2016-11-09T09:50:38Z","timestamp":1478685038000},"page":"437-451","update-policy":"https:\/\/doi.org\/10.1007\/springer_crossmark_policy","source":"Crossref","is-referenced-by-count":11,"title":["Authentication and Transaction Verification Using QR Codes with a Mobile Device"],"prefix":"10.1007","author":[{"given":"Yang-Wai","family":"Chow","sequence":"first","affiliation":[]},{"given":"Willy","family":"Susilo","sequence":"additional","affiliation":[]},{"given":"Guomin","family":"Yang","sequence":"additional","affiliation":[]},{"given":"Man Ho","family":"Au","sequence":"additional","affiliation":[]},{"given":"Cong","family":"Wang","sequence":"additional","affiliation":[]}],"member":"297","published-online":{"date-parts":[[2016,11,10]]},"reference":[{"key":"36_CR1","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"publisher","first-page":"1","DOI":"10.1007\/11693383_1","volume-title":"Selected Areas in Cryptography","author":"E Barkan","year":"2006","unstructured":"Barkan, E., Biham, E.: Conditional estimators: an effective attack on A5\/1. In: Preneel, B., Tavares, S. (eds.) SAC 2005. LNCS, vol. 3897, pp. 1\u201319. Springer, Heidelberg (2006). doi:10.1007\/11693383_1"},{"key":"36_CR2","doi-asserted-by":"crossref","unstructured":"Bonneau, J., Herley, C., van Oorschot, P.C., Stajano, F.: The quest to replace passwords: a framework for comparative evaluation of web authentication schemes. In: IEEE Symposium on Security and Privacy, pp. 553\u2013567. IEEE Computer Society (2012)","DOI":"10.1109\/SP.2012.44"},{"key":"36_CR3","doi-asserted-by":"crossref","unstructured":"Bonneau, J., Herley, C., van Oorschot, P.C., Stajano, F.: The quest to replace passwords: a framework for comparative evaluation of web authentication schemes. Technical report 817, University of Cambridge Computer Laboratory (2012)","DOI":"10.1109\/SP.2012.44"},{"key":"36_CR4","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"publisher","first-page":"243","DOI":"10.1007\/978-3-319-21966-0_18","volume-title":"Information and Communications Security","author":"Y-W Chow","year":"2015","unstructured":"Chow, Y.-W., Susilo, W., Au, M.H., Barmawi, A.M.: A visual one-time password authentication scheme using mobile devices. In: Hui, L.C.K., Qing, S.H., Shi, E., Yiu, S.M. (eds.) ICICS 2014. LNCS, vol. 8958, pp. 243\u2013257. Springer, Heidelberg (2015). doi:10.1007\/978-3-319-21966-0_18"},{"key":"36_CR5","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"publisher","first-page":"409","DOI":"10.1007\/978-3-319-40253-6_25","volume-title":"Information Security and Privacy","author":"Y-W Chow","year":"2016","unstructured":"Chow, Y.-W., Susilo, W., Yang, G., Phillips, J.G., Pranata, I., Barmawi, A.M.: Exploiting the error correction mechanism in QR codes for secret sharing. In: Liu, J.K.K., Steinfeld, R. (eds.) ACISP 2016. LNCS, vol. 9722, pp. 409\u2013425. Springer, Heidelberg (2016). doi:10.1007\/978-3-319-40253-6_25"},{"key":"36_CR6","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"publisher","first-page":"114","DOI":"10.1007\/3-540-45866-2_10","volume-title":"Pervasive Computing","author":"D Clarke","year":"2002","unstructured":"Clarke, D., Gassend, B., Kotwal, T., Burnside, M., Dijk, M., Devadas, S., Rivest, R.: The untrusted computer problem and camera-based authentication. In: Mattern, F., Naghshineh, M. (eds.) Pervasive 2002. LNCS, vol. 2414, pp. 114\u2013124. Springer, Heidelberg (2002). doi:10.1007\/3-540-45866-2_10"},{"key":"36_CR7","unstructured":"Cronto Limited, Cronto. http:\/\/www.cronto.com\/"},{"issue":"5","key":"36_CR8","doi-asserted-by":"publisher","first-page":"81","DOI":"10.1109\/MSP.2011.144","volume":"9","author":"D DeFigueiredo","year":"2011","unstructured":"DeFigueiredo, D.: The case for mobile two-factor authentication. IEEE Secur. Priv. 9(5), 81\u201385 (2011)","journal-title":"IEEE Secur. Priv."},{"key":"36_CR9","unstructured":"Denso Wave Incorporated. http:\/\/www.QRcode.com, http:\/\/www.qrcode.com\/en\/"},{"key":"36_CR10","unstructured":"Dmitrienko, A., Liebchen, C., Rossow, C., Sadeghi, A.-R.: Security analysis of mobile two-factor authentication schemes. Intel Technol. J., ITJ66 Identity, Biometrics, Authentication Ed., 18, 138\u2013161 (2014)"},{"key":"36_CR11","first-page":"17","volume-title":"Secure, Consumer-friendly Web Authentication and Payments with a Phone","author":"B Dodson","year":"2012","unstructured":"Dodson, B., Sengupta, D., Boneh, D., Lam, M.S.: Secure, Consumer-friendly Web Authentication and Payments with a Phone, pp. 17\u201338. Springer, Heidelberg (2012)"},{"issue":"4","key":"36_CR12","doi-asserted-by":"publisher","first-page":"824","DOI":"10.1007\/s00145-013-9154-9","volume":"27","author":"O Dunkelman","year":"2014","unstructured":"Dunkelman, O., Keller, N., Shamir, A.: A practical-time related-key attack on the Kasumi cryptosystem used in GSM and 3G telephony. J. Cryptol. 27(4), 824\u2013849 (2014)","journal-title":"J. Cryptol."},{"issue":"1","key":"36_CR13","doi-asserted-by":"publisher","first-page":"15","DOI":"10.1109\/MSP.2012.162","volume":"11","author":"E Grosse","year":"2013","unstructured":"Grosse, E., Upadhyay, M.: Authentication at scale. IEEE Secur. Priv. 11(1), 15\u201322 (2013)","journal-title":"IEEE Secur. Priv."},{"issue":"4","key":"36_CR14","doi-asserted-by":"publisher","first-page":"1292","DOI":"10.1016\/j.jnca.2011.02.004","volume":"34","author":"C-Y Huang","year":"2011","unstructured":"Huang, C.-Y., Ma, S.-P., Chen, K.-T.: Using one-time passwords to prevent password phishing attacks. J. Netw. Comput. Appl. 34(4), 1292\u20131301 (2011)","journal-title":"J. Netw. Comput. Appl."},{"key":"36_CR15","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"publisher","first-page":"350","DOI":"10.1007\/978-3-642-30767-6_30","volume-title":"Advances in Grid and Pervasive Computing","author":"I Jeun","year":"2012","unstructured":"Jeun, I., Kim, M., Won, D.: Enhanced password-based user authentication using smart phone. In: Li, R., Cao, J., Bourgeois, J. (eds.) GPC 2012. LNCS, vol. 7296, pp. 350\u2013360. Springer, Heidelberg (2012). doi:10.1007\/978-3-642-30767-6_30"},{"key":"36_CR16","first-page":"141","volume-title":"Advances in Intelligent Systems and Applications","author":"H-C Lee","year":"2013","unstructured":"Lee, H.-C., Dong, C.-R., Lin, T.-M.: Digital watermarking based on JND model and QR code features. In: Pan, J.-S., Yang, C.-N., Lin, C.-C. (eds.) Advances in Intelligent Systems and Applications, vol. 2, pp. 141\u2013148. Springer, Heidelberg (2013)"},{"key":"36_CR17","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"publisher","first-page":"235","DOI":"10.1007\/978-3-642-27576-0_19","volume-title":"Financial Cryptography and Data Security","author":"S Li","year":"2012","unstructured":"Li, S., Sadeghi, A.-R., Heisrath, S., Schmitz, R., Ahmad, J.J.: hPIN\/hTAN: a lightweight and low-cost e-banking solution against untrusted computers. In: Danezis, G. (ed.) FC 2011. LNCS, vol. 7035, pp. 235\u2013249. Springer, Heidelberg (2012). doi:10.1007\/978-3-642-27576-0_19"},{"issue":"8","key":"36_CR18","doi-asserted-by":"publisher","first-page":"937","DOI":"10.4304\/jnw.5.8.937-941","volume":"5","author":"K-C Liao","year":"2010","unstructured":"Liao, K.-C., Lee, W.-H.: A novel user authentication scheme based on QR-code. JNW 5(8), 937\u2013941 (2010)","journal-title":"JNW"},{"key":"36_CR19","first-page":"350","volume-title":"Time-Memory Trade-Off Attack on the GSM A5\/1 Stream Cipher Using Commodity GPGPU","author":"J Lu","year":"2015","unstructured":"Lu, J., Li, Z., Henricksen, M.: Time-Memory Trade-Off Attack on the GSM A5\/1 Stream Cipher Using Commodity GPGPU, pp. 350\u2013369. Springer, Cham (2015)"},{"key":"36_CR20","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"publisher","first-page":"88","DOI":"10.1007\/978-3-540-77366-5_11","volume-title":"Financial Cryptography and Data Security","author":"M Mannan","year":"2007","unstructured":"Mannan, M., Oorschot, P.C.: Using a personal device to strengthen password authentication from an untrusted computer. In: Dietrich, S., Dhamija, R. (eds.) FC 2007. LNCS, vol. 4886, pp. 88\u2013103. Springer, Heidelberg (2007). doi:10.1007\/978-3-540-77366-5_11"},{"key":"36_CR21","doi-asserted-by":"crossref","unstructured":"McCune, J.M., Perrig, A., Reiter, M.K.: Seeing-is-believing: using camera phones for human-verifiable authentication. In: IEEE Symposium on Security and Privacy, pp. 110\u2013124. IEEE Computer Society (2005)","DOI":"10.21236\/ADA457868"},{"key":"36_CR22","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"publisher","first-page":"150","DOI":"10.1007\/978-3-642-39235-1_9","volume-title":"Detection of Intrusions and Malware, and Vulnerability Assessment","author":"C Mulliner","year":"2013","unstructured":"Mulliner, C., Borgaonkar, R., Stewin, P., Seifert, J.-P.: SMS-based one-time passwords: attacks and defense. In: Rieck, K., Stewin, P., Seifert, J.-P. (eds.) DIMVA 2013. LNCS, vol. 7967, pp. 150\u2013159. Springer, Heidelberg (2013). doi:10.1007\/978-3-642-39235-1_9"},{"key":"36_CR23","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"publisher","first-page":"1","DOI":"10.1007\/11889663_1","volume-title":"Financial Cryptography and Data Security","author":"B Parno","year":"2006","unstructured":"Parno, B., Kuo, C., Perrig, A.: Phoolproof phishing prevention. In: Crescenzo, G., Rubin, A. (eds.) FC 2006. LNCS, vol. 4107, pp. 1\u201319. Springer, Heidelberg (2006). doi:10.1007\/11889663_1"},{"key":"36_CR24","doi-asserted-by":"publisher","first-page":"240","DOI":"10.1007\/978-3-658-10934-9_20","volume-title":"ISSE 2015","author":"N Pohlmann","year":"2015","unstructured":"Pohlmann, N., Hertlein, M., Manaras, P.: Bring your own device for authentication (BYOD4A) - the Xign-system. In: Reimer, H., Pohlmann, N., Schneider, W. (eds.) ISSE 2015, pp. 240\u2013250. Springer Fachmedien Wiesbaden, Wiesbaden (2015)"},{"key":"36_CR25","unstructured":"RSA Security, RSA SecurID. https:\/\/www.rsa.com\/en-us\/products-services\/identity-access-management\/securid"},{"issue":"4","key":"36_CR26","doi-asserted-by":"publisher","first-page":"136","DOI":"10.1145\/1053291.1053327","volume":"48","author":"B Schneier","year":"2005","unstructured":"Schneier, B.: Two-factor authentication: too little, too late. Commun. ACM 48(4), 136 (2005)","journal-title":"Commun. ACM"},{"key":"36_CR27","doi-asserted-by":"crossref","unstructured":"Starnberger, G., Froihofer, L., Goeschka, K.M.: QR-TAN: secure mobile transaction authentication. In: International Conference on Availability, Reliability and Security, ARES 2009, pp. 578\u2013583, March 2009","DOI":"10.1109\/ARES.2009.96"},{"key":"36_CR28","doi-asserted-by":"crossref","first-page":"93","DOI":"10.1007\/978-3-662-45402-2_14","volume-title":"Computer Science and its Applications","author":"P Subpratatsavee","year":"2015","unstructured":"Subpratatsavee, P., Kuacharoen, P.: Transaction authentication using HMAC-based one-time password and QR code. In: Park, J.J., Stojmenovic, I., Jeong, H.Y., Yi, G. (eds.) Computer Science and its Applications, pp. 93\u201398. Springer, Heidelberg (2015)"},{"issue":"2","key":"36_CR29","doi-asserted-by":"publisher","first-page":"651","DOI":"10.1109\/TIFS.2011.2169958","volume":"7","author":"H-M Sun","year":"2012","unstructured":"Sun, H.-M., Chen, Y.-H., Lin, Y.-H.: oPass: a user authentication protocol resistant to password stealing and password reuse attacks. IEEE Trans. Inf. Forensics Secur. 7(2), 651\u2013663 (2012)","journal-title":"IEEE Trans. Inf. Forensics Secur."},{"key":"36_CR30","doi-asserted-by":"crossref","unstructured":"Vapen, A., Byers, D., Shahmehri, N.: 2-clickAuth optical challenge-response authentication. In: International Conference on Availability, Reliability, and Security, ARES 2010, pp. 79\u201386, February 2010","DOI":"10.1109\/ARES.2010.85"}],"container-title":["Lecture Notes in Computer Science","Security, Privacy, and Anonymity in Computation, Communication, and Storage"],"original-title":[],"language":"en","link":[{"URL":"https:\/\/link.springer.com\/content\/pdf\/10.1007\/978-3-319-49148-6_36","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2024,3,7]],"date-time":"2024-03-07T16:54:04Z","timestamp":1709830444000},"score":1,"resource":{"primary":{"URL":"https:\/\/link.springer.com\/10.1007\/978-3-319-49148-6_36"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2016]]},"ISBN":["9783319491479","9783319491486"],"references-count":30,"URL":"https:\/\/doi.org\/10.1007\/978-3-319-49148-6_36","relation":{},"ISSN":["0302-9743","1611-3349"],"issn-type":[{"type":"print","value":"0302-9743"},{"type":"electronic","value":"1611-3349"}],"subject":[],"published":{"date-parts":[[2016]]},"assertion":[{"value":"10 November 2016","order":1,"name":"first_online","label":"First Online","group":{"name":"ChapterHistory","label":"Chapter History"}},{"value":"SpaCCS","order":1,"name":"conference_acronym","label":"Conference Acronym","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"International Conference on Security, Privacy and Anonymity in Computation, Communication and Storage","order":2,"name":"conference_name","label":"Conference Name","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"Zhangjiajie","order":3,"name":"conference_city","label":"Conference City","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"China","order":4,"name":"conference_country","label":"Conference Country","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"2016","order":5,"name":"conference_year","label":"Conference Year","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"16 November 2016","order":7,"name":"conference_start_date","label":"Conference Start Date","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"18 November 2016","order":8,"name":"conference_end_date","label":"Conference End Date","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"9","order":9,"name":"conference_number","label":"Conference Number","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"spaccs2016","order":10,"name":"conference_id","label":"Conference ID","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"http:\/\/trust.csu.edu.cn\/conference\/SpaCCS2016\/","order":11,"name":"conference_url","label":"Conference URL","group":{"name":"ConferenceInfo","label":"Conference Information"}}]}}