{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,4,13]],"date-time":"2026-04-13T10:41:47Z","timestamp":1776076907231,"version":"3.50.1"},"reference-count":48,"publisher":"Institute of Electrical and Electronics Engineers (IEEE)","license":[{"start":{"date-parts":[[2024,1,1]],"date-time":"2024-01-01T00:00:00Z","timestamp":1704067200000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/ieeexplore.ieee.org\/Xplorehelp\/downloads\/license-information\/IEEE.html"},{"start":{"date-parts":[[2024,1,1]],"date-time":"2024-01-01T00:00:00Z","timestamp":1704067200000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-029"},{"start":{"date-parts":[[2024,1,1]],"date-time":"2024-01-01T00:00:00Z","timestamp":1704067200000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-037"}],"funder":[{"DOI":"10.13039\/100013294","name":"University of Oslo through the Connecting Europe Facility (CEF) Program by the European Union","doi-asserted-by":"publisher","award":["INEA\/CEF\/ICT\/A2020\/2373266 (JCOP Project)"],"award-info":[{"award-number":["INEA\/CEF\/ICT\/A2020\/2373266 (JCOP Project)"]}],"id":[{"id":"10.13039\/100013294","id-type":"DOI","asserted-by":"publisher"}]},{"DOI":"10.13039\/100018693","name":"Horizon Europe Program","doi-asserted-by":"publisher","award":["101070586 (PHOENi2X Project)"],"award-info":[{"award-number":["101070586 (PHOENi2X Project)"]}],"id":[{"id":"10.13039\/100018693","id-type":"DOI","asserted-by":"publisher"}]},{"name":"Ministry of Innovation and Technology of Hungary from the National Research, Development and Innovation Fund, financed under the TKP2021-NVA Funding Scheme","award":["TKP2021-NVA-29"],"award-info":[{"award-number":["TKP2021-NVA-29"]}]},{"name":"New National Excellence Program of the Ministry for Culture and Innovation from the Source of the National Research, Development and Innovation Fund","award":["\u00daNKP-22-3"],"award-info":[{"award-number":["\u00daNKP-22-3"]}]}],"content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":["IEEE Trans.Inform.Forensic Secur."],"published-print":{"date-parts":[[2024]]},"DOI":"10.1109\/tifs.2024.3356162","type":"journal-article","created":{"date-parts":[[2024,1,19]],"date-time":"2024-01-19T18:41:00Z","timestamp":1705689660000},"page":"2981-2996","source":"Crossref","is-referenced-by-count":4,"title":["Privacy-Preserving Password Cracking: How a Third Party Can Crack Our Password Hash Without Learning the Hash Value or the Cleartext"],"prefix":"10.1109","volume":"19","author":[{"ORCID":"https:\/\/orcid.org\/0000-0002-9002-5935","authenticated-orcid":false,"given":"Norbert","family":"Tihanyi","sequence":"first","affiliation":[{"name":"Department of Informatics, E&#x00F6;tv&#x00F6;s L&#x00F3;r&#x00E1;nd University, Budapest, Hungary"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0003-2626-3434","authenticated-orcid":false,"given":"Tam\u00e1s","family":"Bisztray","sequence":"additional","affiliation":[{"name":"Department of Informatics, University of Oslo, Oslo, Norway"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0009-0000-8718-8285","authenticated-orcid":false,"given":"Bertalan","family":"Borsos","sequence":"additional","affiliation":[{"name":"Department of Informatics, E&#x00F6;tv&#x00F6;s L&#x00F3;r&#x00E1;nd University, Budapest, Hungary"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-3760-6407","authenticated-orcid":false,"given":"Sebastien","family":"Raveau","sequence":"additional","affiliation":[{"name":"Technology Innovation Institute (TII), Abu Dhabi, United Arab Emirates"}],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"263","reference":[{"issue":"12","key":"ref1","doi-asserted-by":"crossref","first-page":"2021","DOI":"10.1109\/JPROC.2003.819611","article-title":"Comparing passwords, tokens, and biometrics for user authentication","volume":"91","author":"O\u2019Gorman","year":"2003","journal-title":"Proc. IEEE"},{"key":"ref2","volume-title":"One Step Closer to a Passwordless Future","author":"Srinivas","year":"2022"},{"key":"ref3","doi-asserted-by":"publisher","DOI":"10.1109\/SP.2012.44"},{"key":"ref4","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-319-24192-0_6"},{"issue":"2","key":"ref5","first-page":"45","article-title":"Security of password hashing in cloud","volume":"10","author":"Kamal","year":"2019","journal-title":"J. Inf. Secur."},{"key":"ref6","doi-asserted-by":"publisher","DOI":"10.1145\/2699390"},{"key":"ref7","doi-asserted-by":"publisher","DOI":"10.1109\/INFCOM.2010.5461951"},{"key":"ref8","first-page":"162","article-title":"Testing metrics for password creation policies by attacking large sets of revealed passwords","volume-title":"Proc. 17th ACM Conf. Comput. Commun. Secur.","author":"Weir"},{"key":"ref9","volume-title":"Pass-the-Hash Attacks: Tools and Mitigation","author":"Ewaida","year":"2010"},{"issue":"10","key":"ref10","doi-asserted-by":"crossref","first-page":"2320","DOI":"10.1109\/TIFS.2017.2705627","article-title":"Personal information in passwords and its security implications","volume":"12","author":"Li","year":"2017","journal-title":"IEEE Trans. Inf. Forensics Security"},{"key":"ref11","first-page":"1537","article-title":"Birthday, name and bifacial-security: Understanding passwords of Chinese web users","volume-title":"Proc. 28th USENIX Conf. Secur. Symp.","author":"Wang"},{"key":"ref12","doi-asserted-by":"publisher","DOI":"10.1145\/3214303"},{"key":"ref13","first-page":"208","article-title":"Software smart cards via cryptographic camouflage","volume-title":"Proc. IEEE Symp. Secur. Privacy","author":"Hoover"},{"key":"ref14","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-642-15497-3_18"},{"key":"ref15","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-642-55220-5_17"},{"key":"ref16","first-page":"145","article-title":"Honeywords: Making password-cracking detectable","volume-title":"Proc. ACM SIGSAC Conf. Comput. Commun. Secur.","author":"Juels"},{"key":"ref17","volume-title":"Protect Your Accounts From Data Breaches With Password Checkup","author":"Pullman","year":"2019"},{"key":"ref18","first-page":"1555","article-title":"Protecting accounts from credential stuffing with password breach alerting","volume-title":"Proc. 28th USENIX Conf. Secur. Symp.","author":"Thomas"},{"key":"ref19","doi-asserted-by":"publisher","DOI":"10.1145\/3319535.3354229"},{"key":"ref20","doi-asserted-by":"crossref","first-page":"517","DOI":"10.1109\/TIFS.2022.3176185","article-title":"New observations on Zipf\u2019s law in passwords","volume":"18","author":"Hou","year":"2023","journal-title":"IEEE Trans. Inf. Forensics Security"},{"key":"ref21","doi-asserted-by":"publisher","DOI":"10.1109\/SP.2012.49"},{"key":"ref22","doi-asserted-by":"crossref","DOI":"10.14722\/ndss.2016.23328","article-title":"Differentially private password frequency lists","volume-title":"Proc. Netw. Distrib. Syst. Secur. Symp.","author":"Blocki"},{"key":"ref23","doi-asserted-by":"publisher","DOI":"10.1145\/2187836.2187878"},{"key":"ref24","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-319-75307-2_11"},{"key":"ref25","doi-asserted-by":"publisher","DOI":"10.1109\/SP.2009.8"},{"key":"ref26","first-page":"159","article-title":"PCWQ: A framework for evaluating password cracking wordlist quality","volume-title":"Proc. 12th EAI Int. Conf. Digit. Forensics Cyber Crime","author":"Kanta"},{"key":"ref27","doi-asserted-by":"publisher","DOI":"10.1016\/j.fsidi.2021.301186"},{"key":"ref28","doi-asserted-by":"publisher","DOI":"10.1109\/TIFS.2016.2636092"},{"key":"ref29","doi-asserted-by":"publisher","DOI":"10.1109\/DSN.2016.60"},{"key":"ref30","article-title":"That was then, this is now: A security evaluation of password generation, storage, and autofill in thirteen password managers","author":"Oesch","year":"2019","journal-title":"arXiv:1908.03296"},{"key":"ref31","doi-asserted-by":"publisher","DOI":"10.1109\/TIFS.2017.2730359"},{"key":"ref32","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-662-48000-7_25"},{"key":"ref33","doi-asserted-by":"publisher","DOI":"10.2478\/ausi-2014-0002"},{"key":"ref34","article-title":"Numerical computing of extremely large values of the Riemann\u2013Siegel Z-function","author":"Tihanyi","year":"2019"},{"key":"ref35","doi-asserted-by":"publisher","DOI":"10.1007\/bf01457454"},{"key":"ref36","article-title":"A polynomial time, numerically stable integer relation algorithm","author":"Ferguson","year":"1991"},{"key":"ref37","doi-asserted-by":"publisher","DOI":"10.1142\/s0218488502001648"},{"key":"ref38","doi-asserted-by":"publisher","DOI":"10.1109\/ICDE.2005.42"},{"key":"ref39","first-page":"51","article-title":"Anonymity, unlinkability, undetectability, unobservability, pseudonymity, and identity management\u2014A consolidated proposal for terminology","volume":"31","author":"Pfitzmann","year":"2007","journal-title":"Version v0"},{"key":"ref40","doi-asserted-by":"publisher","DOI":"10.1109\/SP40000.2020.00100"},{"key":"ref41","doi-asserted-by":"publisher","DOI":"10.1145\/3052973.3053031"},{"key":"ref42","doi-asserted-by":"crossref","first-page":"2130","DOI":"10.1109\/TIFS.2021.3050066","article-title":"Leet usage and its effect on password security","volume":"16","author":"Li","year":"2021","journal-title":"IEEE Trans. Inf. Forensics Security"},{"issue":"11","key":"ref43","doi-asserted-by":"crossref","first-page":"2776","DOI":"10.1109\/TIFS.2017.2721359","article-title":"Zipf\u2019s law in passwords","volume":"12","author":"Wang","year":"2017","journal-title":"IEEE Trans. Inf. Forensics Security"},{"key":"ref44","doi-asserted-by":"crossref","DOI":"10.6028\/NIST.IR.7991","volume-title":"United States federal employees\u2019 password management behaviors: A department of commerce case study","author":"Choong","year":"2014"},{"key":"ref45","doi-asserted-by":"publisher","DOI":"10.1109\/LCA.2020.3017457"},{"key":"ref46","doi-asserted-by":"publisher","DOI":"10.1007\/11894063_9"},{"key":"ref47","volume-title":"RIVYERA_S6_Lx150_Rev431_Datasheet","year":"2022"},{"key":"ref48","doi-asserted-by":"publisher","DOI":"10.1145\/1536414.1536440"}],"container-title":["IEEE Transactions on Information Forensics and Security"],"original-title":[],"link":[{"URL":"http:\/\/xplorestaging.ieee.org\/ielx7\/10206\/10319981\/10409543.pdf?arnumber=10409543","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2024,2,2]],"date-time":"2024-02-02T00:40:45Z","timestamp":1706834445000},"score":1,"resource":{"primary":{"URL":"https:\/\/ieeexplore.ieee.org\/document\/10409543\/"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2024]]},"references-count":48,"URL":"https:\/\/doi.org\/10.1109\/tifs.2024.3356162","relation":{},"ISSN":["1556-6013","1556-6021"],"issn-type":[{"value":"1556-6013","type":"print"},{"value":"1556-6021","type":"electronic"}],"subject":[],"published":{"date-parts":[[2024]]}}}