{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2025,10,12]],"date-time":"2025-10-12T04:07:04Z","timestamp":1760242024498,"version":"build-2065373602"},"reference-count":28,"publisher":"MDPI AG","issue":"12","license":[{"start":{"date-parts":[[2018,12,3]],"date-time":"2018-12-03T00:00:00Z","timestamp":1543795200000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/creativecommons.org\/licenses\/by\/4.0\/"}],"funder":[{"name":"Spanish Government","award":["TEC2014-54110-R (CASUS)"],"award-info":[{"award-number":["TEC2014-54110-R (CASUS)"]}]}],"content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":["Symmetry"],"abstract":"<jats:p>Password-based key derivation functions (PBKDFs) are commonly used to transform user passwords into keys for symmetric encryption, as well as for user authentication, password hashing, and preventing attacks based on custom hardware. We propose two optimized alternatives that enhance the performance of a previously published PBKDF. This design is based on (1) employing a symmetric cipher, the Advanced Encryption Standard (AES), as a pseudo-random generator and (2) taking advantage of the support for the hardware acceleration for AES that is available on many common platforms in order to mitigate common attacks to password-based user authentication systems. We also analyze their security characteristics, establishing that they are equivalent to the security of the core primitive (AES), and we compare their performance with well-known PBKDF algorithms, such as Scrypt and Argon2, with favorable results.<\/jats:p>","DOI":"10.3390\/sym10120705","type":"journal-article","created":{"date-parts":[[2018,12,3]],"date-time":"2018-12-03T06:02:09Z","timestamp":1543816929000},"page":"705","update-policy":"https:\/\/doi.org\/10.3390\/mdpi_crossmark_policy","source":"Crossref","is-referenced-by-count":7,"title":["Optimizing a Password Hashing Function with Hardware-Accelerated Symmetric Encryption"],"prefix":"10.3390","volume":"10","author":[{"ORCID":"https:\/\/orcid.org\/0000-0002-8254-6255","authenticated-orcid":false,"given":"Rafael","family":"\u00c1lvarez","sequence":"first","affiliation":[{"name":"Departamento de Ciencia de la Computaci\u00f3n e Inteligencia Artificial (DCCIA), Universidad de Alicante, 03690 Alicante, Spain"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-7153-1875","authenticated-orcid":false,"given":"Alicia","family":"Andrade","sequence":"additional","affiliation":[{"name":"Fac. Ingenier\u00eda, Ciencias F\u00edsicas y Matem\u00e1tica, Universidad Central, Quito 170129, Ecuador"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0003-0401-6440","authenticated-orcid":false,"given":"Antonio","family":"Zamora","sequence":"additional","affiliation":[{"name":"Departamento de Ciencia de la Computaci\u00f3n e Inteligencia Artificial (DCCIA), Universidad de Alicante, 03690 Alicante, Spain"}],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"1968","published-online":{"date-parts":[[2018,12,3]]},"reference":[{"key":"ref_1","doi-asserted-by":"crossref","first-page":"401","DOI":"10.1109\/TIT.1980.1056220","article-title":"A Cryptanalytic Time-memory Trade-off","volume":"26","author":"Hellman","year":"2006","journal-title":"IEEE Trans. Inf. Theory"},{"key":"ref_2","unstructured":"Provos, N., and Mazieres, D. (1999, January 23\u201326). A Future-Adaptable Password Scheme. Proceedings of the 1999 USENIX Annual Technical Conference, FREENIX Track, Berkeley, CA, USA."},{"key":"ref_3","unstructured":"P\u00e9rez Garc\u00eda, H., Alfonso-Cend\u00f3n, J., S\u00e1nchez Gonz\u00e1lez, L., Quinti\u00e1n, H., and Corchado, E. (2017, January 6\u20138). AES-CTR as a Password-Hashing Function. Proceedings of the International Joint Conference SOCO\u201917- CISIS\u201917-ICEUTE\u201917, Le\u00f3n, Spain."},{"key":"ref_4","doi-asserted-by":"crossref","unstructured":"\u00c1lvarez, R., and Zamora, A. (2016, January 19\u201321). Using Spritz as a Password-Based Key Derivation Function. Proceedings of the International Joint Conference SOCO\u201916-CISIS\u201916-ICEUTE\u201916, San Sebasti\u00e1n, Spain.","DOI":"10.1007\/978-3-319-47364-2_50"},{"key":"ref_5","doi-asserted-by":"crossref","unstructured":"Biryukov, A., Dinu, D., and Khovratovich, D. (2016, January 21\u201324). Argon2: New Generation of Memory-Hard Functions for Password Hashing and Other Applications. Proceedings of the IEEE 2016 IEEE European Symposium on Security and Privacy, Saarbrucken, Germany.","DOI":"10.1109\/EuroSP.2016.31"},{"key":"ref_6","unstructured":"Forler, C., Lucks, S., and Wenzel, J. (2018, November 20). The Catena Password-Scrambling Framework. Available online: https:\/\/password-hashing.net\/submissions\/specs\/Catena-v5.pdf."},{"key":"ref_7","unstructured":"Percival, C. (2018, November 20). Stronger Key Derivation via Sequential Memory-Hard Functions. Available online: http:\/\/www.bsdcan.org\/2009\/schedule\/attachments\/87_scrypt.pdf."},{"key":"ref_8","unstructured":"Pornin, T. (2018, November 20). The Makwa Password Hashing Function. Available online: http:\/\/www.bolet.org\/makwa\/makwa-spec-20150422.pdf."},{"key":"ref_9","doi-asserted-by":"crossref","first-page":"3096","DOI":"10.1109\/TC.2016.2516011","article-title":"Lyra2: Password Hashing Scheme with improved security against time-memory trade-offs","volume":"65","author":"Almeida","year":"2016","journal-title":"IEEE Trans. Comput."},{"key":"ref_10","unstructured":"Peslyak, A. (2018, November 20). yescrypt\u2014A Password Hashing Competition Submission. Available online: https:\/\/password-hashing.net\/submissions\/specs\/yescrypt-v2.pdf."},{"key":"ref_11","doi-asserted-by":"crossref","unstructured":"Moriarty, K., Kaliski, B., and Rusch, A. (2017). PKCS# 5: Password-Based Cryptography Specification Version 2.1, IETF. Technical Report.","DOI":"10.17487\/RFC8018"},{"key":"ref_12","first-page":"430:1","article-title":"Fast and Tradeoff-Resilient Memory-Hard Functions for Cryptocurrencies and Password Hashing","volume":"2015","author":"Biryukov","year":"2015","journal-title":"IACR Cryptol. ePrint Arch."},{"key":"ref_13","unstructured":"Ferguson, N., Schneier, B., and Kohno, T. (2010). Cryptography Engineering: Design Principles and Practical Applications, Wiley Publishing."},{"key":"ref_14","unstructured":"Daemen, J., and Rijmen, V. (2018, November 20). AES Proposal: Rijndael. Available online: http:\/\/www.cs.miami.edu\/home\/burt\/learning\/Csc688.012\/rijndael\/rijndael_doc_V2.pdf."},{"key":"ref_15","unstructured":"Keller, S.S. (2018, November 20). NIST-Recommended Random Number Generator Based on ANSI X9.31 Appendix A.2.4 Using the 3-Key Triple DES and AES Algorithms. Available online: http:\/\/citeseerx.ist.psu.edu\/viewdoc\/download?doi=10.1.1.210.70&rep=rep1&type=pdf."},{"key":"ref_16","doi-asserted-by":"crossref","unstructured":"Chang, Y.F., Tai, W.L., and Hsu, M.H. (2017). A Secure Mobility Network Authentication Scheme Ensuring User Anonymity. Symmetry, 9.","DOI":"10.3390\/sym9120307"},{"key":"ref_17","doi-asserted-by":"crossref","unstructured":"Hung, Y.H., Tseng, Y.M., and Huang, S.S. (2017). Lattice-Based Revocable Certificateless Signature. Symmetry, 9.","DOI":"10.1155\/2017\/7571201"},{"key":"ref_18","doi-asserted-by":"crossref","unstructured":"Sakalauskas, E., Mihalkovich, A., and Ven\u010dkauskas, A. (2017). Improved Asymmetric Cipher Based on Matrix Power Function with Provable Security. Symmetry, 9.","DOI":"10.3390\/sym9010009"},{"key":"ref_19","doi-asserted-by":"crossref","unstructured":"Ramadan, M., Du, G., Li, F., and Xu, C. (2016). A Survey of Public Key Infrastructure-Based Security for Mobile Communication Systems. Symmetry, 8.","DOI":"10.3390\/sym8090085"},{"key":"ref_20","doi-asserted-by":"crossref","unstructured":"Qiao, H., Ba, H., Zhou, H., Wang, Z., Ren, J., and Hu, Y. (2018). Practical, Provably Secure, and Black-Box Traceable CP-ABE for Cryptographic Cloud Storage. Symmetry, 10.","DOI":"10.3390\/sym10100482"},{"key":"ref_21","doi-asserted-by":"crossref","unstructured":"Ba, H., Zhou, H., Mei, S., Qiao, H., Hong, T., Wang, Z., and Ren, J. (2018). Astrape: An Efficient Concurrent Cloud Attestation with Ciphertext-Policy Attribute-Based Encryption. Symmetry, 10.","DOI":"10.3390\/sym10100425"},{"key":"ref_22","doi-asserted-by":"crossref","unstructured":"Zhu, C., Wang, G., and Sun, K. (2018). Cryptanalysis and Improvement on an Image Encryption Algorithm Design Using a Novel Chaos Based S-Box. Symmetry, 10.","DOI":"10.3390\/sym10090399"},{"key":"ref_23","doi-asserted-by":"crossref","unstructured":"Park, J.H., and Park, J.H. (2017). Blockchain Security in Cloud Computing: Use Cases, Challenges, and Solutions. Symmetry, 9.","DOI":"10.3390\/sym9080164"},{"key":"ref_24","doi-asserted-by":"crossref","unstructured":"Chang, T.Y., Hwang, M.S., and Yang, C.C. (2017). Password Authenticated Key Exchange and Protected Password Change Protocols. Symmetry, 9.","DOI":"10.3390\/sym9080134"},{"key":"ref_25","doi-asserted-by":"crossref","first-page":"105","DOI":"10.3390\/sym7010105","article-title":"Two-Round Password-Only Authenticated Key Exchange in the Three-Party Setting","volume":"7","author":"Nam","year":"2015","journal-title":"Symmetry"},{"key":"ref_26","doi-asserted-by":"crossref","unstructured":"Alvarez, R., Caballero-Gil, C., Santonja, J., and Zamora, A. (2017). Algorithms for Lightweight Key Exchange. Sensors, 17.","DOI":"10.3390\/s17071517"},{"key":"ref_27","unstructured":"Bertoni, G., Daemen, J., Peeters, M., and Van Assche, G. (2018, November 20). Cryptographic Sponge Functions. Available online: https:\/\/keccak.team\/files\/CSF-0.1.pdf."},{"key":"ref_28","unstructured":"(2018, November 20). The Go Programming Language. Available online: http:\/\/www.golang.org."}],"container-title":["Symmetry"],"original-title":[],"language":"en","link":[{"URL":"https:\/\/www.mdpi.com\/2073-8994\/10\/12\/705\/pdf","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2025,10,11]],"date-time":"2025-10-11T15:30:47Z","timestamp":1760196647000},"score":1,"resource":{"primary":{"URL":"https:\/\/www.mdpi.com\/2073-8994\/10\/12\/705"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2018,12,3]]},"references-count":28,"journal-issue":{"issue":"12","published-online":{"date-parts":[[2018,12]]}},"alternative-id":["sym10120705"],"URL":"https:\/\/doi.org\/10.3390\/sym10120705","relation":{},"ISSN":["2073-8994"],"issn-type":[{"type":"electronic","value":"2073-8994"}],"subject":[],"published":{"date-parts":[[2018,12,3]]}}}