Type 1 Authentication: Something You Know
Static Passwords
Passphrases
- Authentication that is only valid for one-time use
One-time Passwords
Dynamic Passwords
Password guessing
Attacker has gained access to the password hashes or database and compares the output to a desired hash hoping to find a match therefore deriving the original password
Password Cracking
Dictionary Attack
Hybrid Attack
- Attacker calculates the hash outputs for every possible password.
Brute-Force Attacks
Database that contains the precomputed hashed output for most of all possible passwords
Rainbow table
Salt
Type 2 Authentication: Something You Have
Synchronous Dynamic Passwords
Asynchronous Dynamic Passwords
Type 3 Authentication: Something You Are
The process of registering with the biometric system
Biometric Enrollment
- Typically 6-10 secs
Throughput
False Rejection Rate
- Type II error
False Acceptance Rate
Crossover Error Rate
Most widely used biometric control
Fingerprints
Includes specific details of fingerprint friction ridges like whorls, ridges and bifurcation
Minutiae
Retina scan