Netinfo Security ›› 2015, Vol. 15 ›› Issue (9): 270-273.doi: 10.3969/j.issn.1671-1122.2015.09.060

• Orginal Article • Previous Articles     Next Articles

Secure Password Manager Based on Shadow DOM and Improved PBE

Guo-feng JIANG1,2(), Neng GAO1, Wei-yu JIANG1   

  1. 1. State Key Laboratory of Information Security, Institute of Information Engineering, Chinese Academy of Sciences, Beijing 100093, China
    2. University of Chinese Academy of Sciences, Beijing 100049, China
  • Received:2015-07-15 Online:2015-09-01 Published:2015-11-13

Abstract:

Several types of Attacks targeted at password managers seriously threaten user’s privacy and data security. This paper finds off-line cracking and password stealing from login page is the major types of password attack on the client side, and traditional password protecting methods no longer effectively protect passwords. To prevent password leakage and cracking endanger user’s data, this paper proposes a design of secure password manager: utilizing improved PBE encryption and Shadow DOM based data isolation method to effectively solve the urgent secure problems of password managers.

Key words: password protection, security of Web, shadow DOM, data isolation

CLC Number: