M. Bishop and D. V. Klein, Improving system security via proactive password checking, Computers & Security, vol.14, issue.3, pp.233-249, 1995.

J. Bonneau, The science of guessing: Analyzing an anonymized corpus of 70 million passwords, 2012 IEEE Symposium on Security and Privacy, pp.538-552, 2012.

A. Das, J. Bonneau, M. Caesar, N. Borisov, and X. Wang, The tangled web of password reuse, In: NDSS, vol.14, pp.23-26, 2014.

D. Florencio and C. Herley, A large-scale study of web password habits, Proceedings of the 16th International Conference on World Wide Web, pp.657-666, 2007.

S. Ginsburg, The Mathematical Theory of Context Free Languages, 1966.

S. Houshmand and S. Aggarwal, Using personal information in targeted grammarbased probabilistic password attacks, IFIP International Conference on Digital Forensics, pp.285-303, 2017.
URL : https://hal.archives-ouvertes.fr/hal-01716395

S. Houshmand, S. Aggarwal, and R. Flood, Next gen pcfg password cracking, IEEE Trans. Information Forensics and Security, vol.10, issue.8, pp.1776-1791, 2015.

P. G. Kelley, S. Komanduri, M. L. Mazurek, R. Shay, T. Vidas et al., Guess again (and again and again): Measuring password strength by simulating password-cracking algorithms, Security and Privacy (SP), 2012 IEEE Symposium on, pp.523-537, 2012.

J. Ma, W. Yang, M. Luo, and N. Li, A study of probabilistic password models, 2014 IEEE Symposium on Security and Privacy, pp.689-704, 2014.

A. Narayanan and V. Shmatikov, Fast dictionary attacks on passwords using timespace tradeoff, Proceedings of the 12th ACM Conference on Computer and Communications Security, pp.364-372, 2005.

R. W. Proctor, M. C. Lien, K. P. Vu, E. E. Schultz, and G. Salvendy, Improving computer security for authentication of users: Influence of proactive password restrictions, Behavior Research Methods, Instruments, & Computers, vol.34, issue.2, pp.163-169, 2002.

R. Veras, C. Collins, and J. Thorpe, On semantic patterns of passwords and their security impact, 2014.

K. P. Vu, R. W. Proctor, A. Bhargav-spantzel, B. L. Tai, J. Cook et al., Improving password security and memorability to protect personal and organizational information, International Journal of Human-Computer Studies, vol.65, issue.8, pp.744-757, 2007.

C. M. Weir, Using probabilistic techniques to aid in password cracking attacks, 2010.

M. Weir, S. Aggarwal, B. Medeiros, and B. Glodek, Password cracking using probabilistic context-free grammars, 30th IEEE Symposium on Security and Privacy, pp.391-405, 2009.