This document discusses the implementation of the Guillou-Quisquater protocol for user authentication utilizing zero knowledge proof to enhance security against password sniffing and database hacks. The study analyzes potential vulnerabilities through penetration testing based on OWASP standards, noting several risks identified, including error message exposures and credential transmission methods. This research highlights the effectiveness of zero knowledge proof, ensuring that user passwords are never sent in a manner that exposes sensitive data.