English
Related papers

Related papers: Why Johnny Still, Still Can't Encrypt: Evaluating …

200 papers

Several end-to-end encryption technologies for emails such as PGP and S/MIME exist since decades. However, end-to-end encryption is barely applied. To understand why users hesitate to secure their email communication and which usability…

Cryptography and Security · Computer Science 2021-10-13 Adrian Reuter , Karima Boudaoud , Marco Winckler , Ahmed Abdelmaksoud , Wadie Lemrazzeq

Pretty Good Privacy (PGP) has long been the primary IETF standard for encrypting email, but suffers from widespread usability and security problems that have limited its adoption. As time has marched on, the underlying cryptographic…

Cryptography and Security · Computer Science 2020-08-18 Harry Halpin

We show practical attacks against OpenPGP and S/MIME encryption and digital signatures in the context of email. Instead of targeting the underlying cryptographic primitives, our attacks abuse legitimate features of the MIME standard and…

Cryptography and Security · Computer Science 2019-04-18 Jens Müller , Marcus Brinkmann , Damian Poddebniak , Sebastian Schinzel , Jörg Schwenk

Existing end-to-end-encrypted (E2EE) email systems, mainly PGP, have long been evaluated in controlled lab settings. While these studies have exposed usability obstacles for the average user and offer design improvements, there exist users…

Cryptography and Security · Computer Science 2021-04-12 Glencora Borradaile , Kelsy Kretschmer , Michele Gretes , Alexandria LeClerc

Emails today are often encrypted, but only between mail servers---the vast majority of emails are exposed in plaintext to the mail servers that handle them. While better than no encryption, this arrangement leaves open the possibility of…

Cryptography and Security · Computer Science 2017-03-01 Trinabh Gupta , Henrique Fingler , Lorenzo Alvisi , Michael Walfish

Email cryptography applications often suffer from major problems that prevent their widespread implementation. MEG, or the Mobile Encryption Gateway aims to fix the issues associated with email encryption by ensuring that encryption is easy…

Cryptography and Security · Computer Science 2017-11-08 Gregory B Rehm , Michael Thompson , Brad Busenius , Jennifer Fowler

Using multi group asymmetric public and private keys, this paper proposes a encryption email communication system, which makes email communication more secure, lowers the service provider\'s network and storage consumption, and completely…

Cryptography and Security · Computer Science 2019-02-26 Avanna , Psycho Zhang , Simon Yan , Jonne Mao

Lack of usability of security Application Programming In- terfaces (APIs) is one of the main reasons for mistakes that programmers make that result in security vulnerabilities in software applications they develop. Especially, APIs that…

Cryptography and Security · Computer Science 2018-05-25 Chamila Wijayarathna , Nalin Asanka Gamagedara Arachchilage

Over the last 25 years four million e-mail addresses have accumulated in the PGP web of trust. In a study each of them was tested for vitality with the result of 40% being unreachable. Of the mailboxes proven to be reachable, 46.77% turn…

Cryptography and Security · Computer Science 2016-05-12 Benjamin Leiding , Andreas Dähn

We analyse the 2025 Signalgate leak of sensitive US military information by the Trump administration, addressing why confidentiality was violated (messages leaked to the press) in spite of encryption (Signal), to deepen the socio-technical…

Cryptography and Security · Computer Science 2026-04-22 Maurice Chiodo , Toni Erskine , Dennis Müller , James G. Wright

Software signing is the most robust method for ensuring the integrity and authenticity of components in a software supply chain. Legacy key-managed signing tools (e.g., OpenPGP) burdened practitioners with key management and signer…

Software Engineering · Computer Science 2026-04-16 Kelechi G. Kalu , Sofia Okorafor , Tanmay Singla , Sophie Chen , Santiago Torres-Arias , James C. Davis

Secure email is increasingly being touted as usable by novice users, with a push for adoption based on recent concerns about government surveillance. To determine whether secure email is for grassroots adoption, we employ a laboratory user…

Cryptography and Security · Computer Science 2016-01-13 Scott Ruoti , Jeff Andersen , Scott Heidbrink , Mark O'Neil , Elham Vaziripour , Justin Wu , Daniel Zappala , Kent Seamons

While email is the most ubiquitous and interoperable form of online communication today, it was not conceived with strong security guarantees, and the ensuing security enhancements are, by contrast, lacking in both ubiquity and…

Cryptography and Security · Computer Science 2021-10-26 Jeremy Clark , P. C. van Oorschot , Scott Ruoti , Kent Seamons , Daniel Zappala

European lawmakers have ruled that users on different platforms should be able to exchange messages with each other. Yet messaging interoperability opens up a Pandora's box of security and privacy challenges. While championed not just as an…

Computers and Society · Computer Science 2023-12-12 Jenny Blessing , Ross Anderson

Common problems affecting modern email usage include spam, lack of sender verification, lack of built-in security and lack of message integrity. This paper looks at how we can utilise the extensible messaging and presence protocol also…

Networking and Internet Architecture · Computer Science 2018-02-27 Martin A. Coleman

Cryptographic mechanisms are used in a wide range of applications, including email clients, web browsers, document and asset management systems, where typical users are not cryptography experts. A number of empirical studies have…

Cryptography and Security · Computer Science 2013-03-11 Phillip J. Brooke , Richard F. Paige

While passwords, by definition, are meant to be secret, recent trends in the Internet usage have witnessed an increasing number of people sharing their email passwords for both personal and professional purposes. As sharing passwords…

Computers and Society · Computer Science 2013-01-30 Prateek Dewan , Mayank Gupta , Ponnurangam Kumaraguru

Real-time, online-editing web apps provide free and convenient services for collaboratively editing, sharing and storing files. The benefits of these web applications do not come for free: not only do service providers have full access to…

Cryptography and Security · Computer Science 2019-11-19 Yihao Hu , Ari Trachtenberg , Prakash Ishwar

TLS is the most widely used cryptographic protocol on the Internet. While many recent studies focused on its use in HTTPS, none so far analyzed TLS usage in e-mail related protocols, which often carry highly sensitive information. Since…

Cryptography and Security · Computer Science 2015-11-03 Wilfried Mayer , Aaron Zauner , Martin Schmiedecker , Markus Huber

In this document we describe the design of a multi-party messaging encryption protocol "Strongvelope". We hope that it will prove useful to people interested in understanding the inner workings of this protocol as well as cryptography and…

Cryptography and Security · Computer Science 2016-06-16 Guy Kloss
‹ Prev 1 2 3 10 Next ›