English
Related papers

Related papers: Mitigating CSRF attacks on OAuth 2.0 and OpenID Co…

200 papers

Existing authentication solutions proposed for Internet of Things (IoT) provide a single Level of Assurance (LoA) regardless of the sensitivity levels of the resources or interactions between IoT devices being protected. For effective (with…

Cryptography and Security · Computer Science 2022-05-13 Salem AlJanah , Ning Zhang , Siok Wah Tay

This paper is aimed to evaluate the importance of XML Signature and XML Encryption in Web Service Security. In today's business scenario, organizations are investing huge amount of resources in Web Services. Web Service Transactions are…

Cryptography and Security · Computer Science 2013-03-06 RA. K. Saravanaguru , George Abraham , Krishnakumar Ventakasubramanian , Kiransinh Borasia

With challenges and limitations associated with security in the fintech industry, the rise to the need for data protection increases. However, the current existing passwordless and password-based peer to peer transactions in online banking…

Cryptography and Security · Computer Science 2024-08-12 Anisha Ghosh , Aditya Mitra , Sibi Chakkaravarthy Sethuraman , Aswani Kumar Cherukuri

Modern web and digital application password storage relies on password hashing for storage and security. Ad-hoc upgrade of password storage to keep up with hash algorithm norms may be used to save costs but can introduce unforeseen…

Cryptography and Security · Computer Science 2025-10-15 Thomas Rivasseau

The User-Managed Access (UMA) extension to OAuth 2.0 is a promising candidate for increasing Digital Trust in personal data ecosystems like Solid. With minor modifications, it can achieve many requirements regarding usage control and…

Cryptography and Security · Computer Science 2025-01-08 Wouter Termont , Ruben Dedecker , Wout Slabbinck , Beatriz Esteves , Ben De Meester , Ruben Verborgh

Nowadays, cyberattacks are growing exponentially, causing havoc to Internet users. In particular, authentication attacks constitute the major attack vector where intruders impersonate legitimate users to maliciously access systems or…

Cryptography and Security · Computer Science 2025-06-18 Ang Kok Wee , Eyasu Getahun Chekole , Jianying Zhou

With the success of Web applications, most of our data is now stored on various third-party servers where they are processed to deliver personalized services. Naturally we must be authenticated to access this personal information, but the…

Cryptography and Security · Computer Science 2011-08-31 Vincent Toubiana , Vincent Verdot

Anonymous microblogging systems are known to be vulnerable to intersection attacks due to network churn. An adversary that monitors all communications can leverage the churn to learn who is publishing what with increasing confidence over…

Cryptography and Security · Computer Science 2023-07-19 Sarah Abdelwahab Gaballah , Thanh Hoang Long Nguyen , Lamya Abdullah , Ephraim Zimmer , Max Mühlhäuser

After more than 40 years of development, the fundamental TCP/IP protocol suite, serving as the backbone of the Internet, is widely recognized for having achieved an elevated level of robustness and security. Distinctively, we take a new…

Cryptography and Security · Computer Science 2024-11-20 Xuewei Feng , Qi Li , Kun Sun , Ke Xu , Jianping Wu

Linked Data technologies become increasingly important in many domains. Key factors for their breakthrough are security and trust, especially when sensible or personal data are involved. Classical means for access control lack granularity…

Cryptography and Security · Computer Science 2016-11-10 Pascal Mainini , Annett Laube-Rosenpflanzer

The emerging threats to user privacy over the internet are increasing at an alarming rate. Signing in from an unreliable terminal into a web account may result in compromising private details of a user such as username and password, by…

Cryptography and Security · Computer Science 2013-10-16 Kalpesh Adhatrao , Aditya Gaykar , Rohit Jha , Vipul Honrao

We propose a capability-based access control method that leverages OAuth 2.0 and Verifiable Credentials (VCs) to share resources in crowdsourced drone services. VCs securely encode claims about entities, offering flexibility. However,…

Cryptography and Security · Computer Science 2025-05-05 Junaid Akram , Ali Anaissi , Awais Akram , Youcef Djenouri , Palash Ingle , Rutvij H. Jhaveri

Internet of Things (IoT) is becoming an increasingly attractive target for cybercriminals. We observe that many attacks to IoTs are launched in a collusive way, such as brute-force hacking usernames and passwords, to target at a particular…

Networking and Internet Architecture · Computer Science 2018-08-03 Garegin Grigoryan , Yaoqing Liu , Laurent Njilla , Charles Kamhoua , Kevin Kwiat

We design and develop a secret-sharing-scheme-based cyberattack detection model(S3CDM)that can detect unauthorized or illegal activities (especially insider attacks) and protect sensitive information within complex network infrastructures…

Cryptography and Security · Computer Science 2026-04-14 Chi Sing Chum , Jia Lu , Claire Tang , Xiaowen Zhang

Security and Privacy concerns in Radio frequency identification (RFID) technology particularly RFID Card, is a wide research area which have attracted researchers for over a decade. Authenticating users at the Card end of the RFID…

Cryptography and Security · Computer Science 2012-10-08 Ikuesan R. Adeyemi , Norafida Bt. Ithnin

Recently, Liaw et al. proposed a remote user authentication scheme using smart cards. Their scheme has claimed a number of features e.g. mutual authentication, no clock synchronization, no verifier table, flexible user password change, etc.…

Cryptography and Security · Computer Science 2008-02-18 Manik Lal Das

Business analytics processes are often composed from orchestrated, collaborating services, which are consumed by users from multiple cloud systems (in different security realms), which need to be engaged dynamically at runtime. If…

Cryptography and Security · Computer Science 2019-01-11 Hussain Al-Aqrabi , Richard Hill

Radio Frequency Identification (RFID) is appearing as a favorite technology for automated identification, which can be widely applied to many applications such as e-passport, supply chain management and ticketing. However, researchers have…

Cryptography and Security · Computer Science 2011-02-07 Mohammad Hassan Habibi , Mahmoud Gardeshi , Mahdi R. Alaghband

Vulnerabilities in password managers are unremitting because current designs provide large attack surfaces, both at the client and server. We describe and evaluate Horcrux, a password manager that is designed holistically to minimize and…

Cryptography and Security · Computer Science 2017-10-11 Hannah Li , David Evans

The advancement of computing equipment and the advances in services over the Internet has allowed corporations, higher education, and many other organizations to pursue the shared computing network environment. A requirement for shared…

Cryptography and Security · Computer Science 2025-08-19 Tyler Schroder , Sohee Kim Park