English
Related papers

Related papers: On the Security of SSH Client Signatures

200 papers

The SSH protocol is commonly used to access remote systems on the Internet, as it provides an encrypted and authenticated channel for communication. If upon establishing a new connection, the presented server key is unknown to the client,…

Cryptography and Security · Computer Science 2022-11-24 Sebastian Neef , Nils Wisiol

The security of any cryptosystem relies on the secrecy of the system's secret keys. Yet, recent experimental work demonstrates that tens of thousands of devices on the Internet use RSA and DSA secrets drawn from a small pool of candidate…

Cryptography and Security · Computer Science 2014-01-09 Henry Corrigan-Gibbs , Wendy Mu , Dan Boneh , Bryan Ford

The ECDSA (Elliptic Curve Digital Signature Algorithm) is used in many blockchain networks for digital signatures. This includes the Bitcoin and the Ethereum blockchains. While it has good performance levels and as strong current security,…

Cryptography and Security · Computer Science 2025-04-11 William J. Buchanan , Jamie Gilchrist , Keir Finlow-Bates

Security of Elliptic Curve Digital Signature Algorithm (ECDSA) depends on the secrecy of the per-signature nonce. Even partial nonce leakage can expose the long-term private key through lattice-based cryptanalysis. In this paper, we…

Cryptography and Security · Computer Science 2026-02-03 Sahan Sanjaya , Prabhat Mishra

ECDSA has become a popular choice as lightweight alternative to RSA and classic DL based signature algorithms in recent years. As standardized, the signature produced by ECDSA for a pair of a message and a key is not deterministic. This…

Cryptography and Security · Computer Science 2015-01-05 Stephan Verbücheln

The security of TLS depends on trust in certificate authorities, and that trust stems from their ability to protect and control the use of a private signing key. The signing key is the key asset of a certificate authority (CA), and its…

Cryptography and Security · Computer Science 2017-10-11 Bargav Jayaraman , Hannah Li , David Evans

The security of the Elliptic Curve Digital Signature Algorithm (ECDSA) depends on the uniqueness and secrecy of the nonce, which is used in each signature. While it is well understood that nonce $k$ reuse across two distinct messages can…

Cryptography and Security · Computer Science 2025-04-21 Jamie Gilchrist , William J. Buchanan , Keir Finlow-Bates

The Digital Signature Algorithm (DSA) has become the de facto standard for authentication of transacting entities since its inception as a standard by NIST. An integral part of the signing process in DSA is the generation of a random number…

Cryptography and Security · Computer Science 2015-08-27 Akash Nag , Sunil Karforma

Recent work on Side Channel Analysis (SCA) targets old, well-known vulnerabilities, even previously exploited, reported, and patched in high-profile cryptography libraries. Nevertheless, researchers continue to find and exploit the same…

We propose a method for using Web Authentication APIs for SSH authentication, enabling passwordless remote server login with passkeys. These are credentials that are managed throughout the key lifecycle by an authenticator on behalf of the…

Cryptography and Security · Computer Science 2025-07-15 Moe Kayali , Jonas Schmitt , Franziska Roesner

ECDSA signatures form the bedrock of blockchain transaction authentication, yet their security critically depends on proper nonce generation. We uncover a critical vulnerability in the Polygon MEV ecosystem: systematic nonce reuse that…

Cryptography and Security · Computer Science 2026-05-22 Yash Madhwal , Andrey Seoev , Raffaele Della Pietra , Anastasiia Smirnova , Yury Yanovich

This paper presents a measurement study of information leakage and SSL vulnerabilities in popular Android apps. We perform static and dynamic analysis on 100 apps, downloaded at least 10M times, that request full network access. Our…

Cryptography and Security · Computer Science 2015-05-05 Lucky Onwuzurike , Emiliano De Cristofaro

The secret keys of critical network authorities - such as time, name, certificate, and software update services - represent high-value targets for hackers, criminals, and spy agencies wishing to use these keys secretly to compromise other…

Cryptography and Security · Computer Science 2016-05-31 Ewa Syta , Iulia Tamas , Dylan Visher , David Isaac Wolinsky , Philipp Jovanovic , Linus Gasser , Nicolas Gailly , Ismail Khoffi , Bryan Ford

Digital signature algorithms (DSAs) are fundamental to cryptographic security, ensuring data integrity and authentication. While RSA, DSA, ECDSA, and EdDSA are widely used, their performance varies significantly depending on key sizes, hash…

Cryptography and Security · Computer Science 2025-06-02 Sefik Serengil , Alper Ozpinar

Recently, Alomair et al. proposed the first UnConditionally Secure mutual authentication protocol for low-cost RFID systems(UCS-RFID). The security of the UCS-RFID relies on five dynamic secret keys which are updated at every protocol run…

Cryptography and Security · Computer Science 2012-01-18 Mohammad Reza Sohizadeh Abyaneh

Web services commonly employ Content Distribution Networks (CDNs) for performance and security. As web traffic is becoming 100% HTTPS, more and more websites allow CDNs to terminate their HTTPS connections. This practice may expose a…

Cryptography and Security · Computer Science 2023-02-02 Rui Xin , Shihan Lin , Xiaowei Yang

Public-key cryptography algorithms, especially elliptic curve cryptography (ECC) and elliptic curve digital signature algorithm (ECDSA) have been attracting attention from many researchers in different institutions because these algorithms…

Cryptography and Security · Computer Science 2019-02-28 Mishall Al-Zubaidie , Zhongwei Zhang , Ji Zhang

Trusted Platform Module (TPM) serves as a hardware-based root of trust that protects cryptographic keys from privileged system and physical adversaries. In this work, we perform a black-box timing analysis of TPM 2.0 devices deployed on…

Cryptography and Security · Computer Science 2019-11-14 Daniel Moghimi , Berk Sunar , Thomas Eisenbarth , Nadia Heninger

The beacon chain is the backbone of the Ethereum's evolution towards a proof-of-stake-based scalable network. Beacon clients are the applications implementing the services required to operate the beacon chain, namely validators, beacon…

Cryptography and Security · Computer Science 2021-09-27 Jean-Philippe Aumasson , Denis Kolegov , Evangelia Stathopoulou

The use of codes defined by sparse characteristic matrices, like QC-LDPC and QC-MDPC codes, has become an established solution to design secure and efficient code-based public-key encryption schemes, as also witnessed by the ongoing NIST…

Cryptography and Security · Computer Science 2022-05-26 Marco Baldi , Franco Chiaraluce , Paolo Santini
‹ Prev 1 2 3 10 Next ›