中文
相关论文

相关论文: Do not trust me: Using malicious IdPs for analyzin…

200 篇论文

Single Sign-On (SSO) protocols streamline user authentication with a unified login for multiple online services, improving usability and security. One of the most common SSO protocol frameworks - the Security Assertion Markup Language V2.0…

密码学与安全 · 计算机科学 2026-01-21 Zvonimir Hartl , Ante Đerek

Approved client-server authentication mechanisms are described for the IVOA single-sign-on profile: digital signatures (for SOAP services); TLS with passwords (for user sign-on points); TLS with client certificates (for everything else).…

天体物理仪器与方法 · 物理学 2019-06-05 Guy Rixon , Matthew Graham , Grid , Web Services Working Group

Self-Sovereign Identity (SSI) is a new distributed method for identity management, commonly used to address the problem that users are lack of control over their identities. However, the excessive pursuit of self-sovereignty in the most…

密码学与安全 · 计算机科学 2022-06-13 Qiuyun Lyu , Shaopeng Cheng , Hao Li , Junliang Liu , Yanzhao Shen , Zhen Wang

The growing integration of artificial intelligence (AI) and machine learning (ML) in medical systems requires effective measures to address emerging security risks. One such risk is that of adversaries introducing false data through…

We propose Secure Pick Up (SPU), a convenient, lightweight, in-device, non-intrusive and automatic-learning system for smartphone user authentication. Operating in the background, our system implicitly observes users' phone pick-up…

密码学与安全 · 计算机科学 2017-08-31 Wei-Han Lee , Xiaochen Liu , Yilin Shen , Hongxia Jin , Ruby B. Lee

Password-based authentication schemes are the most widely used techniques for remote user authentication. Many static ID-based remote user authentication schemes both with and without smart cards have been proposed. Most of the schemes do…

密码学与安全 · 计算机科学 2016-11-18 Manik Lal Das , Ashutosh Saxena , Ved P. Gulati

The Internet of Things (IoT) has the potential to enhance older adults' independence and quality of life, but it also exposes them to security, privacy, accessibility, and usability (SPAU) risks. We conducted a systematic review of 44…

密码学与安全 · 计算机科学 2025-12-19 Suleiman Saka , Sanchari Das

The Self-Sovereign Identity (SSI) is a decentralized paradigm enabling full control over the data used to build and prove the identity. In Internet of Things networks with security requirements, the Self-Sovereign Identity can play a key…

密码学与安全 · 计算机科学 2024-01-09 Alessandro Pino , Davide Margaria , Andrea Vesco

As the frequency and complexity of Distributed Denial-of-Service (DDoS) attacks continue to increase, the level of threats posed to Smart Internet of Things (SIoT) business environments have also increased. These environments generally have…

密码学与安全 · 计算机科学 2025-12-05 Oghenetejiri Okporokpo , Funminiyi Olajide , Nemitari Ajienka , Xiaoqi Ma

In password-based authentication systems, the username fields are essentially unprotected, while the password fields are susceptible to attacks. In this article, we shift our research focus from traditional authentication paradigm to the…

密码学与安全 · 计算机科学 2026-05-06 Suyun Borjigin

Identity-based code signing enables software developers to digitally sign their code using cryptographic keys. This key is then linked to an identity (e.g., through an identity provider), allowing signers to verify both the code's origin…

密码学与安全 · 计算机科学 2025-12-24 Chinenye Okafor , James C. Davis , Santiago Torres-Arias

Data-oriented attacks manipulate non-control data to alter a program's benign behavior without violating its control-flow integrity. It has been shown that such attacks can cause significant damage even in the presence of control-flow…

密码学与安全 · 计算机科学 2019-03-26 Long Cheng , Hans Liljestrand , Thomas Nyman , Yu Tsung Lee , Danfeng Yao , Trent Jaeger , N. Asokan

The emerging Self-Sovereign Identity (SSI) techniques, such as Decentralized Identifiers (DIDs) and Verifiable Credentials (VCs), move control of digital identity from conventional identity providers to individuals and lay down the…

新兴技术 · 计算机科学 2024-05-07 Thusitha Dayaratne , Xinxin Fan , Yuhong Liu , Carsten Rudolph

Unequivocally, a single man in possession of a strong password is not enough to solve the issue of security. Studies indicate that passwords have been subjected to various attacks, regardless of the applied protection mechanisms due to the…

密码学与安全 · 计算机科学 2021-07-02 Anna Angelogianni , Ilias Politis , Christos Xenakis

Distribution Service (DDS) is a realtime peer-to-peer protocol that serves as a scalable middleware between distributed networked systems found in many Industrial IoT domains such as automotive, medical, energy, and defense. Since the…

密码学与安全 · 计算机科学 2019-08-16 Ruffin White , Gianluca Caiazza , Chenxu Jiang , Xinyue Ou , Zhiyue Yang , Agostino Cortesi , Henrik Christensen

Self-Sovereign Identity (SSI) enables user-controlled, cryptographically verifiable credentials. As EU regulations mandate EUDI Wallet acceptance by 2027, SSI adoption becomes a compliance necessity. However, each SSI Verifier exposes…

密码学与安全 · 计算机科学 2026-02-17 Hakan Yildiz , Axel Küpper

The Denial-of-service (DoS) attack is considered one of the largest threats to the availability of cloud-computing services. Due to the unique architecture of cloud-computing systems, the methods for detecting and preventing DoS attacks are…

密码学与安全 · 计算机科学 2017-11-29 Marwan Darwish , Abdelkader Ouda , Luiz Fernando Capretz

This paper proposes a novel Self-Supervised Intrusion Detection (SSID) framework, which enables a fully online Deep Learning (DL) based Intrusion Detection System (IDS) that requires no human intervention or prior off-line learning. The…

密码学与安全 · 计算机科学 2024-05-16 Mert Nakıp , Erol Gelenbe

To protect users from data breaches and phishing attacks, service providers typically implement two-factor authentication (2FA) to add an extra layer of security against suspicious login attempts. However, since 2FA can sometimes hinder…

密码学与安全 · 计算机科学 2024-11-19 Zhi Wang , Xin Yang , Du Chen , Han Gao , Meiqi Tian , Yan Jia , Wanpeng Li

This paper describes a new protocol for authentication in ad-hoc networks. The protocol has been designed to meet specialized requirements of ad-hoc networks, such as lack of direct communication between nodes or requirements for revocable…

密码学与安全 · 计算机科学 2007-05-23 Adam Wierzbicki , Aneta Zwierko , Zbigniew Kotulski