中文
相关论文

相关论文: Why Johnny Still, Still Can't Encrypt: Evaluating …

200 篇论文

Several end-to-end encryption technologies for emails such as PGP and S/MIME exist since decades. However, end-to-end encryption is barely applied. To understand why users hesitate to secure their email communication and which usability…

密码学与安全 · 计算机科学 2021-10-13 Adrian Reuter , Karima Boudaoud , Marco Winckler , Ahmed Abdelmaksoud , Wadie Lemrazzeq

Pretty Good Privacy (PGP) has long been the primary IETF standard for encrypting email, but suffers from widespread usability and security problems that have limited its adoption. As time has marched on, the underlying cryptographic…

密码学与安全 · 计算机科学 2020-08-18 Harry Halpin

We show practical attacks against OpenPGP and S/MIME encryption and digital signatures in the context of email. Instead of targeting the underlying cryptographic primitives, our attacks abuse legitimate features of the MIME standard and…

密码学与安全 · 计算机科学 2019-04-18 Jens Müller , Marcus Brinkmann , Damian Poddebniak , Sebastian Schinzel , Jörg Schwenk

Existing end-to-end-encrypted (E2EE) email systems, mainly PGP, have long been evaluated in controlled lab settings. While these studies have exposed usability obstacles for the average user and offer design improvements, there exist users…

密码学与安全 · 计算机科学 2021-04-12 Glencora Borradaile , Kelsy Kretschmer , Michele Gretes , Alexandria LeClerc

Emails today are often encrypted, but only between mail servers---the vast majority of emails are exposed in plaintext to the mail servers that handle them. While better than no encryption, this arrangement leaves open the possibility of…

密码学与安全 · 计算机科学 2017-03-01 Trinabh Gupta , Henrique Fingler , Lorenzo Alvisi , Michael Walfish

Email cryptography applications often suffer from major problems that prevent their widespread implementation. MEG, or the Mobile Encryption Gateway aims to fix the issues associated with email encryption by ensuring that encryption is easy…

密码学与安全 · 计算机科学 2017-11-08 Gregory B Rehm , Michael Thompson , Brad Busenius , Jennifer Fowler

Using multi group asymmetric public and private keys, this paper proposes a encryption email communication system, which makes email communication more secure, lowers the service provider\'s network and storage consumption, and completely…

密码学与安全 · 计算机科学 2019-02-26 Avanna , Psycho Zhang , Simon Yan , Jonne Mao

Lack of usability of security Application Programming In- terfaces (APIs) is one of the main reasons for mistakes that programmers make that result in security vulnerabilities in software applications they develop. Especially, APIs that…

密码学与安全 · 计算机科学 2018-05-25 Chamila Wijayarathna , Nalin Asanka Gamagedara Arachchilage

Over the last 25 years four million e-mail addresses have accumulated in the PGP web of trust. In a study each of them was tested for vitality with the result of 40% being unreachable. Of the mailboxes proven to be reachable, 46.77% turn…

密码学与安全 · 计算机科学 2016-05-12 Benjamin Leiding , Andreas Dähn

We analyse the 2025 Signalgate leak of sensitive US military information by the Trump administration, addressing why confidentiality was violated (messages leaked to the press) in spite of encryption (Signal), to deepen the socio-technical…

密码学与安全 · 计算机科学 2026-04-22 Maurice Chiodo , Toni Erskine , Dennis Müller , James G. Wright

Software signing is the most robust method for ensuring the integrity and authenticity of components in a software supply chain. Legacy key-managed signing tools (e.g., OpenPGP) burdened practitioners with key management and signer…

软件工程 · 计算机科学 2026-04-16 Kelechi G. Kalu , Sofia Okorafor , Tanmay Singla , Sophie Chen , Santiago Torres-Arias , James C. Davis

Secure email is increasingly being touted as usable by novice users, with a push for adoption based on recent concerns about government surveillance. To determine whether secure email is for grassroots adoption, we employ a laboratory user…

密码学与安全 · 计算机科学 2016-01-13 Scott Ruoti , Jeff Andersen , Scott Heidbrink , Mark O'Neil , Elham Vaziripour , Justin Wu , Daniel Zappala , Kent Seamons

While email is the most ubiquitous and interoperable form of online communication today, it was not conceived with strong security guarantees, and the ensuing security enhancements are, by contrast, lacking in both ubiquity and…

密码学与安全 · 计算机科学 2021-10-26 Jeremy Clark , P. C. van Oorschot , Scott Ruoti , Kent Seamons , Daniel Zappala

European lawmakers have ruled that users on different platforms should be able to exchange messages with each other. Yet messaging interoperability opens up a Pandora's box of security and privacy challenges. While championed not just as an…

计算机与社会 · 计算机科学 2023-12-12 Jenny Blessing , Ross Anderson

Common problems affecting modern email usage include spam, lack of sender verification, lack of built-in security and lack of message integrity. This paper looks at how we can utilise the extensible messaging and presence protocol also…

网络与互联网体系结构 · 计算机科学 2018-02-27 Martin A. Coleman

Cryptographic mechanisms are used in a wide range of applications, including email clients, web browsers, document and asset management systems, where typical users are not cryptography experts. A number of empirical studies have…

密码学与安全 · 计算机科学 2013-03-11 Phillip J. Brooke , Richard F. Paige

While passwords, by definition, are meant to be secret, recent trends in the Internet usage have witnessed an increasing number of people sharing their email passwords for both personal and professional purposes. As sharing passwords…

计算机与社会 · 计算机科学 2013-01-30 Prateek Dewan , Mayank Gupta , Ponnurangam Kumaraguru

Real-time, online-editing web apps provide free and convenient services for collaboratively editing, sharing and storing files. The benefits of these web applications do not come for free: not only do service providers have full access to…

密码学与安全 · 计算机科学 2019-11-19 Yihao Hu , Ari Trachtenberg , Prakash Ishwar

TLS is the most widely used cryptographic protocol on the Internet. While many recent studies focused on its use in HTTPS, none so far analyzed TLS usage in e-mail related protocols, which often carry highly sensitive information. Since…

密码学与安全 · 计算机科学 2015-11-03 Wilfried Mayer , Aaron Zauner , Martin Schmiedecker , Markus Huber

In this document we describe the design of a multi-party messaging encryption protocol "Strongvelope". We hope that it will prove useful to people interested in understanding the inner workings of this protocol as well as cryptography and…

密码学与安全 · 计算机科学 2016-06-16 Guy Kloss
‹ 上一页 1 2 3 10 下一页 ›