中文
相关论文

相关论文: IVOA Recommendation: SSO - Single-Sign-On Profile:…

200 篇论文

Verifiable credentials are a digital analogue of physical credentials. Their authenticity and integrity are protected by means of cryptographic techniques, and they can be presented to verifiers to reveal attributes or even predicates about…

密码学与安全 · 计算机科学 2024-01-17 Andrea Flamini , Giada Sciarretta , Mario Scuro , Amir Sharif , Alessandro Tomasi , Silvio Ranise

In password-based authentication systems, the username fields are essentially unprotected, while the password fields are susceptible to attacks. In this article, we shift our research focus from traditional authentication paradigm to the…

密码学与安全 · 计算机科学 2026-05-06 Suyun Borjigin

Single Sign-On (SSO) shifts the crucial authentication process on a website to to the underlying SSO protocols and their correct implementation. To strengthen SSO security, organizations, such as IETF and W3C, maintain advisories to address…

密码学与安全 · 计算机科学 2023-02-03 Maximilian Westers , Tobias Wich , Louis Jannett , Vladislav Mladenov , Christian Mainka , Andreas Mayer

Two-factor authentication (2FA) schemes that rely on a combination of knowledge factors (e.g., PIN) and device possession have gained popularity. Some of these schemes remain secure even against strong adversaries that (a) observe the…

密码学与安全 · 计算机科学 2022-08-08 Steven J. Murdoch , Aydin Abadi

Password-authenticated identities, where users establish username-password pairs with individual servers and use them later on for authentication, is the most widespread user authentication method over the Internet. Although they are…

密码学与安全 · 计算机科学 2021-09-17 Pawel Szalachowski

Secure Shell (SSH) protocol requires all implementations to support public key authentication method ("publickey") for authentication purposes, so web applications which provide a SSH client over the web browser need to support "publickey".…

密码学与安全 · 计算机科学 2015-06-17 Dorai Ashok Shanmugavel Anbalagan

Conceptual modeling is an essential tool in many fields of study, including security specification in information technology systems. As a model, it restricts access to resources and identifies possible threats to the system. We claim that…

其他计算机科学 · 计算机科学 2019-10-04 Sabah Al-Fedaghi , MennatAllah Bayoumi

In today's digital age, personal data is constantly at risk of compromise. Attribute-Based Encryption (ABE) has emerged as a promising approach to privacy-preserving data protection. This paper proposes an anonymous authentication mechanism…

密码学与安全 · 计算机科学 2025-06-18 Nouha Oualha

Many millions of users routinely use their Google, Facebook and Microsoft accounts to log in to websites supporting OAuth 2.0 and/or OpenID Connect-based single sign on. The security of OAuth 2.0 and OpenID Connect is therefore of critical…

密码学与安全 · 计算机科学 2018-01-25 Wanpeng Li , Chris J Mitchell , Thomas Chen

The Session Initiation Protocol (SIP) has become the most predominant protocol for Voice over Internet Protocol (VoIP) signaling. Security of SIP is an important consideration for VoIP communication as the traffic is transmitted over the…

密码学与安全 · 计算机科学 2010-02-08 Abdullah Al Hasib , Abdullah Azfar , Md. Sarwar Morshed

Current authentication methods on the Web have serious weaknesses. First, services heavily rely on the traditional password paradigm, which diminishes the end-users' security and usability. Second, the lack of attribute-based authentication…

Online services commonly attempt to verify the legitimacy of users with CAPTCHAs. However, CAPTCHAs are annoying for users, often difficult for users to solve, and can be defeated using cheap labor or, increasingly, with improved…

密码学与安全 · 计算机科学 2017-11-07 Ben Doyle , Patrick Korth , Kyle Nekritz , Zane Salem

Continuous authentication has been proposed as a complementary security mechanism to password-based authentication for computer devices that are handled directly by humans, such as smart phones. Continuous authentication has some privacy…

密码学与安全 · 计算机科学 2022-09-15 Sigurd Eskeland , Ahmed Fraz Baig

Credential theft and remote attacks are the most serious threats to user authentication mechanisms. The crux of these problems is that we cannot control such behaviors. However, if a password does not contain user secrets, stealing it is…

密码学与安全 · 计算机科学 2024-06-03 Suyun Borjigin

Web authentication is a critical component of today's Internet and the digital world we interact with. The FIDO2 protocol enables users to leverage common devices to easily authenticate to online services in both mobile and desktop…

密码学与安全 · 计算机科学 2023-06-22 Wei-Zhu Yeoh , Michal Kepkowski , Gunnar Heide , Dali Kaafar , Lucjan Hanzlik

We present a method to secure the complete path between a server and the local human user at a network node. This is useful for scenarios like internet banking, electronic signatures, or online voting. Protection of input authenticity and…

密码学与安全 · 计算机科学 2007-05-23 Hanno Langweg , Tommy Kristiansen

The greatest threat in the new generation network which is called ngn is unsafe authentication. Communication between new servers in ngn world is done based on Session Initiation Protocol. SIP is an application layer control operating on…

密码学与安全 · 计算机科学 2012-09-06 Maisam Mohammadian

The Simple Line Access Protocol (SLAP) is an IVOA Data Access protocol which defines a protocol for retrieving spectral lines coming from various Spectral Line Data Collections through a uniform interface within the VO framework. These…

天体物理仪器与方法 · 物理学 2019-05-22 Jesus Salgado , Pedro Osuna , Matteo Guainazzi , Isa Barbarisi , Marie-Lise Dubernet , Doug Tody

In today's enterprise environment, traditional access methods such as Virtual Private Networks (VPNs) and application-specific Single Sign-On (SSO) often fall short when it comes to securely scaling access for a distributed and dynamic…

密码学与安全 · 计算机科学 2025-08-05 Sanjay Singh , Mitendra Mahto

We propose a capability-based access control technique for sharing Web resources, based on Verifiable Credentials (VCs) and OAuth 2.0. VCs are a secure means for expressing claims about a subject. Although VCs are ideal for encoding…

密码学与安全 · 计算机科学 2021-04-30 Nikos Fotiou , Vasilios A. Siris , George C. Polyzos