中文
相关论文

相关论文: SoK: Why Johnny Can't Fix PGP Standardization

200 篇论文

Several end-to-end encryption technologies for emails such as PGP and S/MIME exist since decades. However, end-to-end encryption is barely applied. To understand why users hesitate to secure their email communication and which usability…

密码学与安全 · 计算机科学 2021-10-13 Adrian Reuter , Karima Boudaoud , Marco Winckler , Ahmed Abdelmaksoud , Wadie Lemrazzeq

Using multi group asymmetric public and private keys, this paper proposes a encryption email communication system, which makes email communication more secure, lowers the service provider\'s network and storage consumption, and completely…

密码学与安全 · 计算机科学 2019-02-26 Avanna , Psycho Zhang , Simon Yan , Jonne Mao

This paper presents the results of a laboratory study involving Mailvelope, a modern PGP client that integrates tightly with existing webmail providers. In our study, we brought in pairs of participants and had them attempt to use…

密码学与安全 · 计算机科学 2016-01-15 Scott Ruoti , Jeff Andersen , Daniel Zappala , Kent Seamons

Email cryptography applications often suffer from major problems that prevent their widespread implementation. MEG, or the Mobile Encryption Gateway aims to fix the issues associated with email encryption by ensuring that encryption is easy…

密码学与安全 · 计算机科学 2017-11-08 Gregory B Rehm , Michael Thompson , Brad Busenius , Jennifer Fowler

With the explosion of the public Internet and e-commerce, private computers, and computer networks, if not adequately secured, are increasingly vulnerable to damaging attacks. Hackers, viruses, vindictive employees and even human error all…

密码学与安全 · 计算机科学 2011-10-10 ASN Chakravarthy , A. S. S. D. Toyaza

During today's digital age, emails have become a crucial part of communications for both personal and enterprise usage. However, email transmission protocols were not designed with security in mind, and this has always been a challenge…

密码学与安全 · 计算机科学 2022-08-02 Gabriel Chen , Rick Wanner

Existing end-to-end-encrypted (E2EE) email systems, mainly PGP, have long been evaluated in controlled lab settings. While these studies have exposed usability obstacles for the average user and offer design improvements, there exist users…

密码学与安全 · 计算机科学 2021-04-12 Glencora Borradaile , Kelsy Kretschmer , Michele Gretes , Alexandria LeClerc

While email is the most ubiquitous and interoperable form of online communication today, it was not conceived with strong security guarantees, and the ensuing security enhancements are, by contrast, lacking in both ubiquity and…

密码学与安全 · 计算机科学 2021-10-26 Jeremy Clark , P. C. van Oorschot , Scott Ruoti , Kent Seamons , Daniel Zappala

OpenPGP, an IETF Proposed Standard based on PGP application, has its own Public Key Infrastructure (PKI) architecture which is different from the one based on X.509, another standard from ITU. This paper describes the OpenPGP PKI; the…

计算机与社会 · 计算机科学 2007-05-23 Shinji Yamane , Jiahong Wang , Hironobu Suzuki , Norihisa Segawa , Yuko Murayama

We show practical attacks against OpenPGP and S/MIME encryption and digital signatures in the context of email. Instead of targeting the underlying cryptographic primitives, our attacks abuse legitimate features of the MIME standard and…

密码学与安全 · 计算机科学 2019-04-18 Jens Müller , Marcus Brinkmann , Damian Poddebniak , Sebastian Schinzel , Jörg Schwenk

Emails today are often encrypted, but only between mail servers---the vast majority of emails are exposed in plaintext to the mail servers that handle them. While better than no encryption, this arrangement leaves open the possibility of…

密码学与安全 · 计算机科学 2017-03-01 Trinabh Gupta , Henrique Fingler , Lorenzo Alvisi , Michael Walfish

To send encrypted emails, users typically need to create and exchange keys which later should be manually authenticated, for instance, by comparing long strings of characters. These tasks are cumbersome for the average user. To make more…

密码学与安全 · 计算机科学 2020-09-01 Itzel Vazquez Sandoval , Gabriele Lenzini

End-users are concerned about protecting the privacy of their sensitive personal data that are generated while working on information systems. This extends to both the data they actively provide including personal identification in exchange…

密码学与安全 · 计算机科学 2023-06-21 Pratyush Dikshit , Jayasree Sengupta , Vaibhav Bajpai

PGP is built upon a Distributed Web of Trust in which the trustworthiness of a user is established by others who can vouch through a digital signature for that particular identity. Preventing its wholesale adoption are a number of inherent…

密码学与安全 · 计算机科学 2015-08-24 Duane Wilson , Giuseppe Ateniese

The electronic mail plays an unavoidable role in the humankind communications. With the great interest for the connection via mobile platforms, and the growing number of vulnerabilities and attacks, it is essential to provide suitable…

密码学与安全 · 计算机科学 2012-03-20 M. Toorani

Email is a private medium of communication, and the inherent privacy constraints form a major obstacle in developing effective spam filtering methods which require access to a large amount of email data belonging to multiple users. To…

机器学习 · 计算机科学 2011-09-20 Manas A. Pathak , Mehrbod Sharifi , Bhiksha Raj

The Internet relies on routing protocols to direct traffic efficiently across interconnected networks, with the Border Gateway Protocol (BGP) serving as the core mechanism managing routing between autonomous systems. However, BGP…

密码学与安全 · 计算机科学 2025-11-11 Jaber Daneshamooz , Melody Yu , Sucheer Maddury

The security evaluation for Mail Distribution Systems focuses on certification and reliability of sensitive data between mail servers. The need to certify the information conveyed is a result of known weaknesses in the simple mail transfer…

密码学与安全 · 计算机科学 2014-11-18 Antonis S. Rizopoulos , Dimitrios N. Kallergis , George N. Prezerakos

BGP is the de facto protocol used for inter-autonomous system routing in the Internet. Generally speaking, BGP has been proven to be secure, efficient, scalable, and robust. However, with the rapid evolving of the Internet in the past few…

网络与互联网体系结构 · 计算机科学 2009-07-29 Amit Narayanan

Email spoofing is a critical step of phishing, where the attacker impersonates someone the victim knows or trusts. In this paper, we conduct a qualitative study to explore why email spoofing is still possible after years of efforts to…

密码学与安全 · 计算机科学 2018-02-08 Hang Hu , Peng Peng , Gang Wang
‹ 上一页 1 2 3 10 下一页 ›