中文
相关论文

相关论文: On the Security of SSH Client Signatures

200 篇论文

As Internet users have become more savvy about the potential for their Internet communication to be observed, the use of network traffic encryption technologies (e.g., HTTPS/TLS) is on the rise. However, even when encryption is enabled,…

密码学与安全 · 计算机科学 2020-07-09 Nguyen Phong Hoang , Arian Akhavan Niaki , Nikita Borisov , Phillipa Gill , Michalis Polychronakis

Port scanning is the process of attempting to connect to various network ports on a computing endpoint to determine which ports are open and which services are running on them. It is a common method used by hackers to identify…

密码学与安全 · 计算机科学 2023-02-01 Jason M. Pittman

While Ethereum's discovery protocols (Discv4/ Discv5) incorporate robust cryptographic designs to protect user privacy, real-world deployment reveals critical vulnerabilities when users deviate from security guidelines. In this paper, we…

密码学与安全 · 计算机科学 2025-07-03 Chenyu Li , Xueping Liang , Xiaorui Gong , Xiu Zhang

Risk-based authentication (RBA) aims to protect users against attacks involving stolen passwords. RBA monitors features during login, and requests re-authentication when feature values widely differ from previously observed ones. It is…

密码学与安全 · 计算机科学 2022-11-11 Stephan Wiefling , Paul René Jørgensen , Sigurd Thunem , Luigi Lo Iacono

Smart metering infrastructure (SMI) is the core component of the smart grid (SG) which enables two-way communication between consumers and utility companies to control, monitor, and manage the energy consumption data. Despite their salient…

网络与互联网体系结构 · 计算机科学 2019-07-23 Sahil Garg , Kuljeet Kaur , Georges Kaddoum , François Gagnon , Syed Hassan Ahmed , Dushantha Nalin K. Jayakody

The emergence of quantum computers poses a significant threat to current secure service, application and/or protocol implementations that rely on RSA and ECDSA algorithms, for instance DNSSEC, because public-key cryptography based on number…

密码学与安全 · 计算机科学 2025-07-15 Julio Gento Suela , Javier Blanco-Romero , Florina Almenares Mendoza , Daniel Díaz-Sánchez

This paper investigates the information-theoretic decentralized secure aggregation (DSA) problem under practical groupwise secret keys and collusion resilience. In DSA, $K$ users are interconnected through error-free broadcast channels.…

信息论 · 计算机科学 2025-11-19 Zhou Li , Xiang Zhang , Yizhou Zhao , Haiqiang Chen , Jihao Fan , Giuseppe Caire

Source-independent quantum secret sharing (SI QSS), while essential for secure multiuser cryptographic operations in quantum networks, faces significant implementation challenges stemming from the inherent complexity of generating and…

量子物理 · 物理学 2025-12-23 Yi-Ran Xiao , Hua-Lei Yin , Wen-Ji Hua , Xiao-Yu Cao , Zeng-Bing Chen

Researchers have extensively explored how password creation policies influence the security and usability of user-chosen passwords, producing evidence-based policy guidelines. However, for web authentication to improve in practice, websites…

密码学与安全 · 计算机科学 2023-09-08 Suood Alroomi , Frank Li

Passkeys -- discoverable WebAuthn credentials synchronised across devices are widely promoted as the future of passwordless authentication. Built on the FIDO2 standard, they eliminate shared secrets and resist phishing while offering…

密码学与安全 · 计算机科学 2026-03-23 Prince Bhardwaj , Nishanth Sastry

As privacy features in Android operating system improve, privacy-invasive apps may gradually shift their focus to non-standard and covert channels for leaking private user/device information. Such leaks also remain largely undetected by…

密码学与安全 · 计算机科学 2022-10-03 Sajjad Pourali , Nayanamana Samarasinghe , Mohammad Mannan

Existing fuzzy extractors and similar methods provide an effective way for extracting a secret key from a user's biometric data, but are susceptible to impersonation attack: once a valid biometric sample is captured, the scheme is no longer…

密码学与安全 · 计算机科学 2024-05-21 Hong Yen Tran , Jiankun Hu , Wen Hu

In recent years, the importance of smart contract security has been heightened by the increasing number of attacks against them. To address this issue, a multitude of static application security testing (SAST) tools have been proposed for…

软件工程 · 计算机科学 2024-07-02 Kaixuan Li , Yue Xue , Sen Chen , Han Liu , Kairan Sun , Ming Hu , Haijun Wang , Yang Liu , Yixiang Chen

Despite its ever-increasing impact, security is not considered as a design objective in commercial electronic design automation (EDA) tools. This results in vulnerabilities being overlooked during the software-hardware design process.…

密码学与安全 · 计算机科学 2023-08-08 Lennart M. Reimann , Jonathan Wiesner , Dominik Sisejkovic , Farhad Merchant , Rainer Leupers

The ability to hide information from unauthorized individuals has been a prevalent issue over the years. Countless algorithms such as DES, AES and SHA have been developed. These algorithms depend on varying key length and key management…

密码学与安全 · 计算机科学 2012-09-14 Samuel King Opoku

The Software Supply Chain (SSC) has captured considerable attention from attackers seeking to infiltrate systems and undermine organizations. There is evidence indicating that adversaries utilize Social Engineering (SocE) techniques…

Password authentication suffers from the well-known tradeoff between security and usability. Secure passwords are difficult for users to remember, and memorable passwords are often easy to guess. SPARse Two-dimensional AuthenticatioN…

密码学与安全 · 计算机科学 2019-05-22 Sarah C. Helble , Alexander J. Gartner , Jennifer A. McKneely

The advent of quantum computing poses a significant challenge as it has the potential to break certain cryptographic algorithms, necessitating a proactive approach to identify and modernize cryptographic code. Identifying these…

密码学与安全 · 计算机科学 2025-03-26 Micha Moffie , Omer Boehm , Anatoly Koyfman , Eyal Bin , Efrayim Sztokman , Sukanta Bhattacharjee , Meghnath Saha , James McGugan

The first step of a secure communication is authenticating legible users and detecting the malicious ones. In the last recent years, some promising schemes proposed using wireless medium network's features, in particular, channel state…

网络与互联网体系结构 · 计算机科学 2018-12-18 Amirhossein Yazdani Abyaneh , Ali Hosein Gharari Foumani , Vahid Pourahmadi

We introduce GOTCHAs (Generating panOptic Turing Tests to Tell Computers and Humans Apart) as a way of preventing automated offline dictionary attacks against user selected passwords. A GOTCHA is a randomized puzzle generation protocol,…

密码学与安全 · 计算机科学 2013-10-07 Jeremiah Blocki , Manuel Blum , Anupam Datta