Matches in SemOpenAlex for { <https://semopenalex.org/work/W3201294180> ?p ?o ?g. }
Showing items 1 to 69 of
69
with 100 items per page.
- W3201294180 abstract "Modern life increasingly relies upon web applications to provide critical services and infrastructure. Activities of banking, shopping, socializing, entertainment, and even medical record keeping are now primarily conducted using the Internet as a medium and HTTP as a protocol. A critical requirement of these tools is the mechanism by which they authenticate users and prevent transaction replay. Despite more than 20 years of widespread deployment, the de-facto technique for accomplishing these goals is the use of a static session bearer token to authenticate all requests for the lifetime of a user session. In addition, the use of any method to prevent request replay is not in common practice. This thesis presents Session Armor, a protocol which builds upon existing techniques to provide cryptographically-strong per-request authentication with both time-based and optional absolute replay prevention. Session Armor is designed to perform well and to be easily deployed by web application developers. It acts as a layer on top of existing session tokens, so as not to require modification of application logic. In addition to Session Armor, two additional tools are presented, JackHammer, a cross-browser extension that allows developers to quickly discover session hijacking vulnerabilities in their web applications, and SessionJack, a tool for analyzing the security properties of session tokens found on the web. A formal specification of the Session Armor protocol is provided. An implementation of the protocol is included as a Python Django middleware and a Chrome browser extension. Performance data is provided with a comparison to previous methods. A formal validation of secrecy and correspondence properties is presented in the Dolev-Yao model.%%%%M.S., Computer Engineering – Drexel University, 2017" @default.
- W3201294180 created "2021-09-27" @default.
- W3201294180 creator A5040551344 @default.
- W3201294180 date "2017-01-01" @default.
- W3201294180 modified "2023-09-23" @default.
- W3201294180 title "Session Armor: Protection Against Session Hijacking using Per-Request Authentication" @default.
- W3201294180 hasPublicationYear "2017" @default.
- W3201294180 type Work @default.
- W3201294180 sameAs 3201294180 @default.
- W3201294180 citedByCount "0" @default.
- W3201294180 crossrefType "journal-article" @default.
- W3201294180 hasAuthorship W3201294180A5040551344 @default.
- W3201294180 hasConcept C136764020 @default.
- W3201294180 hasConcept C142724271 @default.
- W3201294180 hasConcept C148176105 @default.
- W3201294180 hasConcept C148417208 @default.
- W3201294180 hasConcept C148730421 @default.
- W3201294180 hasConcept C191197275 @default.
- W3201294180 hasConcept C204787440 @default.
- W3201294180 hasConcept C2779182362 @default.
- W3201294180 hasConcept C2780385302 @default.
- W3201294180 hasConcept C38652104 @default.
- W3201294180 hasConcept C41008148 @default.
- W3201294180 hasConcept C41878487 @default.
- W3201294180 hasConcept C48145219 @default.
- W3201294180 hasConcept C71924100 @default.
- W3201294180 hasConcept C93996380 @default.
- W3201294180 hasConceptScore W3201294180C136764020 @default.
- W3201294180 hasConceptScore W3201294180C142724271 @default.
- W3201294180 hasConceptScore W3201294180C148176105 @default.
- W3201294180 hasConceptScore W3201294180C148417208 @default.
- W3201294180 hasConceptScore W3201294180C148730421 @default.
- W3201294180 hasConceptScore W3201294180C191197275 @default.
- W3201294180 hasConceptScore W3201294180C204787440 @default.
- W3201294180 hasConceptScore W3201294180C2779182362 @default.
- W3201294180 hasConceptScore W3201294180C2780385302 @default.
- W3201294180 hasConceptScore W3201294180C38652104 @default.
- W3201294180 hasConceptScore W3201294180C41008148 @default.
- W3201294180 hasConceptScore W3201294180C41878487 @default.
- W3201294180 hasConceptScore W3201294180C48145219 @default.
- W3201294180 hasConceptScore W3201294180C71924100 @default.
- W3201294180 hasConceptScore W3201294180C93996380 @default.
- W3201294180 hasLocation W32012941801 @default.
- W3201294180 hasOpenAccess W3201294180 @default.
- W3201294180 hasPrimaryLocation W32012941801 @default.
- W3201294180 hasRelatedWork W1526451056 @default.
- W3201294180 hasRelatedWork W1576756415 @default.
- W3201294180 hasRelatedWork W1943936710 @default.
- W3201294180 hasRelatedWork W2041683343 @default.
- W3201294180 hasRelatedWork W2102154514 @default.
- W3201294180 hasRelatedWork W2104923026 @default.
- W3201294180 hasRelatedWork W2165433201 @default.
- W3201294180 hasRelatedWork W219436511 @default.
- W3201294180 hasRelatedWork W2221384540 @default.
- W3201294180 hasRelatedWork W2742239645 @default.
- W3201294180 hasRelatedWork W2779181417 @default.
- W3201294180 hasRelatedWork W2920589200 @default.
- W3201294180 hasRelatedWork W3097800760 @default.
- W3201294180 hasRelatedWork W3195297407 @default.
- W3201294180 hasRelatedWork W81100100 @default.
- W3201294180 hasRelatedWork W1534842569 @default.
- W3201294180 hasRelatedWork W2104888936 @default.
- W3201294180 hasRelatedWork W2279382410 @default.
- W3201294180 hasRelatedWork W2857154489 @default.
- W3201294180 hasRelatedWork W3203978661 @default.
- W3201294180 isParatext "false" @default.
- W3201294180 isRetracted "false" @default.
- W3201294180 magId "3201294180" @default.
- W3201294180 workType "article" @default.