Towards automated formal security analysis of SAML V2.0 Web Browser SSO standard -- the POST/Artifact use case
Fuente:
arXiv
Saved in:
| Main Authors: | Hartl, Zvonimir, Đerek, Ante |
|---|---|
| Format: | Preprint |
| Published: |
2024
|
| Subjects: | |
| Online Access: | |
| Tags: |
Add Tag
No Tags, Be the first to tag this record!
|
Similar Items
"Sign in with ... Privacy'': Timely Disclosure of Privacy Differences among Web SSO Login Options
by: Morkonda, Srivathsan G., et al.
Published: (2022)
by: Morkonda, Srivathsan G., et al.
Published: (2022)
Browser Fingerprinting Using WebAssembly
by: Guri, Mordechai, et al.
Published: (2025)
by: Guri, Mordechai, et al.
Published: (2025)
Reducing Usefulness of Stolen Credentials in SSO Contexts
by: Hays, Sam, et al.
Published: (2024)
by: Hays, Sam, et al.
Published: (2024)
WAAA! Web Adversaries Against Agentic Browsers
by: Datta, Sohom, et al.
Published: (2026)
by: Datta, Sohom, et al.
Published: (2026)
User Profiles: The Achilles' Heel of Web Browsers
by: Somé, Dolière Francis, et al.
Published: (2025)
by: Somé, Dolière Francis, et al.
Published: (2025)
Least Privilege Access for Persistent Storage Mechanisms in Web Browsers
by: Kancherla, Gayatri Priyadarsini, et al.
Published: (2024)
by: Kancherla, Gayatri Priyadarsini, et al.
Published: (2024)
Understanding the Identity-Transformation Approach in OIDC-Compatible Privacy-Preserving SSO Services
by: Lin, Jingqiang, et al.
Published: (2025)
by: Lin, Jingqiang, et al.
Published: (2025)
Advancing Web Browser Forensics: Critical Evaluation of Emerging Tools and Techniques
by: Chand, Rishal Ravikesh, et al.
Published: (2024)
by: Chand, Rishal Ravikesh, et al.
Published: (2024)
What is in the Chrome Web Store? Investigating Security-Noteworthy Browser Extensions
by: Hsu, Sheryl, et al.
Published: (2024)
by: Hsu, Sheryl, et al.
Published: (2024)
Formal Security Analysis of the AMD SEV-SNP Software Interface
by: Paradžik, Petar, et al.
Published: (2024)
by: Paradžik, Petar, et al.
Published: (2024)
Passwords and FIDO2 Are Meant To Be Secret: A Practical Secure Authentication Channel for Web Browsers
by: Gautam, Anuj, et al.
Published: (2025)
by: Gautam, Anuj, et al.
Published: (2025)
Passwords Are Meant to Be Secret: A Practical Secure Password Entry Channel for Web Browsers
by: Gautam, Anuj, et al.
Published: (2024)
by: Gautam, Anuj, et al.
Published: (2024)
Towards Browser Controls to Protect Cookies from Malicious Extensions
by: Tyler, Liam, et al.
Published: (2024)
by: Tyler, Liam, et al.
Published: (2024)
PP3D: An In-Browser Vision-Based Defense Against Web Behavior Manipulation Attacks
by: King, Spencer, et al.
Published: (2025)
by: King, Spencer, et al.
Published: (2025)
Manifest V3 Unveiled: Navigating the New Era of Browser Extensions
by: Pantelaios, Nikolaos, et al.
Published: (2024)
by: Pantelaios, Nikolaos, et al.
Published: (2024)
WALLETRADAR: Towards Automating the Detection of Vulnerabilities in Browser-based Cryptocurrency Wallets
by: Xia, Pengcheng, et al.
Published: (2024)
by: Xia, Pengcheng, et al.
Published: (2024)
Next Generation of Phishing Attacks using AI powered Browsers
by: Arun, Akshaya, et al.
Published: (2024)
by: Arun, Akshaya, et al.
Published: (2024)
Privacy Practices of Browser Agents
by: Ukani, Alisha, et al.
Published: (2025)
by: Ukani, Alisha, et al.
Published: (2025)
Security Testing Framework for Web Applications: Benchmarking ZAP V2.12.0 and V2.13.0 by OWASP as an example
by: Potti, Usha-Sri, et al.
Published: (2025)
by: Potti, Usha-Sri, et al.
Published: (2025)
Did I Vet You Before? Assessing the Chrome Web Store Vetting Process through Browser Extension Similarity
by: Moreno, José Miguel, et al.
Published: (2024)
by: Moreno, José Miguel, et al.
Published: (2024)
WebTrap: Stealthy Mid-Task Hijacking of Browser Agents During Navigation
by: Liu, Zhichao, et al.
Published: (2026)
by: Liu, Zhichao, et al.
Published: (2026)
Browser Fingerprint Detection and Anti-Tracking
by: Lin, Kaitong, et al.
Published: (2025)
by: Lin, Kaitong, et al.
Published: (2025)
Byte by Byte: Unmasking Browser Fingerprinting at the Function Level Using V8 Bytecode Transformers
by: Bahrami, Pouneh Nikkhah, et al.
Published: (2025)
by: Bahrami, Pouneh Nikkhah, et al.
Published: (2025)
A Study on Malicious Browser Extensions in 2025
by: Singh, Shreya, et al.
Published: (2025)
by: Singh, Shreya, et al.
Published: (2025)
The Auth Shim: A Lightweight Architectural Pattern for Integrating Enterprise SSO with Standalone Open-Source Applications
by: Agrawal, Yuvraj
Published: (2025)
by: Agrawal, Yuvraj
Published: (2025)
Beyond SSO: Mobile Money Authentication for Inclusive e-Government in Sub-Saharan Africa
by: Adewusi, Oluwole, et al.
Published: (2025)
by: Adewusi, Oluwole, et al.
Published: (2025)
Exemplifying Emerging Phishing: QR-based Browser-in-The-Browser (BiTB) Attack
by: Akram, Muhammad Wahid, et al.
Published: (2025)
by: Akram, Muhammad Wahid, et al.
Published: (2025)
Toward Web 4.0: Bidirectional Trust between AI Agents and Blockchain
by: Xia, Yunfeng, et al.
Published: (2026)
by: Xia, Yunfeng, et al.
Published: (2026)
The First Early Evidence of the Use of Browser Fingerprinting for Online Tracking
by: Liu, Zengrui, et al.
Published: (2024)
by: Liu, Zengrui, et al.
Published: (2024)
Towards a DSL for hybrid secure computation
by: de Laage, Romain
Published: (2025)
by: de Laage, Romain
Published: (2025)
PenTest2.0: Towards Autonomous Privilege Escalation Using GenAI
by: Al-Sinani, Haitham S., et al.
Published: (2025)
by: Al-Sinani, Haitham S., et al.
Published: (2025)
In-Browser LLM-Guided Fuzzing for Real-Time Prompt Injection Testing in Agentic AI Browsers
by: Cohen, Avihay
Published: (2025)
by: Cohen, Avihay
Published: (2025)
PQC standards alternatives -- reliable semantically secure key encapsulation mechanism and digital signature protocols using the rank-deficient matrix power function
by: Hecht, Juan Pedro, et al.
Published: (2026)
by: Hecht, Juan Pedro, et al.
Published: (2026)
Browser Security Posture Analysis: A Client-Side Security Assessment Framework
by: Cohen, Avihay
Published: (2025)
by: Cohen, Avihay
Published: (2025)
WalletProbe: A Testing Framework for Browser-based Cryptocurrency Wallet Extensions
by: Hu, Xiaohui, et al.
Published: (2025)
by: Hu, Xiaohui, et al.
Published: (2025)
PriveShield: Enhancing User Privacy Using Automatic Isolated Profiles in Browsers
by: Akhavani, Seyed Ali, et al.
Published: (2025)
by: Akhavani, Seyed Ali, et al.
Published: (2025)
Client-Side Zero-Shot LLM Inference for Comprehensive In-Browser URL Analysis
by: Cohen, Avihay
Published: (2025)
by: Cohen, Avihay
Published: (2025)
Towards a standardized methodology and dataset for evaluating LLM-based digital forensic timeline analysis
by: Studiawan, Hudan, et al.
Published: (2025)
by: Studiawan, Hudan, et al.
Published: (2025)
The WASM Cloak: Evaluating Browser Fingerprinting Defenses Under WebAssembly based Obfuscation
by: Sakib, A H M Nazmus, et al.
Published: (2025)
by: Sakib, A H M Nazmus, et al.
Published: (2025)
Fingerprinting Browsers in Encrypted Communications
by: Aneja, Sandhya, et al.
Published: (2024)
by: Aneja, Sandhya, et al.
Published: (2024)
Similar Items
-
"Sign in with ... Privacy'': Timely Disclosure of Privacy Differences among Web SSO Login Options
by: Morkonda, Srivathsan G., et al.
Published: (2022) -
Browser Fingerprinting Using WebAssembly
by: Guri, Mordechai, et al.
Published: (2025) -
Reducing Usefulness of Stolen Credentials in SSO Contexts
by: Hays, Sam, et al.
Published: (2024) -
WAAA! Web Adversaries Against Agentic Browsers
by: Datta, Sohom, et al.
Published: (2026) -
User Profiles: The Achilles' Heel of Web Browsers
by: Somé, Dolière Francis, et al.
Published: (2025)