CTRAPS: CTAP Client Impersonation and API Confusion on FIDO2
Fuente:
arXiv
Gespeichert in:
| Hauptverfasser: | Casagrande, Marco, Antonioli, Daniele |
|---|---|
| Format: | Preprint |
| Veröffentlicht: |
2024
|
| Schlagworte: | |
| Online-Zugang: | |
| Tags: |
Tag hinzufügen
Keine Tags, Fügen Sie den ersten Tag hinzu!
|
Ähnliche Einträge
E-Trojans: Ransomware, Tracking, DoS, and Data Leaks on Battery-powered Embedded Systems
von: Casagrande, Marco, et al.
Veröffentlicht: (2024)
von: Casagrande, Marco, et al.
Veröffentlicht: (2024)
EAP-FIDO: A Novel EAP Method for Using FIDO2 Credentials for Network Authentication
von: Rivera-Dourado, Martiño, et al.
Veröffentlicht: (2024)
von: Rivera-Dourado, Martiño, et al.
Veröffentlicht: (2024)
An Analysis of Attack Vectors Against FIDO2 Authentication
von: Berladskyy, Alexander, et al.
Veröffentlicht: (2026)
von: Berladskyy, Alexander, et al.
Veröffentlicht: (2026)
Passwords and FIDO2 Are Meant To Be Secret: A Practical Secure Authentication Channel for Web Browsers
von: Gautam, Anuj, et al.
Veröffentlicht: (2025)
von: Gautam, Anuj, et al.
Veröffentlicht: (2025)
Leveraging Angle of Arrival Estimation against Impersonation Attacks in Physical Layer Authentication
von: Pham, Thuy M., et al.
Veröffentlicht: (2025)
von: Pham, Thuy M., et al.
Veröffentlicht: (2025)
The Qey: Implementation and performance study of post quantum cryptography in FIDO2
von: Mitra, Aditya, et al.
Veröffentlicht: (2025)
von: Mitra, Aditya, et al.
Veröffentlicht: (2025)
QES-Backed Virtual FIDO2 Authenticators: Architectural Options for Secure, Synchronizable WebAuthn Credentials
von: Bicakci, Kemal, et al.
Veröffentlicht: (2026)
von: Bicakci, Kemal, et al.
Veröffentlicht: (2026)
Cryptographic Binding Should Not Be Optional: A Formal-Methods Analysis of FIDO UAF Channel Binding
von: Golaszewski, Enis, et al.
Veröffentlicht: (2025)
von: Golaszewski, Enis, et al.
Veröffentlicht: (2025)
Collusion-Driven Impersonation Attack on Channel-Resistant RF Fingerprinting
von: Xu, Zhou, et al.
Veröffentlicht: (2025)
von: Xu, Zhou, et al.
Veröffentlicht: (2025)
Conceptual Design and Implementation of FIDO2 compatible Smart Card for Decentralized Financial Transaction System
von: Ghosh, Anisha, et al.
Veröffentlicht: (2024)
von: Ghosh, Anisha, et al.
Veröffentlicht: (2024)
Impersonating Quantum Secrets over Classical Channels
von: Qian, Luowen, et al.
Veröffentlicht: (2026)
von: Qian, Luowen, et al.
Veröffentlicht: (2026)
AoA-Based Physical Layer Authentication in Analog Arrays under Impersonation Attacks
von: Srinivasan, Muralikrishnan, et al.
Veröffentlicht: (2024)
von: Srinivasan, Muralikrishnan, et al.
Veröffentlicht: (2024)
Scores Know Bobs Voice: Speaker Impersonation Attack
von: Hwang, Chanwoo, et al.
Veröffentlicht: (2026)
von: Hwang, Chanwoo, et al.
Veröffentlicht: (2026)
API Security Based on Automatic OpenAPI Mapping
von: Levi, Yarin, et al.
Veröffentlicht: (2026)
von: Levi, Yarin, et al.
Veröffentlicht: (2026)
A Novel Protocol Using Captive Portals for FIDO2 Network Authentication
von: Rivera-Dourado, Martiño, et al.
Veröffentlicht: (2024)
von: Rivera-Dourado, Martiño, et al.
Veröffentlicht: (2024)
ConfusedPilot: Confused Deputy Risks in RAG-based LLMs
von: RoyChowdhury, Ayush, et al.
Veröffentlicht: (2024)
von: RoyChowdhury, Ayush, et al.
Veröffentlicht: (2024)
SimProcess: High Fidelity Simulation of Noisy ICS Physical Processes
von: Donadel, Denis, et al.
Veröffentlicht: (2025)
von: Donadel, Denis, et al.
Veröffentlicht: (2025)
The Privacy-Utility Trade-off in the Topics API
von: Alvim, Mário S., et al.
Veröffentlicht: (2024)
von: Alvim, Mário S., et al.
Veröffentlicht: (2024)
Exploiting PendingIntent Provenance Confusion to Spoof Android SDK Authentication
von: Khinda, Ramanpreet Singh
Veröffentlicht: (2026)
von: Khinda, Ramanpreet Singh
Veröffentlicht: (2026)
Unpacking .zip: A First Look at Domain and File Name Confusion
von: Despotovic, Predrag, et al.
Veröffentlicht: (2026)
von: Despotovic, Predrag, et al.
Veröffentlicht: (2026)
Designing Robust API Monitoring Solutions
von: D'Elia, Daniele Cono, et al.
Veröffentlicht: (2020)
von: D'Elia, Daniele Cono, et al.
Veröffentlicht: (2020)
Unconditionally Safe Light Client
von: Moshrefi, Niusha, et al.
Veröffentlicht: (2024)
von: Moshrefi, Niusha, et al.
Veröffentlicht: (2024)
On the Security of SSH Client Signatures
von: Bäumer, Fabian, et al.
Veröffentlicht: (2025)
von: Bäumer, Fabian, et al.
Veröffentlicht: (2025)
Client-Cooperative Split Learning
von: Deng, Haiyu, et al.
Veröffentlicht: (2026)
von: Deng, Haiyu, et al.
Veröffentlicht: (2026)
Light Clients for Lazy Blockchains
von: Tas, Ertem Nusret, et al.
Veröffentlicht: (2022)
von: Tas, Ertem Nusret, et al.
Veröffentlicht: (2022)
Speed Kills: Exploring Confused Deputy Attacks Through Edge AI Accelerators
von: Danduri, Datta Manikanta Sri Hari, et al.
Veröffentlicht: (2026)
von: Danduri, Datta Manikanta Sri Hari, et al.
Veröffentlicht: (2026)
Generating API Parameter Security Rules with LLM for API Misuse Detection
von: Liu, Jinghua, et al.
Veröffentlicht: (2024)
von: Liu, Jinghua, et al.
Veröffentlicht: (2024)
RoBERTa-Augmented Synthesis for Detecting Malicious API Requests
von: Aharon, Udi, et al.
Veröffentlicht: (2024)
von: Aharon, Udi, et al.
Veröffentlicht: (2024)
A Public and Reproducible Assessment of the Topics API on Real Data
von: Beugin, Yohan, et al.
Veröffentlicht: (2024)
von: Beugin, Yohan, et al.
Veröffentlicht: (2024)
Malware Detection based on API Calls: A Reproducibility Study
von: Merilehto, Juhani
Veröffentlicht: (2026)
von: Merilehto, Juhani
Veröffentlicht: (2026)
Demystifying Feature Engineering in Malware Analysis of API Call Sequences
von: Qu, Tianheng, et al.
Veröffentlicht: (2025)
von: Qu, Tianheng, et al.
Veröffentlicht: (2025)
Security Analysis of the Open Banking Account and Transaction API Protocol
von: Modesti, Paolo, et al.
Veröffentlicht: (2020)
von: Modesti, Paolo, et al.
Veröffentlicht: (2020)
TÄMU: Emulating Trusted Applications at the (GlobalPlatform)-API Layer
von: Mao, Philipp, et al.
Veröffentlicht: (2026)
von: Mao, Philipp, et al.
Veröffentlicht: (2026)
EDEFuzz: A Web API Fuzzer for Excessive Data Exposures
von: Pan, Lianglu, et al.
Veröffentlicht: (2023)
von: Pan, Lianglu, et al.
Veröffentlicht: (2023)
I'm Spartacus, No, I'm Spartacus: Measuring and Understanding LLM Identity Confusion
von: Li, Kun, et al.
Veröffentlicht: (2024)
von: Li, Kun, et al.
Veröffentlicht: (2024)
Confused ChatGPT: Cross-App Context Poisoning via First-Party APIs
von: Wang, Chao, et al.
Veröffentlicht: (2026)
von: Wang, Chao, et al.
Veröffentlicht: (2026)
The Midas Touch: Triggering the Capability of LLMs for RM-API Misuse Detection
von: Yang, Yi, et al.
Veröffentlicht: (2024)
von: Yang, Yi, et al.
Veröffentlicht: (2024)
Secure and Governed API Gateway Architectures for Multi-Cluster Cloud Environments
von: Punniyamoorthy, Vinoth, et al.
Veröffentlicht: (2025)
von: Punniyamoorthy, Vinoth, et al.
Veröffentlicht: (2025)
SLIM: Stealthy Low-Coverage Black-Box Watermarking via Latent-Space Confusion Zones
von: Wu, Hengyu, et al.
Veröffentlicht: (2026)
von: Wu, Hengyu, et al.
Veröffentlicht: (2026)
Practical Light Clients for Committee-Based Blockchains
von: Armknecht, Frederik, et al.
Veröffentlicht: (2024)
von: Armknecht, Frederik, et al.
Veröffentlicht: (2024)
Ähnliche Einträge
-
E-Trojans: Ransomware, Tracking, DoS, and Data Leaks on Battery-powered Embedded Systems
von: Casagrande, Marco, et al.
Veröffentlicht: (2024) -
EAP-FIDO: A Novel EAP Method for Using FIDO2 Credentials for Network Authentication
von: Rivera-Dourado, Martiño, et al.
Veröffentlicht: (2024) -
An Analysis of Attack Vectors Against FIDO2 Authentication
von: Berladskyy, Alexander, et al.
Veröffentlicht: (2026) -
Passwords and FIDO2 Are Meant To Be Secret: A Practical Secure Authentication Channel for Web Browsers
von: Gautam, Anuj, et al.
Veröffentlicht: (2025) -
Leveraging Angle of Arrival Estimation against Impersonation Attacks in Physical Layer Authentication
von: Pham, Thuy M., et al.
Veröffentlicht: (2025)