Passwords and FIDO2 Are Meant To Be Secret: A Practical Secure Authentication Channel for Web Browsers
Fuente:
arXiv
Saved in:
| Main Authors: | Gautam, Anuj, Yadav, Tarun, Smith, Garrett, Seamons, Kent, Ruoti, Scott |
|---|---|
| Format: | Preprint |
| Published: |
2025
|
| Subjects: | |
| Online Access: | |
| Tags: |
Add Tag
No Tags, Be the first to tag this record!
|
Similar Items
Passwords Are Meant to Be Secret: A Practical Secure Password Entry Channel for Web Browsers
by: Gautam, Anuj, et al.
Published: (2024)
by: Gautam, Anuj, et al.
Published: (2024)
QES-Backed Virtual FIDO2 Authenticators: Architectural Options for Secure, Synchronizable WebAuthn Credentials
by: Bicakci, Kemal, et al.
Published: (2026)
by: Bicakci, Kemal, et al.
Published: (2026)
EAP-FIDO: A Novel EAP Method for Using FIDO2 Credentials for Network Authentication
by: Rivera-Dourado, Martiño, et al.
Published: (2024)
by: Rivera-Dourado, Martiño, et al.
Published: (2024)
An Analysis of Attack Vectors Against FIDO2 Authentication
by: Berladskyy, Alexander, et al.
Published: (2026)
by: Berladskyy, Alexander, et al.
Published: (2026)
The Emperor is Now Clothed: A Secure Governance Framework for Web User Authentication through Password Managers
by: Cherry, Ali, et al.
Published: (2024)
by: Cherry, Ali, et al.
Published: (2024)
Understanding Student Experiences with TLS Client Authentication
by: Shittu, Abubakar Sadiq, et al.
Published: (2026)
by: Shittu, Abubakar Sadiq, et al.
Published: (2026)
Ocassionally Secure: A Comparative Analysis of Code Generation Assistants
by: Elgedawy, Ran, et al.
Published: (2024)
by: Elgedawy, Ran, et al.
Published: (2024)
What is in the Chrome Web Store? Investigating Security-Noteworthy Browser Extensions
by: Hsu, Sheryl, et al.
Published: (2024)
by: Hsu, Sheryl, et al.
Published: (2024)
Systematic Solutions to Login and Authentication Security Problems: A Dual-Password Login-Authentication Mechanism
by: Borjigin, Suyun
Published: (2024)
by: Borjigin, Suyun
Published: (2024)
Cryptographic Binding Should Not Be Optional: A Formal-Methods Analysis of FIDO UAF Channel Binding
by: Golaszewski, Enis, et al.
Published: (2025)
by: Golaszewski, Enis, et al.
Published: (2025)
A Novel Protocol Using Captive Portals for FIDO2 Network Authentication
by: Rivera-Dourado, Martiño, et al.
Published: (2024)
by: Rivera-Dourado, Martiño, et al.
Published: (2024)
A Study on Malicious Browser Extensions in 2025
by: Singh, Shreya, et al.
Published: (2025)
by: Singh, Shreya, et al.
Published: (2025)
System Password Security: Attack and Defense Mechanisms
by: Shi, Chaofang, et al.
Published: (2025)
by: Shi, Chaofang, et al.
Published: (2025)
CTRAPS: CTAP Client Impersonation and API Confusion on FIDO2
by: Casagrande, Marco, et al.
Published: (2024)
by: Casagrande, Marco, et al.
Published: (2024)
Browser Fingerprinting Using WebAssembly
by: Guri, Mordechai, et al.
Published: (2025)
by: Guri, Mordechai, et al.
Published: (2025)
The Cognitive Firewall:Securing Browser Based AI Agents Against Indirect Prompt Injection Via Hybrid Edge Cloud Defense
by: Lan, Qianlong, et al.
Published: (2026)
by: Lan, Qianlong, et al.
Published: (2026)
Privacy Practices of Browser Agents
by: Ukani, Alisha, et al.
Published: (2025)
by: Ukani, Alisha, et al.
Published: (2025)
On the Account Security Risks Posed by Password Strength Meters
by: Xu, Ming, et al.
Published: (2025)
by: Xu, Ming, et al.
Published: (2025)
User Profiles: The Achilles' Heel of Web Browsers
by: Somé, Dolière Francis, et al.
Published: (2025)
by: Somé, Dolière Francis, et al.
Published: (2025)
WAAA! Web Adversaries Against Agentic Browsers
by: Datta, Sohom, et al.
Published: (2026)
by: Datta, Sohom, et al.
Published: (2026)
Is It Really You Who Forgot the Password? When Account Recovery Meets Risk-Based Authentication
by: Büttner, Andre, et al.
Published: (2024)
by: Büttner, Andre, et al.
Published: (2024)
A Secure Remote Password Protocol From The Learning With Errors Problem
by: Li, Huapeng, et al.
Published: (2025)
by: Li, Huapeng, et al.
Published: (2025)
Conditional Encryption with Applications to Secure Personalized Password Typo Correction
by: Ameri, Mohammad Hassan, et al.
Published: (2024)
by: Ameri, Mohammad Hassan, et al.
Published: (2024)
Vehicular Communication Security: Multi-Channel and Multi-Factor Authentication
by: De Vincenzi, Marco, et al.
Published: (2025)
by: De Vincenzi, Marco, et al.
Published: (2025)
MoPE: A Mixture of Password Experts for Improving Password Guessing
by: Duan, Mingjian, et al.
Published: (2025)
by: Duan, Mingjian, et al.
Published: (2025)
Secure Password Generator Based on Secure Pseudo-Random Number Generator
by: Chen, Abel C. H.
Published: (2025)
by: Chen, Abel C. H.
Published: (2025)
Browser Security Posture Analysis: A Client-Side Security Assessment Framework
by: Cohen, Avihay
Published: (2025)
by: Cohen, Avihay
Published: (2025)
Least Privilege Access for Persistent Storage Mechanisms in Web Browsers
by: Kancherla, Gayatri Priyadarsini, et al.
Published: (2024)
by: Kancherla, Gayatri Priyadarsini, et al.
Published: (2024)
AdaptAuth: Multi-Layered Behavioral and Credential Analysis for a Secure and Adaptive Authentication Framework for Password Security
by: Ghosh, Tonmoy
Published: (2025)
by: Ghosh, Tonmoy
Published: (2025)
CallShield: Secure Caller Authentication over Real-Time Audio Channels
by: Rabh, Mouna, et al.
Published: (2026)
by: Rabh, Mouna, et al.
Published: (2026)
Advancing Web Browser Forensics: Critical Evaluation of Emerging Tools and Techniques
by: Chand, Rishal Ravikesh, et al.
Published: (2024)
by: Chand, Rishal Ravikesh, et al.
Published: (2024)
The Qey: Implementation and performance study of post quantum cryptography in FIDO2
by: Mitra, Aditya, et al.
Published: (2025)
by: Mitra, Aditya, et al.
Published: (2025)
Secret-Key Agreement Using Physical Identifiers for Degraded and Less Noisy Authentication Channels
by: Yachongka, Vamoua, et al.
Published: (2022)
by: Yachongka, Vamoua, et al.
Published: (2022)
Wiretapped Commitment over Binary Channels
by: Yadav, Anuj Kumar, et al.
Published: (2024)
by: Yadav, Anuj Kumar, et al.
Published: (2024)
Analysis of Commit Signing on Github
by: Shittu, Abubakar Sadiq, et al.
Published: (2026)
by: Shittu, Abubakar Sadiq, et al.
Published: (2026)
Behavioral Authentication for Security and Safety
by: Wang, Cheng, et al.
Published: (2023)
by: Wang, Cheng, et al.
Published: (2023)
Noise-Based Authentication: Is It Secure?
by: Flanery, Sarah A., et al.
Published: (2024)
by: Flanery, Sarah A., et al.
Published: (2024)
Optimizing Password Cracking for Digital Investigations
by: Hachem, Mohamad, et al.
Published: (2025)
by: Hachem, Mohamad, et al.
Published: (2025)
The Impact of Exposed Passwords on Honeyword Efficacy
by: Huang, Zonghao, et al.
Published: (2023)
by: Huang, Zonghao, et al.
Published: (2023)
Stochastic Training for Side-Channel Resilient AI
by: Dubey, Anuj, et al.
Published: (2025)
by: Dubey, Anuj, et al.
Published: (2025)
Similar Items
-
Passwords Are Meant to Be Secret: A Practical Secure Password Entry Channel for Web Browsers
by: Gautam, Anuj, et al.
Published: (2024) -
QES-Backed Virtual FIDO2 Authenticators: Architectural Options for Secure, Synchronizable WebAuthn Credentials
by: Bicakci, Kemal, et al.
Published: (2026) -
EAP-FIDO: A Novel EAP Method for Using FIDO2 Credentials for Network Authentication
by: Rivera-Dourado, Martiño, et al.
Published: (2024) -
An Analysis of Attack Vectors Against FIDO2 Authentication
by: Berladskyy, Alexander, et al.
Published: (2026) -
The Emperor is Now Clothed: A Secure Governance Framework for Web User Authentication through Password Managers
by: Cherry, Ali, et al.
Published: (2024)