发新话题
打印

[转载]锁定Cookies:Web安全验证 防范网钓和active攻击(英文资料)

[转载]锁定Cookies:Web安全验证 防范网钓和active攻击(英文资料)

原始链接:http://www.eecs.berkeley.edu/Pubs/TechRpts/2007/EECS-2007-25.pdf
信息来源:邪恶八进制信息安全团队(www.eviloctal.com)

This paper proposes new methods for web authentication that are secure against phishing and pharming attacks. We explore the use of browser cookies as authenticators that cannot inadvertently be given away by users, and introduce locked cookies, which are cookies that are bound to the originating server’s public key.

附件

EECS-2007-25.rar (296 KB)

2007-2-25 18:38, 下载次数: 362

曾几何时,有人对我说:装B遭雷劈。我说:去你妈的。于是,这个人又对我说:如果再说脏话,上帝会惩罚你的。我说:我操上帝。结论:彪悍的人生不需要上帝。

TOP

发新话题