Divina: Discovering Vulnerabilities Of Internet Accounts

WWW '15: 24th International World Wide Web Conference Florence Italy May, 2015(2015)

引用 0|浏览16
暂无评分
摘要
Internet users typically have several online accounts such as mail accounts, cloud storage accounts, or social media accounts. The security of these accounts is often intricately linked: The password of one account can be reset by sending an email to another account; the data of one account can be backed up on another account; one account can only be accessed by two-factor authentication through a second account; and so forth. This poses three challenges: First, if a user loses one or several of his passwords, can he still access his data? Second, how many passwords does an attacker need in order to access the data? And finally, how many passwords does an attacker need in order to irreversibly delete the user's data? In this paper, we model the dependencies of online accounts in order to help the user discover security weaknesses. We have implemented our system and invite users to try it out on their real accounts.
更多
查看译文
关键词
Security,Safety,Online Accounts,Vulnerabilities,Rules
AI 理解论文
溯源树
样例
生成溯源树,研究论文发展脉络
Chat Paper
正在生成论文摘要