课题基金 / 基金详情

Topics in Authentication Technology and Computer Security

Topics in Authentication Technology and Computer Security
身份验证技术和计算机安全主题
批准号:
262068-2013
负责人:
VanOorschot, Paul
金额:
$3.21万
依托单位:
依托单位国家:
加拿大
项目类别:
Discovery Grants Program - Individual
财政年份:
2017
资助国家:
加拿大
项目状态:
已结题
起止时间:
2017-01-01 至 2018-12-31

项目摘要

项目成果

VanOorschot, Paul的其他基金

相似基金

相关文献

中文摘要
翻译
该计划探索涉及互联网身份验证的开放式安全问题,包括用户和网站的身份验证、软件安全安装和移动设备安全;旨在设计新的机制来提高互联网安全。第一个推力旨在解决安全套接字层机制(Web浏览器使用的互联网核心安全基础设施)及其基础证书颁发机构基础设施和信任模型中的已知安全问题和设计缺陷。我们探索安全问题的根本原因,并通过进化和革命性的方法(包括重新设计信任模型基础设施)设计和测试工具来应对当前的威胁。第二个重点是设计基本方法和全面的框架,用于系统地评估用户身份验证机制,重点是可用性、可部署性和安全标准;使用它来准确确定将身份验证机制与特定应用环境匹配的要求;以及设计和评估具有可识别优势的新机制。第三个重点是探索移动设备安全的身份验证方面--网站和用户身份验证,以及安全的软件安装--包括专门适合移动设备限制的新机制的设计和评估(例如,大小、输入方式)。为了避免与非专家用户安装恶意应用程序软件相关的安全威胁,重新设计了操作系统机制,包括平衡安全性(软件隔离)和功能(跨应用程序共享)的机制。所探讨的问题是社会最重要的网络安全挑战之一,影响到所有互联网用户,从普通公民到企业和政府,再到技术提供商,解决方案增加了关键互联网基础设施的可信度。我们期待基础研究成果通过设计更好的身份验证和更安全、更具弹性的软件安装方法来加强现实世界的互联网安全;并通过协调利益相关者改善互联网基础设施,看到它们在移动设备和主要浏览器上的部署。
英文摘要
The program explores open security problems involving Internet authentication, including authentication of users and websites, secure software installation, and security of mobile devices; and aims to design new mechanisms improving Internet security. A first thrust seeks to address known security issues and design flaws in the Secure Sockets Layer mechanism (the Internet's core security infrastructure used by web browsers), and its underlying certificate authority infrastructure and trust model. We explore root causes of security issues, and design and test tools addressing current threats through evolutionary and revolutionary approaches including redesign of trust model infrastructure. A second thrust pursues design of a foundational methodology and comprehensive framework for systematic evaluation of user authentication mechanisms, with broad emphasis across usability, deployability, and security criteria; its use to accurately identify requirements matching authentication mechanisms with specific application environments; and design and evaluation of new mechanisms with identifiable advantages. A third thrust explores authentication aspects of mobile device security--web site and user authentication, and secure software installation--including design and evaluation of novel mechanisms specifically suiting mobile device limitations (e.g., size, input modalities). To avoid security threats related to non-expert users installing malicious application software, redesign is explored including operating system mechanisms balancing security (software isolation) and functionality (cross-application sharing). The problems explored are among society's most important cyber-security challenges, impacting all Internet users from private citizens, to business and government, to technology providers, and solutions increase trustworthiness of critical Internet infrastructure. We expect fundamental research results that contribute to stronger real-world Internet security through the design of better authentication and more secure, resilient software installation methods; and to see them deployed, including on mobile devices and in major browsers, through coordinating stakeholders to improve the Internet infrastructure.
期刊论文(0)
专著(0)
科研奖励(0)
会议论文
Security infrastructure for modern information and message exchange systems, networks and applications
  • 批准号:
    RGPIN-2018-05339
  • 项目类别:
    Discovery Grants Program - Individual
  • 资助金额:
    $4.01万
  • 财政年份:
    2022
  • 负责人:
    VanOorschot, Paul
  • 依托单位:
Authentication and Computer Security
  • 批准号:
    CRC-2015-00227
  • 项目类别:
    Canada Research Chairs
  • 资助金额:
    $14.57万
  • 财政年份:
    2022
  • 负责人:
    VanOorschot, Paul
  • 依托单位:
Security infrastructure for modern information and message exchange systems, networks and applications
  • 批准号:
    RGPIN-2018-05339
  • 项目类别:
    Discovery Grants Program - Individual
  • 资助金额:
    $4.01万
  • 财政年份:
    2021
  • 负责人:
    VanOorschot, Paul
  • 依托单位:
Authentication And Computer Security
  • 批准号:
    CRC-2015-00227
  • 项目类别:
    Canada Research Chairs
  • 资助金额:
    $14.57万
  • 财政年份:
    2021
  • 负责人:
    VanOorschot, Paul
  • 依托单位:
国内基金
海外基金
基于ARM Pointer Authentication的操作系统内核数据保护研究
  • 批准号:
    62002317
  • 项目类别:
    青年科学基金项目
  • 资助金额:
    24.0万元
  • 批准年份:
    2020
  • 负责人:
    申文博
  • 依托单位: