|
|
|
Date Submitted:
06/17/05
Hits: 61 Rating: ![]() ![]() ![]() ![]() based on 0 votes
Dos and Dont's of Client Authentication on the WebAdded by Papergrl
Description:
Client authentication has been a continuous source of problems on the Web. Although many well-studied techniques exist for authentication, Web sites continue to use extremely weak authentication schemes, especially in non-enterprise environments such as store fronts. These weaknesses often result from careless use of authenticators within Web cookies. Of the twenty-seven sites we investigated, we weakened the client authentication on two systems, gained unauthorized access on eight, and extracted the secret key used to mint authenticators from one.
Read the Complete Paper You don't have permission to post replies. Please login or register. |
