发新话题
打印

[转载]Current Anti-Phishing Solutions and Yahoo's Sign-in Seal

[转载]Current Anti-Phishing Solutions and Yahoo's Sign-in Seal

文章作者:Naveen Agarwal, Scott Renfro, and Arturo Bejar
原始出处:http://seclab.cs.rice.edu/w2sp/2007/

本文章是Web 2.0 Security & Privacy 2007大会议题。

Abstract
We examine Yahoo!’s Sign-in Seal and some of the considerations that affected the design. Unlike solutions like SiteKey which are tied to a user’s account, Yahoo!’s sign-in Seal is tied to a browser. We have found “Rusty’s Axioms” to be useful for analyzing the security of both anti-phishing solutions and also other user interaction with our site.

附件

paper-190-z_1282.rar (27 KB)

2007-6-10 04:32, 下载次数: 117

曾几何时,有人对我说:装B遭雷劈。我说:去你妈的。于是,这个人又对我说:如果再说脏话,上帝会惩罚你的。我说:我操上帝。结论:彪悍的人生不需要上帝。

TOP

发新话题