activity
20182021
collaborators

5 papers

cs.CR2021

Passive, Transparent, and Selective TLS Decryption for Network Security Monitoring

Florian Wilkens, Steffen Haas, Johanna Amann +1

Internet traffic is increasingly encrypted. While this protects the confidentiality and integrity of communication, it prevents network monitoring systems (NMS) and intrusion detec…

cs.CR2020

The Boon and Bane of Cross-Signing: Shedding Light on a Common Practice in Public Key Infrastructures

Jens Hiller, Johanna Amann, Oliver Hohlfeld

Public Key Infrastructures (PKIs) with their trusted Certificate Authorities (CAs) provide the trust backbone for the Internet: CAs sign certificates which prove the identity of se…

cs.CR2020

A Retrospective Analysis of User Exposure to (Illicit) Cryptocurrency Mining on the Web

Ralph Holz, Diego Perino, Matteo Varvello +6

In late 2017, a sudden proliferation of malicious JavaScript was reported on the Web: browser-based mining exploited the CPU time of website visitors to mine the cryptocurrency Mon…

cs.CR2019

The Era of TLS 1.3: Measuring Deployment and Use with Active and Passive Methods

Ralph Holz, Johanna Amann, Abbas Razaghpanah +1

TLS 1.3 marks a significant departure from previous versions of the Transport Layer Security protocol (TLS). The new version offers a simplified protocol flow, more secure cryptogr…

cs.NI2018

The Rise of Certificate Transparency and Its Implications on the Internet Ecosystem

Quirin Scheitle, Oliver Gasser, Theodor Nolte +6

In this paper, we analyze the evolution of Certificate Transparency (CT) over time and explore the implications of exposing certificate DNS names from the perspective of security a…