4 citations · 10 across the 6 of their papers we have counts for
9 papers
ss2DNS: A Secure DNS Scheme in Stage 2
Ali Sadeghi Jahromi, AbdelRahman Abdou, Paul C. van Oorschot
The absence of security and privacy measures between DNS recursive resolvers and authoritative nameservers has been exploited by both on-path and off-path attackers. Although numer…
Security Best Practices: A Critical Analysis Using IoT as a Case Study
David Barrera, Christopher Bellman, Paul C. van Oorschot
Academic research has highlighted the failure of many Internet of Things (IoT) product manufacturers to follow accepted practices, while IoT security best practices have recently a…
A Close Look at a Systematic Method for Analyzing Sets of Security Advice
David Barrera, Christopher Bellman, Paul C. van Oorschot
We carry out a detailed analysis of the security advice coding method (SAcoding) of Barrera et al. (2021), which is designed to analyze security advice in the sense of measuring ac…
"Sign in with ... Privacy'': Timely Disclosure of Privacy Differences among Web SSO Login Options
Srivathsan G. Morkonda, Sonia Chiasson, Paul C. van Oorschot
The number of login options on web sites has increased since the introduction of web single sign-on (SSO) protocols. Web SSO services allow users to grant web sites or relying part…
Systematic Analysis and Comparison of Security Advice as Datasets
Christopher Bellman, Paul C. van Oorschot
A long list of documents have been offered as security advice, codes of practice, and security guidelines for building and using security products, including Internet of Things (Io…
A survey and analysis of TLS interception mechanisms and motivations
Xavier de Carné de Carnavalet, Paul C. van Oorschot
TLS is an end-to-end protocol designed to provide confidentiality and integrity guarantees that improve end-user security and privacy. While TLS helps defend against pervasive surv…