메뉴 건너뛰기




Volumn , Issue , 2010, Pages 61-71

A billion keys, but few locks: The crisis of web single sign-on

Author keywords

authentication; infocard; openid; web identity management; web single sign on

Indexed keywords

BUSINESS MODELS; BUSINESS NEEDS; IDENTITY MANAGEMENT; INFOCARD; OPENID; SERVICE PROVIDER; SINGLE SIGN ON; TRUST FRAMEWORKS; BUSINESS MODELING; IDENTITY PROVIDERS; NOCV1;

EID: 78751558943     PISSN: None     EISSN: None     Source Type: Conference Proceeding    
DOI: 10.1145/1900546.1900556     Document Type: Conference Paper
Times cited : (45)

References (79)
  • 1
    • 78751528689 scopus 로고    scopus 로고
    • ActivIdentity Corp.
    • ActivIdentity Corp. Actividentity securelogin. http://www.protocom.com/, 2009.
    • (2009) Actividentity Securelogin
  • 2
    • 0043232732 scopus 로고    scopus 로고
    • Users are not the enemy
    • A. Adams and M. A. Sasse. Users are not the enemy. Commun. ACM, 42(12):40-46, 1999.
    • (1999) Commun. ACM , vol.42 , Issue.12 , pp. 40-46
    • Adams, A.1    Sasse, M.A.2
  • 4
    • 78650115461 scopus 로고    scopus 로고
    • January
    • AOL LLC. AOL Open Authentication API. http://dev.aol.com/api/openauth, January 2008.
    • (2008) AOL Open Authentication API
  • 9
    • 84886762747 scopus 로고    scopus 로고
    • Poll: Privacy rights under attack
    • October
    • CBS News. Poll: Privacy rights under attack. http://www.cbsnews.com/ stories/2005/09/30/opinion/polls/main894733.shtml, October 2005.
    • (2005) CBS News
  • 12
    • 78751504365 scopus 로고    scopus 로고
    • CoreStreet Ltd.
    • CoreStreet Ltd. Spoofstick. http://www.spoofstick.com/, 2005.
    • (2005) Spoofstick
  • 13
    • 41949139623 scopus 로고    scopus 로고
    • The seven flaws of identity management: Usability and security challenges
    • R. Dhamija and L. Dusseault. The seven flaws of identity management: Usability and security challenges. IEEE Security and Privacy, 6:24-29, 2008.
    • (2008) IEEE Security and Privacy , vol.6 , pp. 24-29
    • Dhamija, R.1    Dusseault, L.2
  • 17
    • 78751541444 scopus 로고    scopus 로고
    • I. Facebook. Facebook Platform. http://www.facebook.com/platform, 2010.
    • (2010) Facebook Platform
  • 18
    • 78449292123 scopus 로고    scopus 로고
    • October
    • I. Facebook. Facebook Press Room Statistics. http://www.facebook.com/ press/info.php?statistics, October 2010.
    • (2010) Facebook Press Room Statistics
  • 26
    • 33745886578 scopus 로고    scopus 로고
    • A convenient method for securely managing passwords
    • J. A. Halderman, B. Waters, and E. W. Felten. A convenient method for securely managing passwords. In Proc. of WWW 2005, pages 471-479, 2005.
    • (2005) Proc. of WWW 2005 , pp. 471-479
    • Halderman, J.A.1    Waters, B.2    Felten, E.W.3
  • 28
    • 78751507941 scopus 로고    scopus 로고
    • Attacking Certificate-based Authentication System and Microsoft InfoCard
    • X. Hao. Attacking Certificate-based Authentication System and Microsoft InfoCard. In Power of Community Security Conference, 2009.
    • Power of Community Security Conference, 2009
    • Hao, X.1
  • 29
    • 77950877250 scopus 로고    scopus 로고
    • So long, and no thanks for the externalities: The rational rejection of security advice by users
    • New York, NY, USA, ACM
    • C. Herley. So long, and no thanks for the externalities: the rational rejection of security advice by users. In NSPW '09: Proceedings of the 2009 Workshop on New Security Paradigms Workshop, pages 133-144, New York, NY, USA, 2009. ACM.
    • (2009) NSPW '09: Proceedings of the 2009 Workshop on New Security Paradigms Workshop , pp. 133-144
    • Herley, C.1
  • 30
    • 54049142548 scopus 로고    scopus 로고
    • Security and identification indicators for browsers against spoofing and phishing attacks
    • A. Herzberg and A. Jbara. Security and identification indicators for browsers against spoofing and phishing attacks. ACM Trans. Internet Technology, 8(4):1-36, 2008.
    • (2008) ACM Trans. Internet Technology , vol.8 , Issue.4 , pp. 1-36
    • Herzberg, A.1    Jbara, A.2
  • 32
    • 76549094940 scopus 로고    scopus 로고
    • Internet2. Shibboleth System. http://shibboleth.internet2.edu/, 2008.
    • (2008) Shibboleth System
  • 33
    • 78751508490 scopus 로고    scopus 로고
    • JanRain Inc. Relying Party Stats. http://www.janrain.com/blogs/relying- party-stats-april-1st-2009, 2009.
    • (2009) Relying Party Stats
  • 35
    • 80052788393 scopus 로고    scopus 로고
    • Usability and privacy in identity management architectures
    • Darlinghurst, Australia, Australia, Australian Computer Society, Inc.
    • A. Jøsang, M. A. Zomai, and S. Suriadi. Usability and privacy in identity management architectures. In ACSW '07: Proceedings of the Fifth Australasian Symposium on ACSW Frontiers, pages 143-152, Darlinghurst, Australia, Australia, 2007. Australian Computer Society, Inc.
    • (2007) ACSW '07: Proceedings of the Fifth Australasian Symposium on ACSW Frontiers , pp. 143-152
    • Jøsang, A.1    Zomai, M.A.2    Suriadi, S.3
  • 37
    • 78751479784 scopus 로고    scopus 로고
    • Liberty Alliance
    • Liberty Alliance. Liberty Alliance Project. http://www.projectliberty. org/, 2002.
    • (2002)
  • 38
    • 41949086982 scopus 로고    scopus 로고
    • The venn of identity: Options and issues in federated identity management
    • E. Maler and D. Reed. The venn of identity: Options and issues in federated identity management. IEEE Security and Privacy, 6:16-23, 2008.
    • (2008) IEEE Security and Privacy , vol.6 , pp. 16-23
    • Maler, E.1    Reed, D.2
  • 41
    • 78751541943 scopus 로고    scopus 로고
    • Microsoft Corp. Windows CardSpace. http://www.microsoft.com/windows/ products/winfamily/cardspace/default.mspx, 2009.
    • (2009) Windows CardSpace
  • 43
    • 78751551107 scopus 로고    scopus 로고
    • Mozila Labs. Weave Identity Account Manager. https://wiki.mozilla.org/ Labs/Weave/Identity/Account-Manager, 2009.
    • (2009) Weave Identity Account Manager
  • 44
    • 85011548130 scopus 로고    scopus 로고
    • Desktop security and usability trade-offs: An evaluation of password management systems
    • J. Mulligan and A. Elbirt. Desktop security and usability trade-offs: An evaluation of password management systems. Information Systems Security, 14(2):10-19, 2005.
    • (2005) Information Systems Security , vol.14 , Issue.2 , pp. 10-19
    • Mulligan, J.1    Elbirt, A.2
  • 46
    • 78650093214 scopus 로고    scopus 로고
    • MyOpenID
    • MyOpenID. OpenID Site Directory. http://openiddirectory.com/, 2010.
    • (2010) OpenID Site Directory
  • 48
    • 78751478749 scopus 로고    scopus 로고
    • Netcraft. August 2010 Web Server Survey. http://news.netcraft.com/ archives/category/web-server-survey/, 2010.
    • (2010) August 2010 Web Server Survey
  • 49
    • 78751493630 scopus 로고    scopus 로고
    • Novell Inc. Novell securelogin. http://www.novell.com/products/ securelogin/, 2009.
    • (2009) Novell Securelogin
  • 51
    • 78650106538 scopus 로고    scopus 로고
    • December
    • OAuth Core Workgroup. Oauth core 1.0 specification. http://oauth.net/ core/1.0/, December 2007.
    • (2007) Oauth Core 1.0 Specification
  • 52
    • 78751493629 scopus 로고    scopus 로고
    • March
    • Open Identity Exchange. Building trust online identity. http://openidentityexchange.org/, March 2010.
    • (2010) Building Trust Online Identity
  • 54
    • 78751528688 scopus 로고    scopus 로고
    • OpenID Foundation. OpenID Directory. http://openiddirectory.com/, 2010.
    • (2010) OpenID Directory
  • 55
    • 78650083058 scopus 로고    scopus 로고
    • April
    • OpenID Wiki. Openid user experience. http://wiki.openid.net/browse/view= ViewFolder¶m=user-experience, April 2010.
    • (2010) Openid User Experience
  • 56
    • 1642359636 scopus 로고    scopus 로고
    • Microsoft.NET Passport and identity management
    • R. Oppliger. Microsoft .NET Passport and identity management. Information Security Technical Report, 9(1):26-34, 2004.
    • (2004) Information Security Technical Report , vol.9 , Issue.1 , pp. 26-34
    • Oppliger, R.1
  • 66
    • 78751482334 scopus 로고    scopus 로고
    • The Eclipse Foundation. Higgins Card Selectors. http://www.eclipse.org/ higgins/, 2009.
    • (2009) Higgins Card Selectors
  • 71
    • 78650131006 scopus 로고    scopus 로고
    • Wikipedia. Password fatigue. http://en.wikipedia.org/wiki/Password- fatigue, 2009.
    • (2009) Password Fatigue
  • 72
    • 44349146652 scopus 로고    scopus 로고
    • Purpose and scope of warnings
    • Lawrence Erlbaum Associates
    • M. Wogalter. Purpose and scope of warnings. In Handbook of Warnings, pages 3-9. Lawrence Erlbaum Associates, 2006.
    • (2006) Handbook of Warnings , pp. 3-9
    • Wogalter, M.1


* 이 정보는 Elsevier사의 SCOPUS DB에서 KISTI가 분석하여 추출한 것입니다.