Securing instant messages with hardware-based cryptography and authentication in browser extension

Registro completo de metadados
MetadadosDescriçãoIdioma
Autor(es): dc.creatorRodrigues, Gabriel Arquelau Pimenta-
Autor(es): dc.creatorAlbuquerque, Robson de Oliveira-
Autor(es): dc.creatorAlves, Gabriel de Oliveira-
Autor(es): dc.creatorMendonça, Fábio Lúcio Lopes de-
Autor(es): dc.creatorGiozza, William Ferreira-
Autor(es): dc.creatorSousa Júnior, Rafael Timóteo de-
Autor(es): dc.creatorOrozco, Ana Lucila Sandoval-
Data de aceite: dc.date.accessioned2021-10-14T17:21:36Z-
Data de disponibilização: dc.date.available2021-10-14T17:21:36Z-
Data de envio: dc.date.issued2020-07-01-
Data de envio: dc.date.issued2020-07-01-
Data de envio: dc.date.issued2020-05-11-
Fonte completa do material: dc.identifierhttps://repositorio.unb.br/handle/10482/38690-
Fonte completa do material: dc.identifierhttps://orcid.org/0000-0002-6717-3374-
Fonte completa do material: dc.identifierhttps://orcid.org/0000-0003-1101-3029-
Fonte completa do material: dc.identifierhttps://orcid.org/0000-0002-2846-9017-
Fonte: dc.identifier.urihttp://educapes.capes.gov.br/handle/capes/606021-
Descrição: dc.descriptionInstant Messaging (IM) provides near-real-time communication between users, which has shown to be a valuable tool for internal communication in companies and for general-purpose interaction among people. IM systems and supporting protocols, however, must consider security aspects to guarantee the messages' authenticity, confidentiality, and integrity. In this paper, we present a solution for integrating hardware-based public key cryptography into Converse.js, an open-source IM client for browsers enabled with the Extensible Messaging and Presence Protocol (XMPP). The proposal is developed as a plugin for Converse.js, thus overriding the original functions of the client; and a browser extension that is triggered by the plugin and is responsible for calling the encryption and decryption services for each sent and received message. This integrated artifact allowed the experimental validation of the proposal providing authenticity of IM users with digital certificates and protection of IM messages with hardware-based cryptography. Results also shows the proposed systems is resistent to adversarial attacks against confidentiality and integrity and it is secure when considering cryptrographic tests like the Hamming distance and the NIST SP800-22.-
Formato: dc.formatapplication/pdf-
Publicador: dc.publisherIEEE-
Direitos: dc.rightsAcesso Aberto-
Direitos: dc.rightsThis work is licensed under a Creative Commons Attribution 4.0 License. For more information, see https://creativecommons.org/licenses/by/4.0/-
Palavras-chave: dc.subjectCriptografia-
Palavras-chave: dc.subjectAutenticação (Documentos)-
Palavras-chave: dc.subjectMensagens eletrônicas - medidas de segurança-
Palavras-chave: dc.subjectProtocolo - mensagens eletrônicas-
Título: dc.titleSecuring instant messages with hardware-based cryptography and authentication in browser extension-
Tipo de arquivo: dc.typelivro digital-
Aparece nas coleções:Repositório Institucional – UNB

Não existem arquivos associados a este item.