FREE Registration is required
Overview:
In an on-line transaction, a user sends her personal sensitive data (e.g., password) to a server for authentication. This process is known as Single Sign-On (SSO). Subject to phishing and pharming attacks, the sensitive data may be disclosed to an adversary when the user is allured to visit a bogus server. There has been much research in anti-phishing methods and most of them are based on enhancing the security of browser indicator. This paper presents a completely different approach of defeating phishing and pharming attacks. Its method is based on encrypted cookie. It tags the sensitive data with the server's public key and stores it as a cookie on the user's machine.
(Is this item miscategorized? Does it need more tags? Let us know.)
| Format: | Size: | 291 KB | |
| Date: | Sep 2008 | ||
| Pages: | 15 |
Top results from Network Security
» View all Network Security listings
Top results from Security Management
White Papers, Webcasts, and Resources
- Best Practices in the Call Center: A Customer Touch-Point Methodology OracleImprove customer satisfaction in your contact center -- while reducing costs -- with an approach that puts all client touch-points on one continuum.
- The Essential Guide: Real-Time High Availability for Exchange - Replicate Exchange Data for Improved Resiliency CA XOsoftSurvive major interruptions to your Exchange environment--and improve its resiliency and availability--with a real-time data replication solution.
- Jeweler Moves to Online Services to Boost Productivity and Cut Costs by 90 Percent MicrosoftLearn how one jewelry retailer reduced infrastructure costs by 90 percent and e-mail support work by 80 percent using Microsoft Online Services.
Premier Vendor Content Whitepapers, webcasts & resources from our Power Center Sponsors
- SmartPlanet
Discover innovative insight and ideas that impact the world around you -
SmartPlanet offers expert advice on innovations in healthcare, including electronic personal health records, treatment, privacy and regulation, and the green technologies that make it happen.
- Learn more >>
Featured Training Courses
Enterprise Applications
- Check out some of the easiest and most powerful ways to boost productivity while saving money on your application infrastructure. See ZDNet's comprehensive Enterprise Application resource center, now!
- New Online Dashboard
- Read about top issues IT decision-makers face every day, plus get cost effective solutions to real life IT problems. Oracle Topline







