【24h】

Interactive History Sniffing Attack with Amida Lottery

机译:阿米达彩票互动历史嗅探攻击

获取原文

摘要

Browser history sniffing is one of the exploits in browser security. Weinberg et al. proposed an interactive attack that provides a simple Captcha test to victim users who performs actions that reveal if he/she has visited to particular website or not. The study proposes six examples such as chessboard and word spelling. Their scheme, however, probes one site with one click and hence it is hard to retrieve a large number of websites. In this study, we propose a new Captcha test using a lottery called "Amida" that allows to probe arbitrary number of websites with one click. We examine the performance of proposed scheme and shows the comparison between our scheme and the conventional "chessboard puzzle".
机译:浏览器历史记录嗅探是浏览器安全性的一种利用。温伯格等。提出了一种交互式攻击,向受害用户提供简单的Captcha测试,受害用户执行的操作可以揭示出他/她是否访问过特定网站。该研究提出了六个示例,例如棋盘和单词拼写。但是,他们的方案仅需单击一下即可探测一个站点,因此很难检索大量的网站。在这项研究中,我们提出了一种使用称为“ Amida”的彩票进行的新的Captcha测试,该测试可以一键探测任意数量的网站。我们检查了拟议方案的性能,并显示了我们的方案与常规“棋盘拼图”之间的比较。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号