Differences
This shows you the differences between two versions of the page.
Next revision | Previous revisionLast revisionBoth sides next revision | ||
public:papers:spw2019 [2019-11-30 11:27] – created xukrop | public:papers:spw2019 [2022-01-04 18:26] – xukrop | ||
---|---|---|---|
Line 11: | Line 11: | ||
{{fa> | {{fa> | ||
+ | |||
+ | \_{{fa> | ||
</ | </ | ||
</ | </ | ||
Line 17: | Line 19: | ||
<TEXT align=" | <TEXT align=" | ||
- | <popover trigger=" | + | <button type=" |
- | <button type=" | + | |
- | </ | + | |
\_ | \_ | ||
<popover trigger=" | <popover trigger=" | ||
Line 35: | Line 35: | ||
Author | Author | ||
BookTitle | BookTitle | ||
- | Year = {2019}, | + | Year = {2020}, |
- | Publisher | + | Publisher |
- | | + | |
- | Keywords | + | |
} | } | ||
</ | </ | ||
Line 45: | Line 44: | ||
The creation of the World Wide Web (WWW) in the early 1990’s finally made the Internet accessible to a wider part of the population. With this increase in users, security became more important. To address confidentiality and integrity requirements on the web, Netscape—by then a major web browser vendor—presented the Secure Socket Layer (SSL), later versions of which were renamed to Transport Layer Security (TLS). In turn, this necessitated the introduction of both security indicators in browsers to inform users about the TLS connection state and also of warnings to inform users about potential errors in the TLS connection to a website. Looking at the evolution of indicators and warnings, we find that the qualitative data on security indicators and warnings, i.e., screen shots of different browsers over time is inconsistent. Hence, in this paper we outline our methodology for collecting a comprehensive data set of web browser security indicators and warnings, which will enable researchers to better understand how security indicators and TLS warnings in web browsers evolved over time. | The creation of the World Wide Web (WWW) in the early 1990’s finally made the Internet accessible to a wider part of the population. With this increase in users, security became more important. To address confidentiality and integrity requirements on the web, Netscape—by then a major web browser vendor—presented the Secure Socket Layer (SSL), later versions of which were renamed to Transport Layer Security (TLS). In turn, this necessitated the introduction of both security indicators in browsers to inform users about the TLS connection state and also of warnings to inform users about potential errors in the TLS connection to a website. Looking at the evolution of indicators and warnings, we find that the qualitative data on security indicators and warnings, i.e., screen shots of different browsers over time is inconsistent. Hence, in this paper we outline our methodology for collecting a comprehensive data set of web browser security indicators and warnings, which will enable researchers to better understand how security indicators and TLS warnings in web browsers evolved over time. | ||
</ | </ | ||
+ | |||
+ | ===== Further research ===== | ||
+ | |||
+ | Based on the ideas presented in this paper, we started developing a tool for automatic collection of SSL/TLS warnings and errors in different browser. The tool under development can be found on the lab's GitHub profile. | ||
+ | |||
+ | <button type=" |