ArXivCSExplorer
☆☆Bookmarks🏆RSSHow to UseFAQ
Built with and by Teycir Ben Soltane•
How to Use•FAQ•GitHub•arXiv.org•
Share:

~ similar to 2605.00558v1· 20 results

cs.CRcs.HCRecentMar 26, 2026

Usability of Passwordless Authentication in Wi-Fi Networks: A Comparative Study of Passkeys and Passwords in Captive Portals

Martiño Rivera-Dourado, Rubén Pérez-Jove, Alejandro Pazos, Jose Vázquez-Naya

This study comparatively assessed the usability of passkeys versus passwords for Wi-Fi captive portal authentication, finding that while passkeys were perceived as more usable, captive portal limitati…

View →
cs.CRRecentApr 22, 2026

VRSafe: A Secure Virtual Keyboard to Mitigate Keystroke Inference in Virtual Reality

Yijun Yuan, Na Du, Adam J. Lee, Balaji Palanisamy

The paper introduces VRSafe, a novel virtual QWERTY keyboard designed to significantly mitigate keystroke inference attacks in virtual reality by introducing false positive keystrokes and incorporatin…

View →
cs.CRRecentApr 30, 2026

I can't recognize (yet): Delayed Rendering to Defeat Visual Phishing Detectors

Ying Yuan, Cristiano Alex Rado, Giovanni Apruzzese, Mauro Conti +1 more

This paper demonstrates that visual phishing detectors can be completely bypassed by employing simple timing-based attacks that delay the rendering of key webpage elements.

View →
cs.CRRecentApr 15, 2026

Understanding Student Experiences with TLS Client Authentication

Abubakar Sadiq Shittu, Clay Shubert, John Sadik, Scott Ruoti

This study empirically demonstrates that even highly technical students struggle significantly with the long-term usability and security understanding of Mutual TLS (mTLS) client authentication, sugge…

View →
cs.CRcs.SERecentApr 4, 2026

A Faceted Classification of Authenticator-Centric Authentication Techniques

Alex R. Mattukat, Vincent Schmandt, Timo Langstrof, Michael Zerbe +1 more

This paper introduces novel, faceted classification schemes to comprehensively categorize the diverse landscape of authenticator-centric authentication techniques and authenticators.

View →
cs.ETcs.CRcs.CVRecentMay 16, 2026

BIDO: A Biometric Identity Online Authentication Framework

Aditya Mithra, Sibi Chakkaravarthy S, Srinivas Kankanala

BIDO introduces a device-free, NIST AAL2-compliant biometric authentication standard that deterministically generates ephemeral ECDSA keys from live biometric measurements, eliminating the need for st…

View →
cs.HCcs.CRRecentMay 11, 2026

Sketch-based Access Control: A Multimodal Interface for Translating User Preferences into Intent-Aligned Policies

Kyzyl Monteiro, Sauvik Das

The paper introduces Sketch-based Access Control (SBAC), a multimodal AI-assisted system that helps users iteratively refine vague access control preferences into precise, intent-aligned policies thro…

View →
cs.CRcs.AIRecentApr 14, 2026

LLM-Guided Prompt Evolution for Password Guessing

Vladimir A. Mazin, Mikhail A. Zorin, Dmitrii S. Korzh, Elvir Z. Karimov +2 more

The paper introduces an LLM-driven evolutionary computation framework to automatically optimize prompts, significantly increasing the cracking rate of passwords generated by LLMs from 2.02% to 8.48%.

View →
cs.NIcs.CRRecentMar 17, 2026

Persistent Device Identity for Network Access Control in the Era of MAC Address Randomization: A RADIUS-Based Framework

Premanand Seralathan

The paper proposes a RADIUS-based framework to maintain persistent device identity for Network Access Control (NAC) despite modern operating system MAC address randomization, ensuring regulatory compl…

View →
cs.CRcs.AIRecentMar 26, 2026

The System Prompt Is the Attack Surface: How LLM Agent Configuration Shapes Security and Creates Exploitable Vulnerabilities

Ron Litvak

The security of LLM agents is critically dependent on their system prompt configuration, which creates a brittle attack surface that can be exploited by attackers inverting the prompt's core assumptio…

View →
cs.CRcs.CLRecentMay 27, 2026

MaskClaw: Edge-Side Personalized Privacy Arbitration for GUI Agents with Behavior-Driven Skill Evolution

Yanqiu Zhao, Dongying Zheng, Kaibo Huang, Yukun Wei +2 more

MaskClaw is an edge-side privacy arbitrator that protects sensitive data in GUI agent screenshots by combining local visual evidence, task-specific policies, and a skill-evolution mechanism.

View →
cs.CRRecentApr 22, 2026

An Analysis of Attack Vectors Against FIDO2 Authentication

Alexander Berladskyy, Andreas Aßmuth

This paper analyzes various attack vectors against FIDO2 passkeys, demonstrating that while sophisticated attacks are possible, the overall security posture significantly raises the bar compared to tr…

View →
cs.CVcs.CRRecentMay 5, 2026

A Deeper Dive into the Irreversibility of PolyProtect: Making Protected Face Templates Harder to Invert

Vedrana Krivokuća Hahn, Jérémy Maceiras, Sébastien Marcel

The paper enhances the security of the PolyProtect biometric template protection method by proposing a key selection algorithm that significantly increases the difficulty of inverting protected face t…

View →
cs.CRRecentMar 24, 2026

PRETTINESS -- Privacy pResErving aTTrIbute maNagEment SyStem

Jelizaveta Vakarjuk, Alisa Pankova

The paper proposes and proves the security of a generic, full end-to-end credential revocation system for European Digital Identity Wallets, relying on a single server and secure channels.

View →
cs.CRcs.HCRecentMay 29, 2026

Toward Accessible Mobile Money: A Voice-Driven, Biometrically Secured USSD Automation Framework for Visually Impaired Users

Sunday Ajayi, Babatunde Eric Olatunji, Eric Umuhoza

The paper proposes an Android-based middleware that enables visually impaired users to securely and independently perform mobile money transactions via voice commands, significantly improving accessib…

View →
cs.CRcs.NIRecentMay 6, 2026

Securing the Web with HSTS-Enforced

Aaron van Diepen, Adrian Zapletal, Fernando Kuipers

The paper proposes HSTS-Enforced, a new web security model that flips the default connection from HTTP to HTTPS, eliminating TLS stripping attacks while allowing sites to opt out if they genuinely req…

View →
cs.CRcs.AIcs.CVRecentApr 27, 2026

Scalable Secure Biometric Authentication without Auxiliary Identifiers

Alexander Bienstock, Daniel Escudero, Antigoni Polychroniadou, Zhen Zeng +4 more

The paper introduces a novel, scalable, and provably secure biometric authentication system designed to authenticate millions of users against cloud databases without requiring auxiliary identifiers.

View →
cs.CRcs.AIRecentApr 28, 2026

SnapGuard: Lightweight Prompt Injection Detection for Screenshot-Based Web Agents

Mengyao Du, Han Fang, Haokai Ma, Jiahao Chen +3 more

SnapGuard proposes a lightweight, multimodal method to detect prompt injection attacks in screenshot-based web agents by analyzing visual stability and contrast-polarity textual signals, achieving hig…

View →
cs.CRcs.AIRecentMay 14, 2026

WARD: Adversarially Robust Defense of Web Agents Against Prompt Injections

Tri Cao, Yulin Chen, Hieu Cao, Yibo Li +7 more

The paper proposes WARD, a robust and efficient defense model that secures web agents against prompt injection attacks embedded in web content, achieving high recall and low false positives even again…

View →
cs.IRcs.CRRecentApr 26, 2026

Green-Red Watermarking for Recommender Systems

Lei Zhou, Min Gao, Zongwei Wang, Yibing Bai +1 more

The paper proposes GREW, a novel Green-REd Watermarking framework that embeds ownership signals into recommender systems' intrinsic ranking process without requiring synthetic data, achieving robust p…

View →