Understanding the weaknesses of human-protocol interaction

  • Authors:
  • Marcelo Carlos;Geraint Price

  • Affiliations:
  • Royal Holloway University of London, Egham, Surrey, United Kingdom;Royal Holloway University of London, Egham, Surrey, United Kingdom

  • Venue:
  • FC'12 Proceedings of the 16th international conference on Financial Cryptography and Data Security
  • Year:
  • 2012

Quantified Score

Hi-index 0.00

Visualization

Abstract

A significant number of attacks on systems are against the non-cryptographic components such as the human interaction with the system. In this paper, we propose a taxonomy of human-protocol interaction weaknesses. This set of weaknesses presents a harmonization of many findings from different research areas. In doing so we collate the most common human-interaction problems that can potentially result in successful attacks against protocol implementations. We then map these weaknesses onto a set of design recommendations aimed to minimize those weaknesses.