Publication | Closed Access
Rusted Anchors: A National Client-Side View of Hidden Root CAs in the Web PKI Ecosystem
16
Citations
23
References
2021
Year
Unknown Venue
EngineeringInformation SecurityTrust Management ArchitectureWeb ClientsSoftware EngineeringHttps Secures CommunicationsSemantic WebSemantic WikiData ScienceManagementData IntegrationHidden Root CasData ManagementWeb Pki EcosystemPublic Key InfrastructureNational Client-side ViewWeb PkiTrustComputer ScienceData SecurityCryptographyTrustworthy ComputingTrusted SystemTrust PrivacyPublic Trust
HTTPS secures communications in the web and heavily relies on the Web PKI for authentication. In the Web PKI, Certificate Authorities (CAs) are organizations that provide trust and issue digital certificates. Web clients rely on public root stores maintained by operating systems or browsers, with hundreds of audited CAs as trust anchors. However, as reported by security incidents, hidden root CAs beyond the public root programs have been imported into local root stores, which allows adversaries to gain trust from web clients.
| Year | Citations | |
|---|---|---|
Page 1
Page 1