Mitigating cryptographic mistakes by design

M Blochberger, T Petersen, H Federrath - 2019 - dl.gi.de
M Blochberger, T Petersen, H Federrath
2019dl.gi.de
Developers struggle to integrate cryptographic functionality into their applications. Many
mistakes have been identified by related work and tools have been developed for detecting,
automatically repairing, or otherwise assisting developers in secure integration of
cryptographic functionality. We present a cryptographic API that has been designed to
prevent cryptographic mistakes for developers without a background in cryptography. For
that purpose, common cryptographic mistakes were categorized systematically. A qualitative …
Abstract
Developers struggle to integrate cryptographic functionality into their applications. Many mistakes have been identified by related work and tools have been developed for detecting, automatically repairing, or otherwise assisting developers in secure integration of cryptographic functionality. We present a cryptographic API that has been designed to prevent cryptographic mistakes for developers without a background in cryptography. For that purpose, common cryptographic mistakes were categorized systematically. A qualitative user study was performed that evaluates the usability of the API. The results indicate that a simple, comprehensive API can aid developers in implementing cryptographic functionality securely without much effort.
dl.gi.de
以上显示的是最相近的搜索结果。 查看全部搜索结果