Mostrar el registro sencillo del ítem

Ponencia

dc.contributor.editorCaro Lindo, Andréses
dc.contributor.editorGarcía Villalba, Luis Javieres
dc.contributor.editorSandoval Orozco, Ana Lucilaes
dc.creatorRamírez López, Francisco Josées
dc.creatorVarela Vaca, Ángel Jesúses
dc.creatorRopero Rodríguez, Jorgees
dc.creatorCarrasco Muñoz, Alejandroes
dc.date.accessioned2020-06-02T08:33:30Z
dc.date.available2020-06-02T08:33:30Z
dc.date.issued2019
dc.identifier.citationRamírez López, F., Varela Vaca, Á.J., Ropero Rodríguez, J. y Carrasco Muñoz, A. (2019). Guidelines towards secure SSL pinning in mobile applicationsand. En V Jornadas Nacionales de Investigación en Ciberseguridad (JNIC 2019) (203-), Cáceres (España): Universidad de Extremadura.
dc.identifier.isbn978-84-09-12121-2es
dc.identifier.urihttps://hdl.handle.net/11441/97330
dc.description.abstractSecurity is a major concern in web applications for so long, but it is only recently that the use of mobile applications has reached the level of web services. This way, we are taking OWASP Top 10 Mobile as our starting point to secure mobile applications. Insecure communication is one of the most important topics to be considered. In fact, many mobile applications do not even implement SSL/TLS validations or may have SSL/TLS vulnerabilities. This paper explains how an application can be fortified using secure SSL pinning, and offers a three-step process as an improvement of OWASP Mobile recommendations to avoid SSL pinning bypassing. Therefore, following the process described in this paper, mobile application developers may establish a secure SSL/TLS communication.es
dc.description.sponsorshipMinistry of Science and Technology of Spain ECLIPSE RTI2018-094283-B-C33es
dc.description.sponsorshipJunta de Andalucía the PIRAMIDE and METAMORFOSIS projectses
dc.description.sponsorshipEuropean Regional Development Fund (ERDF/FEDER)es
dc.description.sponsorshipUniversidad de Sevilla Cátedra de Telefónica “Inteligencia en la red“es
dc.formatapplication/pdfes
dc.format.extent7 p.es
dc.language.isoenges
dc.publisherUniversidad de Extremaduraes
dc.relation.ispartofV Jornadas Nacionales de Investigación en Ciberseguridad (JNIC 2019) (2019), p 203-.
dc.rightsAttribution-NonCommercial-NoDerivatives 4.0 Internacional*
dc.rights.urihttp://creativecommons.org/licenses/by-nc-nd/4.0/*
dc.subjectSSL pinninges
dc.subjectSecurityes
dc.subjectMobile applicationses
dc.subjectCertificatees
dc.subjectOWASPes
dc.titleGuidelines towards secure SSL pinning in mobile applicationsandes
dc.typeinfo:eu-repo/semantics/conferenceObjectes
dcterms.identifierhttps://ror.org/03yxnpp24
dc.type.versioninfo:eu-repo/semantics/publishedVersiones
dc.rights.accessRightsinfo:eu-repo/semantics/openAccesses
dc.contributor.affiliationUniversidad de Sevilla. Departamento de Lenguajes y Sistemas Informáticoses
dc.contributor.affiliationUniversidad de Sevilla. Departamento de Tecnología Electrónicaes
dc.relation.projectIDECLIPSE RTI2018-094283-B-C33es
dc.relation.publisherversionhttps://2019.jnic.es/Actas_JNIC2019.pdfes
dc.contributor.groupUniversidad de Sevilla. TIC258: Data-Centric Computing Research Hubes
dc.contributor.groupUniversidad de Sevilla. TIC150: Tecnología Electrónica e Informática Industriales
dc.publication.initialPage203es
dc.eventtitleV Jornadas Nacionales de Investigación en Ciberseguridad (JNIC 2019)es
dc.eventinstitutionCáceres (España)es
dc.relation.publicationplaceCácereses

FicherosTamañoFormatoVerDescripción
ropero-rodriguez_ponencia_cace ...388.8KbIcon   [PDF] Ver/Abrir  

Este registro aparece en las siguientes colecciones

Mostrar el registro sencillo del ítem

Attribution-NonCommercial-NoDerivatives 4.0 Internacional
Excepto si se señala otra cosa, la licencia del ítem se describe como: Attribution-NonCommercial-NoDerivatives 4.0 Internacional