{"id":"https://openalex.org/W2100314538","doi":"https://doi.org/10.1145/2660267.2660338","title":"Securing SSL Certificate Verification through Dynamic Linking","display_name":"Securing SSL Certificate Verification through Dynamic Linking","publication_year":2014,"publication_date":"2014-11-03","ids":{"openalex":"https://openalex.org/W2100314538","doi":"https://doi.org/10.1145/2660267.2660338","mag":"2100314538"},"language":"en","primary_location":{"id":"doi:10.1145/2660267.2660338","is_oa":false,"landing_page_url":"https://doi.org/10.1145/2660267.2660338","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Proceedings of the 2014 ACM SIGSAC Conference on Computer and Communications Security","raw_type":"proceedings-article"},"type":"article","indexed_in":["crossref"],"open_access":{"is_oa":false,"oa_status":"closed","oa_url":null,"any_repository_has_fulltext":false},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5021649580","display_name":"Adam Bates","orcid":"https://orcid.org/0000-0003-1511-4951"},"institutions":[{"id":"https://openalex.org/I33213144","display_name":"University of Florida","ror":"https://ror.org/02y3ad647","country_code":"US","type":"education","lineage":["https://openalex.org/I33213144"]}],"countries":["US"],"is_corresponding":true,"raw_author_name":"Adam Bates","raw_affiliation_strings":["University of Florida, Gainesville, FL, USA","University of Florida , Gainesville , FL USA"],"affiliations":[{"raw_affiliation_string":"University of Florida, Gainesville, FL, USA","institution_ids":["https://openalex.org/I33213144"]},{"raw_affiliation_string":"University of Florida , Gainesville , FL USA","institution_ids":[]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5024037166","display_name":"Joe Pletcher","orcid":null},"institutions":[{"id":"https://openalex.org/I181233156","display_name":"University of Oregon","ror":"https://ror.org/0293rh119","country_code":"US","type":"education","lineage":["https://openalex.org/I181233156"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Joe Pletcher","raw_affiliation_strings":["University of Oregon, Eugene, OR, USA","University of Oregon, Eugene, OR, USA,"],"affiliations":[{"raw_affiliation_string":"University of Oregon, Eugene, OR, USA","institution_ids":["https://openalex.org/I181233156"]},{"raw_affiliation_string":"University of Oregon, Eugene, OR, USA,","institution_ids":["https://openalex.org/I181233156"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5018335798","display_name":"Tyler Nichols","orcid":null},"institutions":[{"id":"https://openalex.org/I181233156","display_name":"University of Oregon","ror":"https://ror.org/0293rh119","country_code":"US","type":"education","lineage":["https://openalex.org/I181233156"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Tyler Nichols","raw_affiliation_strings":["University of Oregon, Eugene, OR, USA","University of Oregon, Eugene, OR, USA,"],"affiliations":[{"raw_affiliation_string":"University of Oregon, Eugene, OR, USA","institution_ids":["https://openalex.org/I181233156"]},{"raw_affiliation_string":"University of Oregon, Eugene, OR, USA,","institution_ids":["https://openalex.org/I181233156"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5080422253","display_name":"Braden Hollembaek","orcid":null},"institutions":[{"id":"https://openalex.org/I4210155119","display_name":"ISCA Technologies (United States)","ror":"https://ror.org/04b5pvj95","country_code":"US","type":"company","lineage":["https://openalex.org/I4210155119"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Braden Hollembaek","raw_affiliation_strings":["iSEC Partners, Seattle, WA, USA"],"affiliations":[{"raw_affiliation_string":"iSEC Partners, Seattle, WA, USA","institution_ids":["https://openalex.org/I4210155119"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5015662045","display_name":"Dave Tian","orcid":"https://orcid.org/0000-0002-7506-9593"},"institutions":[{"id":"https://openalex.org/I33213144","display_name":"University of Florida","ror":"https://ror.org/02y3ad647","country_code":"US","type":"education","lineage":["https://openalex.org/I33213144"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Dave Tian","raw_affiliation_strings":["University of Florida, Gainesville, FL, USA","University of Florida , Gainesville , FL USA"],"affiliations":[{"raw_affiliation_string":"University of Florida, Gainesville, FL, USA","institution_ids":["https://openalex.org/I33213144"]},{"raw_affiliation_string":"University of Florida , Gainesville , FL USA","institution_ids":[]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5039485542","display_name":"Kevin Butler","orcid":"https://orcid.org/0000-0002-7498-4239"},"institutions":[{"id":"https://openalex.org/I33213144","display_name":"University of Florida","ror":"https://ror.org/02y3ad647","country_code":"US","type":"education","lineage":["https://openalex.org/I33213144"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Kevin R.B. Butler","raw_affiliation_strings":["University of Florida, Gainesville, FL, USA","University of Florida , Gainesville , FL USA"],"affiliations":[{"raw_affiliation_string":"University of Florida, Gainesville, FL, USA","institution_ids":["https://openalex.org/I33213144"]},{"raw_affiliation_string":"University of Florida , Gainesville , FL USA","institution_ids":[]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5075869738","display_name":"Abdulrahman Alkhelaifi","orcid":null},"institutions":[{"id":"https://openalex.org/I181233156","display_name":"University of Oregon","ror":"https://ror.org/0293rh119","country_code":"US","type":"education","lineage":["https://openalex.org/I181233156"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Abdulrahman Alkhelaifi","raw_affiliation_strings":["University of Oregon, Eugene, OR, USA","University of Oregon, Eugene, OR, USA,"],"affiliations":[{"raw_affiliation_string":"University of Oregon, Eugene, OR, USA","institution_ids":["https://openalex.org/I181233156"]},{"raw_affiliation_string":"University of Oregon, Eugene, OR, USA,","institution_ids":["https://openalex.org/I181233156"]}]}],"institutions":[],"countries_distinct_count":1,"institutions_distinct_count":7,"corresponding_author_ids":["https://openalex.org/A5021649580"],"corresponding_institution_ids":["https://openalex.org/I33213144"],"apc_list":null,"apc_paid":null,"fwci":4.6581,"has_fulltext":false,"cited_by_count":36,"citation_normalized_percentile":{"value":0.95653935,"is_in_top_1_percent":false,"is_in_top_10_percent":true},"cited_by_percentile_year":{"min":89,"max":99},"biblio":{"volume":null,"issue":null,"first_page":"394","last_page":"405"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T11241","display_name":"Advanced Malware Detection Techniques","score":1.0,"subfield":{"id":"https://openalex.org/subfields/1711","display_name":"Signal Processing"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T11241","display_name":"Advanced Malware Detection Techniques","score":1.0,"subfield":{"id":"https://openalex.org/subfields/1711","display_name":"Signal Processing"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11424","display_name":"Security and Verification in Computing","score":0.9998000264167786,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11598","display_name":"Internet Traffic Analysis and Secure E-voting","score":0.9994000196456909,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.8197802305221558},{"id":"https://openalex.org/keywords/computer-security","display_name":"Computer security","score":0.6662391424179077},{"id":"https://openalex.org/keywords/transport-layer-security","display_name":"Transport Layer Security","score":0.607286810874939},{"id":"https://openalex.org/keywords/certificate","display_name":"Certificate","score":0.5444343090057373},{"id":"https://openalex.org/keywords/public-key-infrastructure","display_name":"Public key infrastructure","score":0.4868111312389374},{"id":"https://openalex.org/keywords/implementation","display_name":"Implementation","score":0.4416041076183319},{"id":"https://openalex.org/keywords/software","display_name":"Software","score":0.43975910544395447},{"id":"https://openalex.org/keywords/security-bug","display_name":"Security bug","score":0.4381854832172394},{"id":"https://openalex.org/keywords/key","display_name":"Key (lock)","score":0.4342028498649597},{"id":"https://openalex.org/keywords/the-internet","display_name":"The Internet","score":0.43334487080574036},{"id":"https://openalex.org/keywords/code","display_name":"Code (set theory)","score":0.4105370044708252},{"id":"https://openalex.org/keywords/public-key-cryptography","display_name":"Public-key cryptography","score":0.4008769392967224},{"id":"https://openalex.org/keywords/software-security-assurance","display_name":"Software security assurance","score":0.3591369390487671},{"id":"https://openalex.org/keywords/encryption","display_name":"Encryption","score":0.294437050819397},{"id":"https://openalex.org/keywords/world-wide-web","display_name":"World Wide Web","score":0.2083342969417572},{"id":"https://openalex.org/keywords/software-engineering","display_name":"Software engineering","score":0.19742751121520996},{"id":"https://openalex.org/keywords/operating-system","display_name":"Operating system","score":0.1922970414161682},{"id":"https://openalex.org/keywords/information-security","display_name":"Information security","score":0.15137222409248352},{"id":"https://openalex.org/keywords/security-service","display_name":"Security service","score":0.12440153956413269},{"id":"https://openalex.org/keywords/programming-language","display_name":"Programming language","score":0.1102188229560852}],"concepts":[{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.8197802305221558},{"id":"https://openalex.org/C38652104","wikidata":"https://www.wikidata.org/wiki/Q3510521","display_name":"Computer security","level":1,"score":0.6662391424179077},{"id":"https://openalex.org/C148176105","wikidata":"https://www.wikidata.org/wiki/Q206494","display_name":"Transport Layer Security","level":3,"score":0.607286810874939},{"id":"https://openalex.org/C96865113","wikidata":"https://www.wikidata.org/wiki/Q2946816","display_name":"Certificate","level":2,"score":0.5444343090057373},{"id":"https://openalex.org/C72648740","wikidata":"https://www.wikidata.org/wiki/Q658476","display_name":"Public key infrastructure","level":4,"score":0.4868111312389374},{"id":"https://openalex.org/C26713055","wikidata":"https://www.wikidata.org/wiki/Q245962","display_name":"Implementation","level":2,"score":0.4416041076183319},{"id":"https://openalex.org/C2777904410","wikidata":"https://www.wikidata.org/wiki/Q7397","display_name":"Software","level":2,"score":0.43975910544395447},{"id":"https://openalex.org/C131275738","wikidata":"https://www.wikidata.org/wiki/Q7445023","display_name":"Security bug","level":5,"score":0.4381854832172394},{"id":"https://openalex.org/C26517878","wikidata":"https://www.wikidata.org/wiki/Q228039","display_name":"Key (lock)","level":2,"score":0.4342028498649597},{"id":"https://openalex.org/C110875604","wikidata":"https://www.wikidata.org/wiki/Q75","display_name":"The Internet","level":2,"score":0.43334487080574036},{"id":"https://openalex.org/C2776760102","wikidata":"https://www.wikidata.org/wiki/Q5139990","display_name":"Code (set theory)","level":3,"score":0.4105370044708252},{"id":"https://openalex.org/C203062551","wikidata":"https://www.wikidata.org/wiki/Q201339","display_name":"Public-key cryptography","level":3,"score":0.4008769392967224},{"id":"https://openalex.org/C62913178","wikidata":"https://www.wikidata.org/wiki/Q7554361","display_name":"Software security assurance","level":4,"score":0.3591369390487671},{"id":"https://openalex.org/C148730421","wikidata":"https://www.wikidata.org/wiki/Q141090","display_name":"Encryption","level":2,"score":0.294437050819397},{"id":"https://openalex.org/C136764020","wikidata":"https://www.wikidata.org/wiki/Q466","display_name":"World Wide Web","level":1,"score":0.2083342969417572},{"id":"https://openalex.org/C115903868","wikidata":"https://www.wikidata.org/wiki/Q80993","display_name":"Software engineering","level":1,"score":0.19742751121520996},{"id":"https://openalex.org/C111919701","wikidata":"https://www.wikidata.org/wiki/Q9135","display_name":"Operating system","level":1,"score":0.1922970414161682},{"id":"https://openalex.org/C527648132","wikidata":"https://www.wikidata.org/wiki/Q189900","display_name":"Information security","level":2,"score":0.15137222409248352},{"id":"https://openalex.org/C29983905","wikidata":"https://www.wikidata.org/wiki/Q7445066","display_name":"Security service","level":3,"score":0.12440153956413269},{"id":"https://openalex.org/C199360897","wikidata":"https://www.wikidata.org/wiki/Q9143","display_name":"Programming language","level":1,"score":0.1102188229560852},{"id":"https://openalex.org/C11413529","wikidata":"https://www.wikidata.org/wiki/Q8366","display_name":"Algorithm","level":1,"score":0.0},{"id":"https://openalex.org/C177264268","wikidata":"https://www.wikidata.org/wiki/Q1514741","display_name":"Set (abstract data type)","level":2,"score":0.0}],"mesh":[],"locations_count":1,"locations":[{"id":"doi:10.1145/2660267.2660338","is_oa":false,"landing_page_url":"https://doi.org/10.1145/2660267.2660338","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Proceedings of the 2014 ACM SIGSAC Conference on Computer and Communications Security","raw_type":"proceedings-article"}],"best_oa_location":null,"sustainable_development_goals":[{"id":"https://metadata.un.org/sdg/16","display_name":"Peace, Justice and strong institutions","score":0.550000011920929}],"awards":[{"id":"https://openalex.org/G5413996910","display_name":null,"funder_award_id":"CNS-1254198","funder_id":"https://openalex.org/F4320337388","funder_display_name":"Division of Computer and Network Systems"},{"id":"https://openalex.org/G8570474651","display_name":null,"funder_award_id":"CNS-1118046","funder_id":"https://openalex.org/F4320337388","funder_display_name":"Division of Computer and Network Systems"}],"funders":[{"id":"https://openalex.org/F4320337388","display_name":"Division of Computer and Network Systems","ror":"https://ror.org/02rdzmk74"}],"has_content":{"grobid_xml":false,"pdf":false},"content_urls":null,"referenced_works_count":33,"referenced_works":["https://openalex.org/W6385438","https://openalex.org/W98989770","https://openalex.org/W1567409052","https://openalex.org/W1595861018","https://openalex.org/W1608091202","https://openalex.org/W1643398921","https://openalex.org/W1877037860","https://openalex.org/W1881935562","https://openalex.org/W1976919795","https://openalex.org/W1994219740","https://openalex.org/W2013433855","https://openalex.org/W2045057497","https://openalex.org/W2052897520","https://openalex.org/W2056494114","https://openalex.org/W2064452120","https://openalex.org/W2077092541","https://openalex.org/W2089934546","https://openalex.org/W2098936405","https://openalex.org/W2103370348","https://openalex.org/W2129426180","https://openalex.org/W2129830111","https://openalex.org/W2133495192","https://openalex.org/W2138670865","https://openalex.org/W2145994642","https://openalex.org/W2146752727","https://openalex.org/W2160468841","https://openalex.org/W2161954933","https://openalex.org/W2186028149","https://openalex.org/W2247980666","https://openalex.org/W2296570230","https://openalex.org/W2557281918","https://openalex.org/W2914982603","https://openalex.org/W4233819588"],"related_works":["https://openalex.org/W2763050151","https://openalex.org/W2001371286","https://openalex.org/W1915479549","https://openalex.org/W1606380665","https://openalex.org/W2994213367","https://openalex.org/W2036546368","https://openalex.org/W1955053247","https://openalex.org/W1484754451","https://openalex.org/W2104283649","https://openalex.org/W1494030766"],"abstract_inverted_index":{"Recent":[0],"discoveries":[1],"of":[2,16,23,36,51,134,136,154],"widespread":[3],"vulnerabilities":[4,68],"in":[5,27,69,93,157],"the":[6,14,21,24,49,100,131,163,169,174],"SSL/TLS":[7],"protocol":[8],"stack,":[9],"particular":[10],"with":[11,111,141],"regard":[12],"to":[13,42,66,78,99,109,145,165,173],"verification":[15,127],"server":[17],"certificates,":[18],"has":[19],"left":[20],"security":[22,153],"Internet's":[25],"communications":[26,156],"doubt.":[28],"Newly":[29],"proposed":[30],"SSL":[31,79,84,126,132,155],"trust":[32],"enhancements":[33],"address":[34],"many":[35],"these":[37],"vulnerabilities,":[38,85],"but":[39],"are":[40],"slow":[41],"be":[43],"deployed":[44],"and":[45,114,129,167],"do":[46],"not":[47],"solve":[48],"problem":[50],"securing":[52],"existing":[53,146],"software.":[54],"In":[55],"this":[56],"work,":[57],"we":[58],"provide":[59],"new":[60],"mechanisms":[61],"that":[62,81,96],"offer":[63],"immediate":[64],"solutions":[65],"addressing":[67],"legacy":[70],"code.":[71],"We":[72,102],"introduce":[73],"CertShim,":[74],"a":[75,94],"lightweight":[76],"retrofit":[77],"implementations":[80],"protects":[82],"against":[83],"including":[86],"those":[87],"surveyed":[88],"by":[89,106],"Georgiev":[90],"et.":[91],"al.,":[92],"manner":[95],"is":[97],"transparent":[98],"application.":[101],"demonstrate":[103],"CertShim's":[104],"extensibility":[105],"adapting":[107],"it":[108],"work":[110,149],"Convergence,":[112],"DANE,":[113],"Client-Based":[115],"Key":[116],"Pinning.":[117],"CertShim":[118],"imposes":[119],"just":[120],"20":[121],"ms":[122],"overhead":[123],"for":[124],"an":[125],"call,":[128],"hooks":[130],"dependencies":[133],"94%":[135],"Ubuntu's":[137],"most":[138],"popular":[139],"packages":[140],"no":[142],"changes":[143],"necessary":[144],"applications.":[147],"This":[148],"significantly":[150],"increases":[151],"system-wide":[152],"non-browser":[158],"software,":[159],"while":[160],"simultaneously":[161],"reducing":[162],"barriers":[164],"evaluating":[166],"adopting":[168],"myriad":[170],"alternative":[171],"proposals":[172],"certificate":[175],"authority":[176],"system.":[177]},"counts_by_year":[{"year":2026,"cited_by_count":1},{"year":2025,"cited_by_count":1},{"year":2024,"cited_by_count":1},{"year":2023,"cited_by_count":5},{"year":2022,"cited_by_count":3},{"year":2021,"cited_by_count":1},{"year":2020,"cited_by_count":4},{"year":2019,"cited_by_count":1},{"year":2018,"cited_by_count":3},{"year":2017,"cited_by_count":5},{"year":2016,"cited_by_count":3},{"year":2015,"cited_by_count":8}],"updated_date":"2025-11-06T03:46:38.306776","created_date":"2025-10-10T00:00:00"}
