{"id":"https://openalex.org/W7111150815","doi":"https://doi.org/10.5281/zenodo.17855525","title":"USENIX Security '26 Artifacts: Opossum Attack: Application Layer Desynchronization using Opportunistic TLS","display_name":"USENIX Security '26 Artifacts: Opossum Attack: Application Layer Desynchronization using Opportunistic TLS","publication_year":2025,"publication_date":"2025-12-08","ids":{"openalex":"https://openalex.org/W7111150815","doi":"https://doi.org/10.5281/zenodo.17855525"},"language":null,"primary_location":{"id":"doi:10.5281/zenodo.17855525","is_oa":true,"landing_page_url":"https://doi.org/10.5281/zenodo.17855525","pdf_url":null,"source":{"id":"https://openalex.org/S4306400562","display_name":"Zenodo (CERN European Organization for Nuclear Research)","issn_l":null,"issn":null,"is_oa":true,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/I67311998","host_organization_name":"European Organization for Nuclear Research","host_organization_lineage":["https://openalex.org/I67311998"],"host_organization_lineage_names":[],"type":"repository"},"license":null,"license_id":null,"version":null,"is_accepted":false,"is_published":false,"raw_source_name":null,"raw_type":"dataset"},"type":"dataset","indexed_in":["datacite"],"open_access":{"is_oa":true,"oa_status":"green","oa_url":"https://doi.org/10.5281/zenodo.17855525","any_repository_has_fulltext":true},"authorships":[{"author_position":"first","author":{"id":null,"display_name":"Merget, Robert","orcid":"https://orcid.org/0009-0006-5026-9229"},"institutions":[{"id":"https://openalex.org/I4210087059","display_name":"Technology Innovation Institute","ror":"https://ror.org/001kv2y39","country_code":"AE","type":"facility","lineage":["https://openalex.org/I4210087059"]}],"countries":["AE"],"is_corresponding":false,"raw_author_name":"Merget, Robert","raw_affiliation_strings":["Technology Innovation Institute"],"raw_orcid":"https://orcid.org/0009-0006-5026-9229","affiliations":[{"raw_affiliation_string":"Technology Innovation Institute","institution_ids":["https://openalex.org/I4210087059"]}]},{"author_position":"middle","author":{"id":null,"display_name":"Erinola, Nurullah","orcid":"https://orcid.org/0009-0008-0170-4516"},"institutions":[{"id":"https://openalex.org/I904495901","display_name":"Ruhr University Bochum","ror":"https://ror.org/04tsk2644","country_code":"DE","type":"education","lineage":["https://openalex.org/I904495901"]}],"countries":["DE"],"is_corresponding":false,"raw_author_name":"Erinola, Nurullah","raw_affiliation_strings":["Ruhr University Bochum"],"raw_orcid":"https://orcid.org/0009-0008-0170-4516","affiliations":[{"raw_affiliation_string":"Ruhr University Bochum","institution_ids":["https://openalex.org/I904495901"]}]},{"author_position":"middle","author":{"id":null,"display_name":"Maehren, Marcel","orcid":"https://orcid.org/0009-0002-8964-826X"},"institutions":[{"id":"https://openalex.org/I904495901","display_name":"Ruhr University Bochum","ror":"https://ror.org/04tsk2644","country_code":"DE","type":"education","lineage":["https://openalex.org/I904495901"]}],"countries":["DE"],"is_corresponding":false,"raw_author_name":"Maehren, Marcel","raw_affiliation_strings":["Ruhr University Bochum"],"raw_orcid":"https://orcid.org/0009-0002-8964-826X","affiliations":[{"raw_affiliation_string":"Ruhr University Bochum","institution_ids":["https://openalex.org/I904495901"]}]},{"author_position":"middle","author":{"id":null,"display_name":"Knittel, Lukas","orcid":"https://orcid.org/0009-0006-5676-5151"},"institutions":[{"id":"https://openalex.org/I904495901","display_name":"Ruhr University Bochum","ror":"https://ror.org/04tsk2644","country_code":"DE","type":"education","lineage":["https://openalex.org/I904495901"]}],"countries":["DE"],"is_corresponding":false,"raw_author_name":"Knittel, Lukas","raw_affiliation_strings":["Ruhr University Bochum"],"raw_orcid":"https://orcid.org/0009-0006-5676-5151","affiliations":[{"raw_affiliation_string":"Ruhr University Bochum","institution_ids":["https://openalex.org/I904495901"]}]},{"author_position":"middle","author":{"id":null,"display_name":"Hebrok, Sven","orcid":"https://orcid.org/0009-0006-1172-1665"},"institutions":[{"id":"https://openalex.org/I206945453","display_name":"Paderborn University","ror":"https://ror.org/058kzsd48","country_code":"DE","type":"education","lineage":["https://openalex.org/I206945453"]}],"countries":["DE"],"is_corresponding":false,"raw_author_name":"Hebrok, Sven","raw_affiliation_strings":["Paderborn University"],"raw_orcid":"https://orcid.org/0009-0006-1172-1665","affiliations":[{"raw_affiliation_string":"Paderborn University","institution_ids":["https://openalex.org/I206945453"]}]},{"author_position":"middle","author":{"id":null,"display_name":"Brinkmann, Marcus","orcid":"https://orcid.org/0000-0001-5649-6357"},"institutions":[{"id":"https://openalex.org/I904495901","display_name":"Ruhr University Bochum","ror":"https://ror.org/04tsk2644","country_code":"DE","type":"education","lineage":["https://openalex.org/I904495901"]}],"countries":["DE"],"is_corresponding":false,"raw_author_name":"Brinkmann, Marcus","raw_affiliation_strings":["Ruhr University Bochum"],"raw_orcid":"https://orcid.org/0000-0001-5649-6357","affiliations":[{"raw_affiliation_string":"Ruhr University Bochum","institution_ids":["https://openalex.org/I904495901"]}]},{"author_position":"middle","author":{"id":null,"display_name":"Somorovsky, Juraj","orcid":"https://orcid.org/0000-0002-3593-7720"},"institutions":[{"id":"https://openalex.org/I206945453","display_name":"Paderborn University","ror":"https://ror.org/058kzsd48","country_code":"DE","type":"education","lineage":["https://openalex.org/I206945453"]},{"id":"https://openalex.org/I4210135076","display_name":"London Borough of Hackney","ror":"https://ror.org/036amgv56","country_code":"GB","type":"government","lineage":["https://openalex.org/I4210135076"]}],"countries":["DE","GB"],"is_corresponding":false,"raw_author_name":"Somorovsky, Juraj","raw_affiliation_strings":["Paderborn University","Hackmanit GmbH"],"raw_orcid":"https://orcid.org/0000-0002-3593-7720","affiliations":[{"raw_affiliation_string":"Paderborn University","institution_ids":["https://openalex.org/I206945453"]},{"raw_affiliation_string":"Hackmanit GmbH","institution_ids":["https://openalex.org/I4210135076"]}]},{"author_position":"last","author":{"id":null,"display_name":"Schwenk, Joerg","orcid":"https://orcid.org/0000-0001-9315-7354"},"institutions":[{"id":"https://openalex.org/I904495901","display_name":"Ruhr University Bochum","ror":"https://ror.org/04tsk2644","country_code":"DE","type":"education","lineage":["https://openalex.org/I904495901"]}],"countries":["DE"],"is_corresponding":false,"raw_author_name":"Schwenk, Joerg","raw_affiliation_strings":["Ruhr University Bochum"],"raw_orcid":"https://orcid.org/0000-0001-9315-7354","affiliations":[{"raw_affiliation_string":"Ruhr University Bochum","institution_ids":["https://openalex.org/I904495901"]}]}],"institutions":[],"countries_distinct_count":3,"institutions_distinct_count":8,"corresponding_author_ids":[],"corresponding_institution_ids":[],"apc_list":null,"apc_paid":null,"fwci":null,"has_fulltext":false,"cited_by_count":0,"citation_normalized_percentile":null,"cited_by_percentile_year":null,"biblio":{"volume":null,"issue":null,"first_page":null,"last_page":null},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":null,"topics":[],"keywords":[{"id":"https://openalex.org/keywords/exploit","display_name":"Exploit","score":0.6074000000953674},{"id":"https://openalex.org/keywords/software","display_name":"Software","score":0.5629000067710876},{"id":"https://openalex.org/keywords/layer","display_name":"Layer (electronics)","score":0.5403000116348267},{"id":"https://openalex.org/keywords/application-layer","display_name":"Application layer","score":0.4440000057220459},{"id":"https://openalex.org/keywords/implementation","display_name":"Implementation","score":0.4147000014781952},{"id":"https://openalex.org/keywords/transport-layer-security","display_name":"Transport Layer Security","score":0.3181000053882599},{"id":"https://openalex.org/keywords/key","display_name":"Key (lock)","score":0.31290000677108765}],"concepts":[{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.7616999745368958},{"id":"https://openalex.org/C165696696","wikidata":"https://www.wikidata.org/wiki/Q11287","display_name":"Exploit","level":2,"score":0.6074000000953674},{"id":"https://openalex.org/C2777904410","wikidata":"https://www.wikidata.org/wiki/Q7397","display_name":"Software","level":2,"score":0.5629000067710876},{"id":"https://openalex.org/C2779227376","wikidata":"https://www.wikidata.org/wiki/Q6505497","display_name":"Layer (electronics)","level":2,"score":0.5403000116348267},{"id":"https://openalex.org/C31258907","wikidata":"https://www.wikidata.org/wiki/Q1301371","display_name":"Computer network","level":1,"score":0.4731999933719635},{"id":"https://openalex.org/C190793597","wikidata":"https://www.wikidata.org/wiki/Q189768","display_name":"Application layer","level":3,"score":0.4440000057220459},{"id":"https://openalex.org/C149635348","wikidata":"https://www.wikidata.org/wiki/Q193040","display_name":"Embedded system","level":1,"score":0.4244000017642975},{"id":"https://openalex.org/C26713055","wikidata":"https://www.wikidata.org/wiki/Q245962","display_name":"Implementation","level":2,"score":0.4147000014781952},{"id":"https://openalex.org/C120314980","wikidata":"https://www.wikidata.org/wiki/Q180634","display_name":"Distributed computing","level":1,"score":0.3255999982357025},{"id":"https://openalex.org/C79403827","wikidata":"https://www.wikidata.org/wiki/Q3988","display_name":"Real-time computing","level":1,"score":0.3203999996185303},{"id":"https://openalex.org/C148176105","wikidata":"https://www.wikidata.org/wiki/Q206494","display_name":"Transport Layer Security","level":3,"score":0.3181000053882599},{"id":"https://openalex.org/C26517878","wikidata":"https://www.wikidata.org/wiki/Q228039","display_name":"Key (lock)","level":2,"score":0.31290000677108765},{"id":"https://openalex.org/C33884865","wikidata":"https://www.wikidata.org/wiki/Q1254335","display_name":"Cryptographic protocol","level":3,"score":0.3070000112056732},{"id":"https://openalex.org/C177264268","wikidata":"https://www.wikidata.org/wiki/Q1514741","display_name":"Set (abstract data type)","level":2,"score":0.2962999939918518},{"id":"https://openalex.org/C38652104","wikidata":"https://www.wikidata.org/wiki/Q3510521","display_name":"Computer security","level":1,"score":0.2879999876022339},{"id":"https://openalex.org/C2780385302","wikidata":"https://www.wikidata.org/wiki/Q367158","display_name":"Protocol (science)","level":3,"score":0.2840999960899353},{"id":"https://openalex.org/C1009929","wikidata":"https://www.wikidata.org/wiki/Q179550","display_name":"Software bug","level":3,"score":0.27880001068115234},{"id":"https://openalex.org/C62913178","wikidata":"https://www.wikidata.org/wiki/Q7554361","display_name":"Software security assurance","level":4,"score":0.26269999146461487},{"id":"https://openalex.org/C2983609787","wikidata":"https://www.wikidata.org/wiki/Q10534782","display_name":"Software implementation","level":3,"score":0.2563999891281128},{"id":"https://openalex.org/C12269588","wikidata":"https://www.wikidata.org/wiki/Q132364","display_name":"Communications protocol","level":2,"score":0.2502000033855438}],"mesh":[],"locations_count":1,"locations":[{"id":"doi:10.5281/zenodo.17855525","is_oa":true,"landing_page_url":"https://doi.org/10.5281/zenodo.17855525","pdf_url":null,"source":{"id":"https://openalex.org/S4306400562","display_name":"Zenodo (CERN European Organization for Nuclear Research)","issn_l":null,"issn":null,"is_oa":true,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/I67311998","host_organization_name":"European Organization for Nuclear Research","host_organization_lineage":["https://openalex.org/I67311998"],"host_organization_lineage_names":[],"type":"repository"},"license":null,"license_id":null,"version":null,"is_accepted":false,"is_published":null,"raw_source_name":null,"raw_type":"dataset"}],"best_oa_location":{"id":"doi:10.5281/zenodo.17855525","is_oa":true,"landing_page_url":"https://doi.org/10.5281/zenodo.17855525","pdf_url":null,"source":{"id":"https://openalex.org/S4306400562","display_name":"Zenodo (CERN European Organization for Nuclear Research)","issn_l":null,"issn":null,"is_oa":true,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/I67311998","host_organization_name":"European Organization for Nuclear Research","host_organization_lineage":["https://openalex.org/I67311998"],"host_organization_lineage_names":[],"type":"repository"},"license":null,"license_id":null,"version":null,"is_accepted":false,"is_published":false,"raw_source_name":null,"raw_type":"dataset"},"sustainable_development_goals":[],"awards":[],"funders":[],"has_content":{"grobid_xml":false,"pdf":false},"content_urls":null,"referenced_works_count":0,"referenced_works":[],"related_works":[],"abstract_inverted_index":{"Artifacts":[0],"for":[1,25,33,44],"our":[2,18,22,30],"USENIX":[3],"Security":[4],"'26":[5],"paper":[6],"\"Opossum":[7],"Attack:":[8],"Application":[9],"Layer":[10],"Desynchronization":[11],"using":[12],"Opportunistic":[13],"TLS\".":[14],"As":[15],"part":[16],"of":[17],"artifacts,":[19],"we":[20],"release":[21],"proof-of-concept":[23,31],"exploits":[24],"HTTPS":[26],"as":[27,29,38],"well":[28],"desynchronizations":[32],"the":[34,57],"additional":[35],"protocols":[36],"identified":[37],"affected.":[39],"We":[40],"further":[41],"provide":[42],"Dockerfiles":[43],"software":[45],"implementations":[46],"that":[47],"support":[48],"opportunistic":[49],"HTTP.":[50],"Further":[51],"details":[52],"can":[53],"be":[54],"found":[55],"in":[56],"individual":[58],"README":[59],"files.":[60]},"counts_by_year":[],"updated_date":"2026-06-11T09:08:48.828518","created_date":"2025-12-10T00:00:00"}
