{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2025,3,27]],"date-time":"2025-03-27T12:05:40Z","timestamp":1743077140326,"version":"3.40.3"},"publisher-location":"Cham","reference-count":41,"publisher":"Springer Nature Switzerland","isbn-type":[{"type":"print","value":"9783031411809"},{"type":"electronic","value":"9783031411816"}],"license":[{"start":{"date-parts":[[2023,1,1]],"date-time":"2023-01-01T00:00:00Z","timestamp":1672531200000},"content-version":"tdm","delay-in-days":0,"URL":"https:\/\/www.springernature.com\/gp\/researchers\/text-and-data-mining"},{"start":{"date-parts":[[2023,1,1]],"date-time":"2023-01-01T00:00:00Z","timestamp":1672531200000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/www.springernature.com\/gp\/researchers\/text-and-data-mining"}],"content-domain":{"domain":["link.springer.com"],"crossmark-restriction":false},"short-container-title":[],"published-print":{"date-parts":[[2023]]},"DOI":"10.1007\/978-3-031-41181-6_16","type":"book-chapter","created":{"date-parts":[[2023,10,3]],"date-time":"2023-10-03T19:02:38Z","timestamp":1696359758000},"page":"284-298","update-policy":"https:\/\/doi.org\/10.1007\/springer_crossmark_policy","source":"Crossref","is-referenced-by-count":0,"title":["A Framework for\u00a0TLS Implementation Vulnerability Testing in\u00a05G"],"prefix":"10.1007","author":[{"given":"Yong","family":"Wang","sequence":"first","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Rui","family":"Wang","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Xin","family":"Liu","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Donglan","family":"Liu","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Hao","family":"Zhang","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Lei","family":"Ma","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Fangzhe","family":"Zhang","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Lili","family":"Sun","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Zhenghao","family":"Li","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"297","published-online":{"date-parts":[[2023,10,4]]},"reference":[{"key":"16_CR1","doi-asserted-by":"publisher","DOI":"10.1016\/j.comnet.2019.106984","volume":"167","author":"AA Barakabitze","year":"2020","unstructured":"Barakabitze, A.A., Ahmad, A., Mijumbi, R., Hines, A.: 5G network slicing using SDN and NFV: a survey of taxonomy, architectures and future challenges. Comput. Netw. 167, 106984 (2020)","journal-title":"Comput. Netw."},{"key":"16_CR2","unstructured":"3GPP TS 23.501. System Architecture for the 5G System [EB\/OL]. https:\/\/www.3gpp.org\/ftp\/Specs\/archive\/23_series\/23.501\/. Accessed 19 July 2019"},{"issue":"4","key":"16_CR3","doi-asserted-by":"publisher","first-page":"2787","DOI":"10.1109\/COMST.2016.2556979","volume":"18","author":"V Del Piccolo","year":"2016","unstructured":"Del Piccolo, V., Amamou, A., Haddadou, K., Pujolle, G.: A survey of network isolation solutions for multi-tenant data centers. IEEE Commun. Surv. Tutor. 18(4), 2787\u20132821 (2016)","journal-title":"IEEE Commun. Surv. Tutor."},{"key":"16_CR4","doi-asserted-by":"crossref","unstructured":"Hu, X., Liu, C., Liu, S., You, W., Zhao, Y.: Signalling security analysis: is HTTP\/2 secure in 5G core network? In: Proceedings on IEEE 10th International Conference on Wireless Communications and Signal Processing, Hangzhou, China, pp. 1\u20136. IEEE (2018)","DOI":"10.1109\/WCSP.2018.8555612"},{"key":"16_CR5","doi-asserted-by":"crossref","unstructured":"Sathi, V.N., Srinivasan, M., Thiruvasagam, P.K., Chebiyyam, S.R.M.: A novel protocol for securing network slice component association and slice isolation in 5G networks. In: Proceedings on the 21st ACM International Conference on Modeling. Analysis and Simulation of Wireless and Mobile Systems, Montreal, QC, Canada, pp. 249\u2013253. ACM (2018)","DOI":"10.1145\/3242102.3242135"},{"key":"16_CR6","unstructured":"AlFardan, N.J., Bernstein, D.J., Paterson, K.G., Poettering, B., Schuldt, J.C.N.: On the security of RC4 in TLS. In: Proceedings on the 22nd USENIX Conference on Security, USA, pp. 305\u2013320. USENIX Association (2013)"},{"key":"16_CR7","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"publisher","first-page":"299","DOI":"10.1007\/11502760_20","volume-title":"Fast Software Encryption","author":"AKL Yau","year":"2005","unstructured":"Yau, A.K.L., Paterson, K.G., Mitchell, C.J.: Padding oracle attacks on CBC-mode encryption with secret and random IVs. In: Gilbert, H., Handschuh, H. (eds.) FSE 2005. LNCS, vol. 3557, pp. 299\u2013319. Springer, Heidelberg (2005). https:\/\/doi.org\/10.1007\/11502760_20"},{"key":"16_CR8","doi-asserted-by":"crossref","unstructured":"Al Fardan, N.J., Paterson, K.G.: Lucky thirteen: breaking the TLS and DTLS record protocols. In: Proceedings on IEEE Symposium on Security and Privacy, San Francisco, CA, USA, pp. 526\u2013540. IEEE Computer Society (2013)","DOI":"10.1109\/SP.2013.42"},{"key":"16_CR9","unstructured":"Moller, B., Duong, T., Kotowicz, K.: This POODLE bites: exploiting the SSL 3.0 fallback (2014)"},{"key":"16_CR10","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"publisher","first-page":"86","DOI":"10.1007\/978-3-662-47854-7_6","volume-title":"Financial Cryptography and Data Security","author":"J Alawatugoda","year":"2015","unstructured":"Alawatugoda, J., Stebila, D., Boyd, C.: Protecting encrypted cookies from compression side-channel attacks. In: B\u00f6hme, R., Okamoto, T. (eds.) FC 2015. LNCS, vol. 8975, pp. 86\u2013106. Springer, Heidelberg (2015). https:\/\/doi.org\/10.1007\/978-3-662-47854-7_6"},{"key":"16_CR11","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"publisher","first-page":"263","DOI":"10.1007\/3-540-45661-9_21","volume-title":"Fast Software Encryption","author":"J Kelsey","year":"2002","unstructured":"Kelsey, J.: Compression and information leakage of plaintext. In: Daemen, J., Rijmen, V. (eds.) FSE 2002. LNCS, vol. 2365, pp. 263\u2013276. Springer, Heidelberg (2002). https:\/\/doi.org\/10.1007\/3-540-45661-9_21"},{"key":"16_CR12","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"publisher","first-page":"1","DOI":"10.1007\/BFb0055716","volume-title":"Advances in Cryptology \u2014 CRYPTO \u201998","author":"D Bleichenbacher","year":"1998","unstructured":"Bleichenbacher, D.: Chosen ciphertext attacks against protocols based on the RSA encryption standard PKCS #1. In: Krawczyk, H. (ed.) CRYPTO 1998. LNCS, vol. 1462, pp. 1\u201312. Springer, Heidelberg (1998). https:\/\/doi.org\/10.1007\/BFb0055716"},{"key":"16_CR13","unstructured":"Heartbleed, CVE-2014-0160 (2015). http:\/\/heartbleed.com\/"},{"key":"16_CR14","unstructured":"Garman, C., Paterson, K.G., Van der Merwe, T.: Attacks only get better: password recovery attacks against RC4 in TLS. In: Proceedings on USENIX Security Symposium, Washington, D.C., USA, pp. 113\u2013128. USENIX Association (2015)"},{"key":"16_CR15","unstructured":"Vanhoef, M., Piessens, F.: All your biases belong to us: breaking RC4 in WPA-TKIP and TLS. In: Proceedings on USENIX Security Symposium, Washington, D.C., USA, pp. 97\u2013112. USENIX Association (2015)"},{"key":"16_CR16","unstructured":"Alfardan, N., Bernstein, D.J., Paterson, K.G., Poettering, B., Schuldt, J.C.N.: On the security of RC4 in TLS. In: Proceedings on USENIX Security Symposium, Washington, D.C., USA, pp. 305\u2013320. USENIX Association (2013)"},{"key":"16_CR17","unstructured":"Aviram, N., et al.: DROWN: breaking TLS using SSLv2. In: Proceedings on USENIX Security Symposium, Austin, TX, USA, pp. 689\u2013706. USENIX Association (2016)"},{"issue":"7","key":"16_CR18","first-page":"8","volume":"41","author":"B Karthikeyan","year":"2016","unstructured":"Karthikeyan, B., Leurent, G.: Transcript collision attacks: breaking authentication in TLS, IKE, and SSH. Br. J. Psychiatry J. Ment. Sci. 41(7), 8\u201313 (2016)","journal-title":"Br. J. Psychiatry J. Ment. Sci."},{"key":"16_CR19","doi-asserted-by":"crossref","unstructured":"Durumeric, Z., et al.: The matter of heartbleed. In: Proceedings on ACM Internet Measurement Conference, Vancouver, BC, Canada, pp. 475\u2013488. ACM (2014)","DOI":"10.1145\/2663716.2663755"},{"key":"16_CR20","unstructured":"Heninger, N., Durumeric, Z., Wustrow, E., Halderman, J.A.: Mining your Ps and Qs: detection of widespread weak keys in network devices. In: Proceedings on USENIX Security Symposium, Bellevue, WA, USA, pp. 205\u2013220. USENIX Association (2012)"},{"key":"16_CR21","doi-asserted-by":"crossref","unstructured":"Bhargavan, K., Lavaud, A.D., Fournet, C., Pironti, A., Strub, P.Y.: Triple handshakes and cookie cutters: breaking and fixing authentication over TLS. In: Proceedings on IEEE Symposium on Security and Privacy (SP), San Francisco, CA, USA, pp. 98\u2013113. IEEE Computer Society (2014)","DOI":"10.1109\/SP.2014.14"},{"key":"16_CR22","doi-asserted-by":"crossref","unstructured":"Bhargavan, K., Leurent, G.: Transcript collision attacks: breaking authentication in TLS, IKE, and SSH. In: Proceedings on Network and Distributed System Security Symposium (NDSS), San Diego, CA, USA (2016)","DOI":"10.14722\/ndss.2016.23418"},{"key":"16_CR23","doi-asserted-by":"crossref","unstructured":"Adrian, D., et al.: Imperfect forward secrecy: how Diffie-Hellman fails in practice. In: Proceedings on ACM SIGSAC Conference on Computer and Communications Security, Denver, Colorado, USA, pp. 5\u201317. ACM (2015)","DOI":"10.1145\/2810103.2813707"},{"key":"16_CR24","doi-asserted-by":"crossref","unstructured":"Beurdouche, B., et al.: A messy state of the union: taming the composite state machines of TLS. In: Proceedings on IEEE Symposium on Security and Privacy, San Francisco, CA, USA. IEEE Computer Society (2015)","DOI":"10.1109\/SP.2015.39"},{"key":"16_CR25","doi-asserted-by":"crossref","unstructured":"Somorovsky, J.: Systematic fuzzing and testing of TLS libraries. In: Proceedings on ACM SIGSAC Conference on Computer and Communications Security (CCS), Vienna, Austria, pp. 1492\u20131504. ACM (2016)","DOI":"10.1145\/2976749.2978411"},{"key":"16_CR26","unstructured":"de Ruiter, J., Poll, E.: Protocol state fuzzing of TLS implementations. In: Proceedings on USENIX Security Symposium, Washington, D.C., USA, pp. 193\u2013206. USENIX Association (2015)"},{"key":"16_CR27","doi-asserted-by":"crossref","unstructured":"Dowling, B., Fischlin, M., Gunther, F., Stebila, D.: A cryptographic analysis of the TLS 1.3 handshake protocol candidates. In: Proceedings on ACM SIGSAC Conference on Computer and Communications Security, Denver, Colorado, USA, pp. 1197\u20131210. ACM (2015)","DOI":"10.1145\/2810103.2813653"},{"key":"16_CR28","unstructured":"Bock, H., Somorovsky, J., Young, C.: Return of Bleichenbacher\u2019s Oracle Threat (ROBOT). In: Proceedings on USENIX Security Symposium, Baltimore, MD, USA, pp. 817\u2013849. USENIX Association (2018)"},{"key":"16_CR29","doi-asserted-by":"crossref","unstructured":"Valenta, L., Sullivan, N., Sanso, A., Heninger, N.: Search of CurveSwap: measuring elliptic curve implementations in the wild. In: Proceedings on IEEE European Symposium on Security and Privacy, San Francisco, CA, USA, pp. 384\u2013398. IEEE Computer Society (2018)","DOI":"10.1109\/EuroSP.2018.00034"},{"key":"16_CR30","doi-asserted-by":"crossref","unstructured":"Nemec, M., Klinec, D., Svenda, P., Sekan, P., Matyas, V.: Measuring popularity of cryptographic libraries in internet-wide scans. In: Proceedings on Annual Computer Security Applications Conference, Dallas, Texas, USA, pp. 162\u2013175. ACM (2017)","DOI":"10.1145\/3134600.3134612"},{"key":"16_CR31","doi-asserted-by":"crossref","unstructured":"Kotzias, P., Razaghpanah, A., Amann, J.: Coming of age: a longitudinal study of TLS deployment. In: Proceedings on ACM Internet Measurement Conference, Boston, MA, USA, pp. 415\u2013428. ACM (2018)","DOI":"10.1145\/3278532.3278568"},{"key":"16_CR32","doi-asserted-by":"crossref","unstructured":"Chen, C., Diao, W., Zeng, Y., Guo, S., Hu, C.: DRLgencert: deep learning-based automated testing of certificate verification in SSL\/TLS implementations. In: Proceedings on IEEE International Conference on Software Maintenance and Evolution, Madrid, Spain, pp. 48\u201358. IEEE (2018)","DOI":"10.1109\/ICSME.2018.00014"},{"key":"16_CR33","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"publisher","first-page":"533","DOI":"10.1007\/978-3-319-70972-7_30","volume-title":"Financial Cryptography and Data Security","author":"N Samarasinghe","year":"2017","unstructured":"Samarasinghe, N., Mannan, M.: Short paper: TLS ecosystems in networked devices vs. web servers. In: Kiayias, A. (ed.) FC 2017. LNCS, vol. 10322, pp. 533\u2013541. Springer, Cham (2017). https:\/\/doi.org\/10.1007\/978-3-319-70972-7_30"},{"key":"16_CR34","unstructured":"Censys. https:\/\/censys.io\/"},{"key":"16_CR35","doi-asserted-by":"crossref","unstructured":"Calzavara, S., Focardi, R., Nemec, M., et al.: Postcards from the post-HTTP world: amplification of HTTPS vulnerabilities in the web ecosystem. In: Proceedings on IEEE Symposium on Security and Privacy, San Francisco, CA, USA, pp. 281\u2013298. IEEE Computer Society (2019)","DOI":"10.1109\/SP.2019.00053"},{"key":"16_CR36","unstructured":"Shodan. https:\/\/www.shodan.io\/"},{"key":"16_CR37","doi-asserted-by":"crossref","unstructured":"Rizzi, M., Manfredi, S., Sciarretta, G., Ranise, S.: A modular and extensible framework for securing TLS. In: Proceedings on ACM Conference on Data and Application Security and Privacy, Washington, D.C., USA, pp. 119\u2013124. ACM (2022)","DOI":"10.1145\/3508398.3511505"},{"key":"16_CR38","unstructured":"Izhikevich, L., Teixeira, R., Durumeric, Z.: LZR: identifying unexpected internet services. In: Proceedings on USENIX Security Symposium, pp. 3111\u20133128. USENIX Association (2021)"},{"key":"16_CR39","unstructured":"TestSSL (2022). https:\/\/testssl.sh"},{"key":"16_CR40","unstructured":"TLS-attacker 3.8.1 (2022). https:\/\/github.com\/RUB-NDS\/TLS-Attacker"},{"key":"16_CR41","unstructured":"Wong, D.: How to backdoor Diffie-Hellman. Cryptology ePrint Archive, Paper 2016\/644 (2016)"}],"container-title":["Lecture Notes in Computer Science","Applied Cryptography and Network Security Workshops"],"original-title":[],"language":"en","link":[{"URL":"https:\/\/link.springer.com\/content\/pdf\/10.1007\/978-3-031-41181-6_16","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2023,10,3]],"date-time":"2023-10-03T19:04:45Z","timestamp":1696359885000},"score":1,"resource":{"primary":{"URL":"https:\/\/link.springer.com\/10.1007\/978-3-031-41181-6_16"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2023]]},"ISBN":["9783031411809","9783031411816"],"references-count":41,"URL":"https:\/\/doi.org\/10.1007\/978-3-031-41181-6_16","relation":{},"ISSN":["0302-9743","1611-3349"],"issn-type":[{"type":"print","value":"0302-9743"},{"type":"electronic","value":"1611-3349"}],"subject":[],"published":{"date-parts":[[2023]]},"assertion":[{"value":"4 October 2023","order":1,"name":"first_online","label":"First Online","group":{"name":"ChapterHistory","label":"Chapter History"}},{"value":"ACNS","order":1,"name":"conference_acronym","label":"Conference Acronym","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"International Conference on Applied Cryptography and Network Security","order":2,"name":"conference_name","label":"Conference Name","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"Kyoto","order":3,"name":"conference_city","label":"Conference City","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"Japan","order":4,"name":"conference_country","label":"Conference Country","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"2023","order":5,"name":"conference_year","label":"Conference Year","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"19 June 2023","order":7,"name":"conference_start_date","label":"Conference Start Date","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"22 June 2023","order":8,"name":"conference_end_date","label":"Conference End Date","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"21","order":9,"name":"conference_number","label":"Conference Number","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"acns2023","order":10,"name":"conference_id","label":"Conference ID","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"https:\/\/sulab-sever.u-aizu.ac.jp\/ACNS2023\/committees.html","order":11,"name":"conference_url","label":"Conference URL","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"Double-blind","order":1,"name":"type","label":"Type","group":{"name":"ConfEventPeerReviewInformation","label":"Peer Review Information (provided by the conference organizers)"}},{"value":"easychair","order":2,"name":"conference_management_system","label":"Conference Management System","group":{"name":"ConfEventPeerReviewInformation","label":"Peer Review Information (provided by the conference organizers)"}},{"value":"263","order":3,"name":"number_of_submissions_sent_for_review","label":"Number of Submissions Sent for Review","group":{"name":"ConfEventPeerReviewInformation","label":"Peer Review Information (provided by the conference organizers)"}},{"value":"53","order":4,"name":"number_of_full_papers_accepted","label":"Number of Full Papers Accepted","group":{"name":"ConfEventPeerReviewInformation","label":"Peer Review Information (provided by the conference organizers)"}},{"value":"0","order":5,"name":"number_of_short_papers_accepted","label":"Number of Short Papers Accepted","group":{"name":"ConfEventPeerReviewInformation","label":"Peer Review Information (provided by the conference organizers)"}},{"value":"20% - The value is computed by the equation \"Number of Full Papers Accepted \/ Number of Submissions Sent for Review * 100\" and then rounded to a whole number.","order":6,"name":"acceptance_rate_of_full_papers","label":"Acceptance Rate of Full Papers","group":{"name":"ConfEventPeerReviewInformation","label":"Peer Review Information (provided by the conference organizers)"}},{"value":"3.9","order":7,"name":"average_number_of_reviews_per_paper","label":"Average Number of Reviews per Paper","group":{"name":"ConfEventPeerReviewInformation","label":"Peer Review Information (provided by the conference organizers)"}},{"value":"14.2","order":8,"name":"average_number_of_papers_per_reviewer","label":"Average Number of Papers per Reviewer","group":{"name":"ConfEventPeerReviewInformation","label":"Peer Review Information (provided by the conference organizers)"}},{"value":"Yes","order":9,"name":"external_reviewers_involved","label":"External Reviewers Involved","group":{"name":"ConfEventPeerReviewInformation","label":"Peer Review Information (provided by the conference organizers)"}},{"value":"For the workshops 34 full papers have been accepted from a total of 73 submissions; 13 poster papers are also included.","order":10,"name":"additional_info_on_review_process","label":"Additional Info on Review Process","group":{"name":"ConfEventPeerReviewInformation","label":"Peer Review Information (provided by the conference organizers)"}}]}}