{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2025,12,21]],"date-time":"2025-12-21T01:36:48Z","timestamp":1766281008659,"version":"3.40.5"},"publisher-location":"Cham","reference-count":37,"publisher":"Springer International Publishing","isbn-type":[{"type":"print","value":"9783319075358"},{"type":"electronic","value":"9783319075365"}],"license":[{"start":{"date-parts":[[2014,1,1]],"date-time":"2014-01-01T00:00:00Z","timestamp":1388534400000},"content-version":"tdm","delay-in-days":0,"URL":"http:\/\/www.springer.com\/tdm"}],"content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":[],"published-print":{"date-parts":[[2014]]},"DOI":"10.1007\/978-3-319-07536-5_24","type":"book-chapter","created":{"date-parts":[[2014,6,4]],"date-time":"2014-06-04T23:14:16Z","timestamp":1401923656000},"page":"401-418","source":"Crossref","is-referenced-by-count":8,"title":["WebTrust \u2013 A Comprehensive Authenticity and Integrity Framework for HTTP"],"prefix":"10.1007","author":[{"given":"Michael","family":"Backes","sequence":"first","affiliation":[]},{"given":"Rainer W.","family":"Gerling","sequence":"additional","affiliation":[]},{"given":"Sebastian","family":"Gerling","sequence":"additional","affiliation":[]},{"given":"Stefan","family":"N\u00fcrnberger","sequence":"additional","affiliation":[]},{"given":"Dominique","family":"Schr\u00f6der","sequence":"additional","affiliation":[]},{"given":"Mark","family":"Simkin","sequence":"additional","affiliation":[]}],"member":"297","reference":[{"key":"24_CR1","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"publisher","first-page":"165","DOI":"10.1007\/978-3-540-30598-9_12","volume-title":"Security in Communication Networks","author":"G. Ateniese","year":"2005","unstructured":"Ateniese, G., de Medeiros, B.: On the Key Exposure Problem in Chameleon Hashes. In: Blundo, C., Cimato, S. (eds.) SCN 2004. LNCS, vol.\u00a03352, pp. 165\u2013179. Springer, Heidelberg (2005)"},{"key":"24_CR2","doi-asserted-by":"crossref","unstructured":"Bayardo, R.J., Sorensen, J.S.: Merkle tree authentication of HTTP responses. In: Proc. of the 14th International Conference on World Wide Web (WWW 2005), pp. 1182\u20131183. ACM (2005)","DOI":"10.1145\/1062745.1062929"},{"key":"24_CR3","doi-asserted-by":"crossref","unstructured":"Bellare, M., Rogaway, P.: Random Oracles are Practical: A Paradigm for Designing Efficient Protocols. In: Proc. of the 1st ACM Conference on Computer and Communication Security (CCS 1993), pp. 62\u201373. ACM (1993)","DOI":"10.1145\/168588.168596"},{"key":"24_CR4","unstructured":"bouncycastle.org: The Legion of the Bouncy Castle (2013), http:\/\/www.bouncycastle.org\/"},{"key":"24_CR5","doi-asserted-by":"crossref","unstructured":"Catalano, D., Fiore, D., Gennaro, R.: Certificateless onion routing. In: Proc. of the 16th ACM Conference on Computer and Communication Security (CCS 2009), pp. 151\u2013160. ACM (2009)","DOI":"10.1145\/1653662.1653682"},{"key":"24_CR6","doi-asserted-by":"crossref","unstructured":"Choi, T., Gouda, M.G.: HTTPI: An HTTP with Integrity. In: Proc. of the 20th International Conference on Computer Communications and Networks (ICCCN 2011), pp. 1\u20136. IEEE Computer Society (2011)","DOI":"10.1109\/ICCCN.2011.6005788"},{"key":"24_CR7","unstructured":"The Chromium Projects (2014), http:\/\/www.chromium.org\/"},{"key":"24_CR8","doi-asserted-by":"crossref","unstructured":"Devanbu, P., Gertz, M., Kwong, A., Martel, C., Nuckolls, G., Stubblebine, S.G.: Flexible Authentication Of XML documents. In: Proc. of the 8th ACM Conference on Computer and Communication Security (CCS 2001), pp. 136\u2013145. ACM (2001)","DOI":"10.1145\/501983.502003"},{"key":"24_CR9","unstructured":"Fielding, R., Gettys, J., Mogul, J., Frystyk, H., Masinter, L., Leach, P., Berners-Lee, T.: RFC 2616 - Hypertext Transfer Protocol \u2013 HTTP\/1.1 (1999), http:\/\/tools.ietf.org\/html\/rfc2616"},{"key":"24_CR10","doi-asserted-by":"crossref","unstructured":"Fox, A., Brewer, E.A.: Reducing WWW Latency and Bandwidth Requirements by Real-Time Distillation. In: Proc. of the 5th International Conference on World Wide Web (WWW 1996), pp. 1445\u20131456. Elsevier (1996)","DOI":"10.1016\/0169-7552(96)00027-X"},{"key":"24_CR11","unstructured":"Franks, J., Hallam-Baker, P., Hostetler, J., Lawrence, S., Leach, P., Luotonen, A., Stewart, L.: RFC 2617 - HTTP Authentication: Basic and Digest Access Authentication (1999), http:\/\/tools.ietf.org\/html\/rfc2617"},{"key":"24_CR12","doi-asserted-by":"crossref","unstructured":"Gaspard, C., Goldberg, S., Itani, W., Bertino, E., Nita-Rotaru, C.: Sine: Cache-friendly integrity for the web. In: Proc. of the 5th IEEE Workshop on Secure Network Protocols (NPSec 2009), pp. 7\u201312. IEEE Computer Society (2009)","DOI":"10.1109\/NPSEC.2009.5342250"},{"key":"24_CR13","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"publisher","first-page":"180","DOI":"10.1007\/BFb0052235","volume-title":"Advances in Cryptology - CRYPTO \u201997","author":"R. Gennaro","year":"1997","unstructured":"Gennaro, R., Rohatgi, P.: How to sign digital streams. In: Kaliski Jr., B.S. (ed.) CRYPTO 1997. LNCS, vol.\u00a01294, pp. 180\u2013197. Springer, Heidelberg (1997)"},{"key":"24_CR14","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"publisher","first-page":"381","DOI":"10.1007\/978-3-642-31284-7_23","volume-title":"Applied Cryptography and Network Security","author":"J. Gionta","year":"2012","unstructured":"Gionta, J., Ning, P., Zhang, X.: iHTTP: Efficient Authentication of Non-confidential HTTP Traffic. In: Bao, F., Samarati, P., Zhou, J. (eds.) ACNS 2012. LNCS, vol.\u00a07341, pp. 381\u2013399. Springer, Heidelberg (2012)"},{"key":"24_CR15","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"publisher","first-page":"333","DOI":"10.1007\/978-3-642-01001-9_19","volume-title":"Advances in Cryptology - EUROCRYPT 2009","author":"S. Hohenberger","year":"2009","unstructured":"Hohenberger, S., Waters, B.: Realizing Hash-and-Sign Signatures under Standard Assumptions. In: Joux, A. (ed.) EUROCRYPT 2009. LNCS, vol.\u00a05479, pp. 333\u2013350. Springer, Heidelberg (2009)"},{"key":"24_CR16","unstructured":"Katz, J., Lindell, Y.: Introduction to Modern Cryptography (Chapman & Hall\/Crc Cryptography and Network Security Series). Chapman and Hall\/CRC (2007)"},{"key":"24_CR17","unstructured":"Krawczyk, H., Rabin, T.: Chameleon Signatures. In: Proc. of the 7th Annual Network and Distributed System Security Symposium (NDSS 2000). The Internet Society (2000)"},{"key":"24_CR18","unstructured":"Lesniewski-Laas, C., Kaashoek, M.F.: SSL Splitting: Securely Serving Data from Untrusted Caches. In: Proc. of the 12th Usenix Security Symposium, pp. 187\u2013199. Usenix Association (2003)"},{"issue":"5","key":"24_CR19","doi-asserted-by":"publisher","first-page":"763","DOI":"10.1016\/j.comnet.2005.01.006","volume":"48","author":"C. Lesniewski-Laas","year":"2005","unstructured":"Lesniewski-Laas, C., Kaashoek, M.F.: SSL splitting: Securely serving data from untrusted caches. Computer Networks\u00a048(5), 763\u2013779 (2005)","journal-title":"Computer Networks"},{"key":"24_CR20","unstructured":"Lin, C.Y., Chang, S.F.: Generating robust digital signature for image\/video authentication. In: Proc. of the 1st Workshop on Multimedia and Security at ACM Multimedia 1998, vol. 98, pp. 94\u2013108. ACM (1998)"},{"key":"24_CR21","unstructured":"Merkle, R.C.: Method of Providing Digital Signatures (US Patent: US4309569A) (1979)"},{"key":"24_CR22","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"crossref","first-page":"417","DOI":"10.1007\/3-540-39799-X_31","volume-title":"Advances in Cryptology","author":"V.S. Miller","year":"1986","unstructured":"Miller, V.S.: Use of Elliptic Curves in Cryptography. In: Williams, H.C. (ed.) CRYPTO 1985. LNCS, vol.\u00a0218, pp. 417\u2013426. Springer, Heidelberg (1986)"},{"issue":"5","key":"24_CR23","doi-asserted-by":"publisher","first-page":"686","DOI":"10.1109\/TC.2011.60","volume":"61","author":"T. Moyer","year":"2012","unstructured":"Moyer, T., Butler, K.R.B., Schiffman, J., McDaniel, P., Jaeger, T.: Scalable Web Content Attestation. IEEE Transactions on Computers\u00a061(5), 686\u2013699 (2012)","journal-title":"IEEE Transactions on Computers"},{"key":"24_CR24","unstructured":"NIST: Recommendation for Key Management. Special Publication 800-57 Part 1 Rev. 3 (2012)"},{"key":"24_CR25","unstructured":"OpenSSL. (2014), http:\/\/www.openssl.org\/"},{"key":"24_CR26","unstructured":"Oracle: Java Cryptography Architecture \u2013 Oracle Providers Documentation (2013), http:\/\/docs.oracle.com\/javase\/7\/docs\/technotes\/guides\/security\/SunProviders.html"},{"key":"24_CR27","unstructured":"Pannetrat, A., Molva, R.: Efficient Multicast Packet Authentication. In: Proc. of the 10th Annual Network and Distributed System Security Symposium (NDSS 2003). The Internet Society (2003)"},{"key":"24_CR28","doi-asserted-by":"crossref","unstructured":"Perrig, A., Canetti, R., Tygar, D., Song, D.: Efficient authentication and signing of multicast streams over lossy channels. In: Proc. of the 2000 IEEE Symposium on Security and Privacy (Oakland 2000), pp. 56\u201373. IEEE Computer Society (2000)","DOI":"10.1109\/SECPRI.2000.848446"},{"key":"24_CR29","series-title":"IFIP","doi-asserted-by":"publisher","first-page":"411","DOI":"10.1007\/1-4020-8143-X_27","volume-title":"Security and Protection in Information Processing Systems","author":"I. Ray","year":"2004","unstructured":"Ray, I., Kim, E.: Collective Signature for Efficient Authentication of XML Documents. In: Deswarte, Y., Cuppens, F., Jajodia, S., Wang, L. (eds.) Security and Protection in Information Processing Systems. IFIP, vol.\u00a0147, pp. 411\u2013424. Springer, Boston (2004)"},{"key":"24_CR30","unstructured":"Reis, C., Gribble, S.D., Kohno, T., Weaver, N.C.: Detecting In-Flight Page Changes with Web Tripwires. In: Proc. of the 5th Usenix Symposium on Networked Systems Design and Implementation (NSDI 2008), pp. 31\u201344. Usenix Association (2008)"},{"key":"24_CR31","unstructured":"Rescorla, E.: RFC 2818 - HTTP Over TLS (2000), http:\/\/tools.ietf.org\/html\/rfc2818"},{"key":"24_CR32","unstructured":"Rescorla, E., Schiffman, A.: RFC 2660 - The Secure HyperText Transfer Protocol (1999), http:\/\/tools.ietf.org\/html\/rfc2660"},{"issue":"2","key":"24_CR33","doi-asserted-by":"publisher","first-page":"120","DOI":"10.1145\/359340.359342","volume":"21","author":"R.L. Rivest","year":"1978","unstructured":"Rivest, R.L., Shamir, A., Adleman, L.M.: A Method for Obtaining Digital Signatures and Public-Key Cryptosystems. Communications of the ACM (CACM)\u00a021(2), 120\u2013126 (1978)","journal-title":"Communications of the ACM (CACM)"},{"key":"24_CR34","doi-asserted-by":"crossref","unstructured":"Schr\u00f6der, D., Schr\u00f6der, H.: Verifiable data streaming. In: Proc. of the 19th ACM Conference on Computer and Communication Security (CCS 2012), pp. 953\u2013964. ACM (2012)","DOI":"10.1145\/2382196.2382297"},{"key":"24_CR35","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"publisher","first-page":"355","DOI":"10.1007\/3-540-44647-8_21","volume-title":"Advances in Cryptology - CRYPTO 2001","author":"A. Shamir","year":"2001","unstructured":"Shamir, A., Tauman, Y.: Improved Online\/Offline Signature Schemes. In: Kilian, J. (ed.) CRYPTO 2001. LNCS, vol.\u00a02139, pp. 355\u2013367. Springer, Heidelberg (2001)"},{"key":"24_CR36","unstructured":"Siege Home (2014), http:\/\/www.joedog.org\/siege-home\/"},{"key":"24_CR37","doi-asserted-by":"crossref","unstructured":"Singh, K., Wang, H.J., Moshchuk, A., Jackson, C., Lee, W.: Practical End-to-End Web Content Integrity. In: Proc. of the 21st International Conference on World Wide Web (WWW 2012), pp. 659\u2013668. ACM (2012)","DOI":"10.1145\/2187836.2187926"}],"container-title":["Lecture Notes in Computer Science","Applied Cryptography and Network Security"],"original-title":[],"language":"en","link":[{"URL":"http:\/\/link.springer.com\/content\/pdf\/10.1007\/978-3-319-07536-5_24","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2025,5,3]],"date-time":"2025-05-03T07:03:49Z","timestamp":1746255829000},"score":1,"resource":{"primary":{"URL":"http:\/\/link.springer.com\/10.1007\/978-3-319-07536-5_24"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2014]]},"ISBN":["9783319075358","9783319075365"],"references-count":37,"URL":"https:\/\/doi.org\/10.1007\/978-3-319-07536-5_24","relation":{},"ISSN":["0302-9743","1611-3349"],"issn-type":[{"type":"print","value":"0302-9743"},{"type":"electronic","value":"1611-3349"}],"subject":[],"published":{"date-parts":[[2014]]}}}