YoVDO

Fidelius - Protecting User Secrets from Compromised Browsers

Offered By: IEEE via YouTube

Tags

IEEE Symposium on Security and Privacy Courses Cybersecurity Courses Browser Security Courses

Course Description

Overview

Explore a groundbreaking architecture for protecting sensitive user data during web browsing sessions, even in the presence of a fully compromised browser and operating system. Learn about Fidelius, a system that leverages trusted hardware enclaves integrated into browsers to safeguard user secrets. Discover how this innovative approach addresses challenges in providing browser protection in malicious environments, offering support for form data integrity and privacy, secure JavaScript execution, XMLHttpRequests, and protected web storage. Examine the protocols developed for secure interactions between the enclave and various components, including the browser, keyboard, and display. Gain insights into the user interface considerations that ensure a consistent and simple experience for both developers and users. Understand the implementation of the first open-source system providing a trusted path from input/output peripherals to a hardware enclave without relying on additional hypervisor security assumptions. Evaluate Fidelius's performance overhead and its impact on page load times and user interactions for secured pages.

Syllabus

Fidelius: Protecting User Secrets from Compromised Browsers


Taught by

IEEE Symposium on Security and Privacy

Tags

Related Courses

Sensor Security
IEEE via YouTube
Tracking Ransomware End-to-end
IEEE via YouTube
Cinderella - Turning Shabby X.509 Certificates into Elegant Anonymous Credentials with the Magic of Verifiable Computation
IEEE via YouTube
Algorithmic Transparency via Quantitative Input Influence - Theory and Experiments with Learning Systems
IEEE via YouTube
Bitcoin Over Tor Isn't a Good Idea
IEEE via YouTube