scispace - formally typeset
A

Andreas Pashalidis

Researcher at Royal Holloway, University of London

Publications -  7
Citations -  352

Andreas Pashalidis is an academic researcher from Royal Holloway, University of London. The author has contributed to research in topics: Password & Single sign-on. The author has an hindex of 6, co-authored 7 publications receiving 349 citations. Previous affiliations of Andreas Pashalidis include University of London.

Papers
More filters
Book ChapterDOI

A taxonomy of single sign-on systems

TL;DR: A taxonomy of SSO approaches is presented and some of the SSO schemes, services and products into that context enables decisions about the design and selection of future approaches to SSO to be made within a more structured context and reveals some important differences in the security properties that can be provided by various approaches.
Proceedings ArticleDOI

Impostor: a single sign-on system for use from untrusted devices

TL;DR: The design of an SSO system that is based on a trusted proxy, and that is suitable for use from an untrusted network access device is presented, resulting in a system that works with common Web browsers.
Proceedings ArticleDOI

Using GSM/UMTS for single sign-on

TL;DR: An SSO protocol is proposed where a GSM or UMTS operator plays the role of the ASP and by which its subscribers can be authenticated to SPs without any user interaction and in a way that preserves the user's privacy and mobility.
Book ChapterDOI

Limits to anonymity when using credentials

TL;DR: In this article, the authors identify certain privacy threats that apply to anonymous credential systems and provide some simple heuristics that aim to mitigate the exposure to the threats and identify directions for further research.
Book ChapterDOI

Using EMV Cards for Single Sign-On

TL;DR: An SSO scheme where user authentication is based on payment cards conforming to the EMV industry standard is proposed, which does not require online card issuer participation, preserves user mobility and does not put user's financial data at risk.