Back to Search Start Over

A web tool for analyzing FIDO2/WebAuthn Requests and Responses

Authors :
Ilias Politis
Athanasios Vasileios Grammatopoulos
Christos Xenakis
Source :
ARES
Publication Year :
2021
Publisher :
ACM, 2021.

Abstract

Passwords are a problem in today's digital world. FIDO2, through WebAuthn, brought alternative password-less authentication that is more usable and secure than classic password-based systems, for web applications and services. In this work, we give a brief overview of FIDO2, and we present WebDevAuthn, a novel FIDO2/WebAuthn requests and responses analyser web tool. This tool can be used to help developers understand how FIDO2 works, aid in the development processes by speeding debugging using the WebAuthn traffic analyser and to test the security of an application through penetration testing by editing the WebAuhn requests or responses.

Details

Database :
OpenAIRE
Journal :
The 16th International Conference on Availability, Reliability and Security
Accession number :
edsair.doi...........a778b200aaa12d568e88366494a16bf3
Full Text :
https://doi.org/10.1145/3465481.3469209