Skip to main content

Showing 1–2 of 2 results for author: Jancar, J

Searching in archive cs. Search in all archives.
.
  1. arXiv:2404.14246  [pdf, other

    cs.CR

    Chain of trust: Unraveling references among Common Criteria certified products

    Authors: Adam Janovsky, Łukasz Chmielewski, Petr Svenda, Jan Jancar, Vashek Matyas

    Abstract: With 5394 security certificates of IT products and systems, the Common Criteria for Information Technology Security Evaluation have bred an ecosystem entangled with various kind of relations between the certified products. Yet, the prevalence and nature of dependencies among Common Criteria certified products remains largely unexplored. This study devises a novel method for building the graph of r… ▽ More

    Submitted 25 April, 2024; v1 submitted 22 April, 2024; originally announced April 2024.

  2. arXiv:2311.17603  [pdf, other

    cs.CR

    sec-certs: Examining the security certification practice for better vulnerability mitigation

    Authors: Adam Janovsky, Jan Jancar, Petr Svenda, Łukasz Chmielewski, Jiri Michalik, Vashek Matyas

    Abstract: Products certified under security certification frameworks such as Common Criteria undergo significant scrutiny during the costly certification process. Yet, critical vulnerabilities, including private key recovery (ROCA, Minerva, TPM-Fail...), get discovered in certified products with high assurance levels. Furthermore, assessing which certified products are impacted by such vulnerabilities is co… ▽ More

    Submitted 29 November, 2023; originally announced November 2023.