From Struggle to Simplicity with a Usable and Secure API for Encryption in Java

Cryptography misuses are prevalent in the wild. Crypto APIs are hard to use for developers, and static analysis tools do not detect every misuse. We developed SafEncrypt, an API that streamlines encryption tasks for Java developers. It is built on top of the native Java Cryptography Architecture, an...

Full description

Saved in:
Bibliographic Details
Main Authors: Firouzi, Ehsan, Mansuri, Ammar, Ghafari, Mohammad, Kaveh, Maziar
Format: Journal Article
Language:English
Published: 08-09-2024
Subjects:
Online Access:Get full text
Tags: Add Tag
No Tags, Be the first to tag this record!
Description
Summary:Cryptography misuses are prevalent in the wild. Crypto APIs are hard to use for developers, and static analysis tools do not detect every misuse. We developed SafEncrypt, an API that streamlines encryption tasks for Java developers. It is built on top of the native Java Cryptography Architecture, and it shields developers from crypto complexities and erroneous low-level details. Experiments showed that SafEncrypt is suitable for developers with varying levels of experience.
DOI:10.48550/arxiv.2409.05128