Secure (HTTPS) in the entry pages of the official websites of all (308) Portuguese municipalities. This is relevant because such websites are typically used to provide transactional services to citizens, and citizens need to trust that websites are authentic and that confidentiality and integrity of the information exchanged is assured in the communication process. Automated and, whenever needed, manual analyse...
Vehicular Ad hoc Networks (VANETs) support the development of safety and infotainment applications, allowing vehicles to communicate between each other and with the infrastructure, assuring their connection and of its occupants to the Internet These VANETs may rely on different technologies for their deployment, such as IEEE 802.11p/WAVE, C-V2X or Wi-Fi; however, complete coverage and full connectivity may not ...
In a scenario where hotspot wireless networks are increasingly being used, and given the amount of sensitive information exchanged on Internet interactions, there is the need to implement security mechanisms that guarantee data confdentiality and integrity in such networks, as well as the authenticity of the hotspot providers. However, many hotspots today use Captive Portals, which rely on authentication throug...
As a consequence of the epidemiological transition towards non-communicable diseases, integrated care approaches are required, not solely focused on medical purposes, but also on a range of essential activities for the maintenance of the individuals' quality of life. In order to allow the exchange of information, these integrated approaches might be supported by digital platforms, which need to provide trustful...
This paper presents a study on the evolution of the use of HTTPS by the official websites of all (308) Portuguese municipalities. One year ago, we found a bad situation regarding HTTPS usage: only a small percentage of websites adopted HTTPS correctly. The results were communicated to the relevant entities so actions could be taken. After one year, we performed a new assessment to check for evolution. This pape...
This paper presents a study on the adoption of HTTPS in the official websites of all (308) Portuguese municipalities. Automated and, whenever needed, manual analysis were used to investigate its entry pages. Specifically, the pages were checked for the existence of an HTTPS site; the correctness of the certificates and their certification chain; coherence between contents of the HTTP and HTTPS sites; redirectio...
In a world where people must subject themselves to high scrutiny in every process they initiate, and in a world where the digital environment grows incessantly, we anticipate more online services asking for personal attributes and their need to trust in such attributes. For tackling such need, we describe a proposal for a secure, decentralized and shared repository of certified personal attributes. Individuals ...
This article describes and evaluates the performance of DETIboot, a system conceived for securely deploying temporary Linux systems into countless receiving hosts close enough to a Wi-Fi DETIboot server. This system was created with the ultimate goal of installing, in numerous students’ laptops and just-in-time, special Linux distributions for being temporarily used in practical classes. In this document we pre...
The File Broadcast Protocol (FBP) was developed as a part of the DETIboot system. DETIboot allows a host to broadcast an operating system image through an 802.11 wireless network to an arbitrary number of receivers. Receivers can load the image and immediately boot a Linux live session. The initial version of FBP had no security mechanisms. In this paper we present an authentication protocol developed for FBP t...
This work presents a system conceived to deploy temporary Linux systems into an unlimited number of client hosts using a Wi-Fi source station (DETIboot server). The ultimate goal of this system is to provide a simultaneous and just-in-time installation of a custom Linux distribution on several tens of laptops for being used in classes or exams. DETIboot uses a server to endlessly broadcast a custom Linux distri...