3 repository-uri
Procedures for inspecting device metadata during registration to verify the authenticity and security capabilities of hardware authenticators.
Distinct from Hardware Authentication: Distinct from general hardware authentication: focuses on the security validation of the device metadata during the registration phase.
Explore 3 awesome GitHub repositories matching security & cryptography · Authenticator Security Validation. Refine with filters or upvote what's useful.
SuperTokens Core is an open-source, self-hosted authentication and identity management platform designed for deployment within private infrastructure. It provides a comprehensive suite for managing user accounts, roles, and secure authentication flows, utilizing a modular, recipe-based architecture that allows developers to enable specific security features without modifying the core codebase. The platform distinguishes itself through its robust multi-tenancy capabilities, which allow for the logical or physical isolation of user records and configuration settings across different organizatio
The authentication service inspects device metadata during registration to confirm the authenticity and security capabilities of the hardware being used.
This project is an open-source software development kit and framework for implementing the Matter smart home standard. It provides a universal IPv6-based application layer and a cluster-based data model to ensure interoperability between diverse smart home devices and controllers. The system is distinguished by its multi-transport network abstraction, which maps Bluetooth LE, Thread, and Wi-Fi implementations to a common layer. It includes specialized tooling for secure device commissioning via QR codes and NFC, as well as a comprehensive over-the-air firmware update system for distributing s
Uses secure elements and trust-provisioned verifiers to authenticate hardware identity during cryptographic key exchanges.
Această bibliotecă oferă un framework backend pentru implementarea autentificării conforme cu FIDO2 și a fluxurilor de login fără parolă în aplicațiile Go. Servește drept toolkit server-side pentru gestionarea verificării identității bazate pe hardware, permițând dezvoltatorilor să integreze protocoale de autentificare securizate, bazate pe browser, care utilizează chei de securitate și senzori biometrici. Proiectul se distinge prin oferirea unor instrumente cuprinzătoare pentru gestionarea ciclului de viață al acreditărilor și atestarea hardware. Gestionează înregistrarea și stocarea metadatelor cheilor publice, impunând în același timp cerințe stricte de securitate, cum ar fi validarea originii și potrivirea identificatorului părții care se bazează (relying party), pentru a proteja împotriva phishing-ului. Biblioteca suportă, de asemenea, extensii de protocol modulare, permițând integrarea politicilor de securitate personalizate și a câmpurilor de date specializate în timpul handshake-ului de autentificare. Dincolo de verificarea de bază a identității, biblioteca include primitive pentru procesarea metadatelor specifice hardware-ului și a certificatelor digitale pentru a asigura integritatea dispozitivului. Oferă setări configurabile pentru definirea algoritmilor criptografici, preferințelor de transport și cerințelor de securitate, facilitând implementarea sistemelor de autentificare multi-factor sau fără parolă adaptate nevoilor specifice ale aplicației.
Validates and saves new security keys or biometric hardware by checking origin and security properties during setup.