{"record_type":"pith_number_record","schema_url":"https://pith.science/schemas/pith-number/v1.json","pith_number":"pith:2024:7PGCSFLG5XWV7RTUSVDQ6BYLQD","short_pith_number":"pith:7PGCSFLG","schema_version":"1.0","canonical_sha256":"fbcc291566eded5fc67495470f070b80fc0df7b2c6769597c85827f9fa22508d","source":{"kind":"arxiv","id":"2406.18226","version":1},"attestation_state":"computed","paper":{"title":"SoK: Web Authentication in the Age of End-to-End Encryption","license":"http://creativecommons.org/licenses/by/4.0/","headline":"","cross_cats":[],"primary_cat":"cs.CR","authors_text":"Alastair R. Beresford, Daniel Hugenroth, Jenny Blessing, Ross J. Anderson","submitted_at":"2024-06-26T10:23:58Z","abstract_excerpt":"The advent of end-to-end encrypted (E2EE) messaging and backup services has brought new challenges for usable authentication. Compared to regular web services, the nature of E2EE implies that the provider cannot recover data for users who have forgotten passwords or lost devices. Therefore, new forms of robustness and recoverability are required, leading to a plethora of solutions ranging from randomly-generated recovery codes to threshold-based social verification. These implications also spread to new forms of authentication and legacy web services: passwordless authentication (\"passkeys\") h"},"verification_status":{"content_addressed":true,"pith_receipt":true,"author_attested":false,"weak_author_claims":0,"strong_author_claims":0,"externally_anchored":false,"storage_verified":false,"citation_signatures":0,"replication_records":0,"graph_snapshot":true,"references_resolved":false,"formal_links_present":false},"canonical_record":{"source":{"id":"2406.18226","kind":"arxiv","version":1},"metadata":{"license":"http://creativecommons.org/licenses/by/4.0/","primary_cat":"cs.CR","submitted_at":"2024-06-26T10:23:58Z","cross_cats_sorted":[],"title_canon_sha256":"e6c5b6fec120585c52c10c454d91bc94be0bb85853789731def7399bce5cb263","abstract_canon_sha256":"d88c2ab4e8e2ed9f5c75eea61c5d0d7973e5e15233507d2eb2dd5d9a15adca53"},"schema_version":"1.0"},"receipt":{"kind":"pith_receipt","key_id":"pith-v1-2026-05","algorithm":"ed25519","signed_at":"2026-07-05T08:36:57.669672Z","signature_b64":"Nr9Szit/koOkMoNtD1ItvltJd/DL0QrV+otLHRPCHFaHnaluCSxQSAeIC8GmmxQrOOQOozE1ioN9p0NbeYX3AA==","signed_message":"canonical_sha256_bytes","builder_version":"pith-number-builder-2026-05-17-v1","receipt_version":"0.3","canonical_sha256":"fbcc291566eded5fc67495470f070b80fc0df7b2c6769597c85827f9fa22508d","last_reissued_at":"2026-07-05T08:36:57.669232Z","signature_status":"signed_v1","first_computed_at":"2026-07-05T08:36:57.669232Z","public_key_fingerprint":"8d4b5ee74e4693bcd1df2446408b0d54"},"graph_snapshot":{"paper":{"title":"SoK: Web Authentication in the Age of End-to-End Encryption","license":"http://creativecommons.org/licenses/by/4.0/","headline":"","cross_cats":[],"primary_cat":"cs.CR","authors_text":"Alastair R. Beresford, Daniel Hugenroth, Jenny Blessing, Ross J. Anderson","submitted_at":"2024-06-26T10:23:58Z","abstract_excerpt":"The advent of end-to-end encrypted (E2EE) messaging and backup services has brought new challenges for usable authentication. Compared to regular web services, the nature of E2EE implies that the provider cannot recover data for users who have forgotten passwords or lost devices. Therefore, new forms of robustness and recoverability are required, leading to a plethora of solutions ranging from randomly-generated recovery codes to threshold-based social verification. These implications also spread to new forms of authentication and legacy web services: passwordless authentication (\"passkeys\") h"},"claims":{"count":0,"items":[],"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"source":{"id":"2406.18226","kind":"arxiv","version":1},"verdict":{"id":null,"model_set":{},"created_at":null,"strongest_claim":"","one_line_summary":"","pipeline_version":null,"weakest_assumption":"","pith_extraction_headline":""},"integrity":{"clean":true,"summary":{"advisory":0,"critical":0,"by_detector":{},"informational":0},"endpoint":"/pith/2406.18226/integrity.json","findings":[],"available":true,"detectors_run":[],"snapshot_sha256":"c28c3603d3b5d939e8dc4c7e95fa8dfce3d595e45f758748cecf8e644a296938"},"references":{"count":0,"sample":[],"resolved_work":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57","internal_anchors":0},"formal_canon":{"evidence_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"author_claims":{"count":0,"strong_count":0,"snapshot_sha256":"258153158e38e3291e3d48162225fcdb2d5a3ed65a07baac614ab91432fd4f57"},"builder_version":"pith-number-builder-2026-05-17-v1"},"aliases":[{"alias_kind":"arxiv","alias_value":"2406.18226","created_at":"2026-07-05T08:36:57.669287+00:00"},{"alias_kind":"arxiv_version","alias_value":"2406.18226v1","created_at":"2026-07-05T08:36:57.669287+00:00"},{"alias_kind":"doi","alias_value":"10.48550/arxiv.2406.18226","created_at":"2026-07-05T08:36:57.669287+00:00"},{"alias_kind":"pith_short_12","alias_value":"7PGCSFLG5XWV","created_at":"2026-07-05T08:36:57.669287+00:00"},{"alias_kind":"pith_short_16","alias_value":"7PGCSFLG5XWV7RTU","created_at":"2026-07-05T08:36:57.669287+00:00"},{"alias_kind":"pith_short_8","alias_value":"7PGCSFLG","created_at":"2026-07-05T08:36:57.669287+00:00"}],"events":[],"event_summary":{},"paper_claims":[],"inbound_citations":{"count":0,"internal_anchor_count":0,"sample":[]},"formal_canon":{"evidence_count":0,"sample":[],"anchors":[]},"links":{"html":"https://pith.science/pith/7PGCSFLG5XWV7RTUSVDQ6BYLQD","json":"https://pith.science/pith/7PGCSFLG5XWV7RTUSVDQ6BYLQD.json","graph_json":"https://pith.science/api/pith-number/7PGCSFLG5XWV7RTUSVDQ6BYLQD/graph.json","events_json":"https://pith.science/api/pith-number/7PGCSFLG5XWV7RTUSVDQ6BYLQD/events.json","paper":"https://pith.science/paper/7PGCSFLG"},"agent_actions":{"view_html":"https://pith.science/pith/7PGCSFLG5XWV7RTUSVDQ6BYLQD","download_json":"https://pith.science/pith/7PGCSFLG5XWV7RTUSVDQ6BYLQD.json","view_paper":"https://pith.science/paper/7PGCSFLG","resolve_alias":"https://pith.science/api/pith-number/resolve?arxiv=2406.18226&json=true","fetch_graph":"https://pith.science/api/pith-number/7PGCSFLG5XWV7RTUSVDQ6BYLQD/graph.json","fetch_events":"https://pith.science/api/pith-number/7PGCSFLG5XWV7RTUSVDQ6BYLQD/events.json","actions":{"anchor_timestamp":"https://pith.science/pith/7PGCSFLG5XWV7RTUSVDQ6BYLQD/action/timestamp_anchor","attest_storage":"https://pith.science/pith/7PGCSFLG5XWV7RTUSVDQ6BYLQD/action/storage_attestation","attest_author":"https://pith.science/pith/7PGCSFLG5XWV7RTUSVDQ6BYLQD/action/author_attestation","sign_citation":"https://pith.science/pith/7PGCSFLG5XWV7RTUSVDQ6BYLQD/action/citation_signature","submit_replication":"https://pith.science/pith/7PGCSFLG5XWV7RTUSVDQ6BYLQD/action/replication_record"}},"created_at":"2026-07-05T08:36:57.669287+00:00","updated_at":"2026-07-05T08:36:57.669287+00:00"}