January 1, 2026· Repository of Vinnytsia National Technical University (Vinnytsia National Technical University)
dissertation
Open access
Підвищення безпеки веб-застосунків шляхом інтеграції доказів з нульовим розголошенням zk-SNARK у протокол TLS 1.3
Authors:С. Ю. ВолинецьO.V. SaliievaО. Saliieva
Abstract
This paper analyzes the shortcomings of traditional authentication mechanisms in web applications operating over the secure TLS 1.3 protocol. It is established that even with an encrypted channel, the transmission of secret data (passwords, tokens) remains a primary attack vector. An improved protocol is proposed that integrates an authentication mechanism based on zero-knowledge proofs (zk-SNARK) immediately after session establishment via Elliptic Curve Diffie-Hellman (ECDHE) key exchange. This approach completely eliminates the transmission of client credentials, significantly increasing resistance to phishing and server database compromises.
Community
0 commentsUse Connect Wallet in the navigation
No discussion yet
Be the first to share a question or observation.