MessageGuard: A Browser-based Platform for Usable, Content-Based Encryption Research Scott Ruoti∗†, Jeff Andersen∗, Tyler Monson∗, Daniel Zappala∗, Kent Seamons∗ Brigham Young University∗, Sandia National Laboratoriesy fruoti, andersen,
[email protected], fzappala,
[email protected] Abstract—This paper describes MessageGuard, a subjected to formal usability evaluation. This is browser-based platform for research into usable problematic as experience has shown that many proposals content-based encryption. MessageGuard is designed to with strong theoretical foundations are either unfeasible in enable collaboration between security and usability real-world situations [8] or have problems that are only researchers on long-standing research questions in this area. apparent when studied empirically [9], [10], [11]. As a It significantly simplifies the effort required to work in this result, there are many open HCI and security questions space and provides a place for research results to be shared, regarding content-based encryption [12]. replicated, and compared with minimal confounding factors. MessageGuard provides ubiquitous encryption and secure 1.1. MessageGuard cryptographic operations, enabling research on any existing web application, with realistic usability studies on a secure To address these concerns, we have developed platform. We validate MessageGuard’s compatibility and MessageGuard, a platform for usable security research performance, and we illustrate its utility with case studies for focused on content-based encryption.