applicable to other scenarios for EA when leaving out
our special requirements. Based on this threat model,
we described counter measures based on our research
for our project FLEX. The subsequent discussion of
the level of security for EA in comparison to PBEs
revealed that EA is not per se less secure than PBEs,
which is in line with the results of Sindre and Veg-
endla. Based on the software architecture discussed at
the beginning of the paper, we were able to conclude
that EA is in part even more secure than PBEs. The
results in this paper are quite promising regarding the
security of EA, which affects the acceptance of EA
by students and examiners. However, the discussed
threat model was designed to fit the architecture of
our software framework. The next steps have to be
deriving a generalized threat model for EA to be able
to show the level of security of EA for a more general
