loading...
Analysis of Security Protocols with Certificate over Open Networks: Electronic Payment System
Columbus, Ohio, USA June 06-June 10
DOI Bookmark: http://doi.ieeecomputersociety.org/10.1109/ICDCSW.2005.41Second International Workshop on Secu ...
 This Article 
 
PDF
HTML
 
 Share 
   
 Bibliographic References 
   
 Add to: 
 
Digg
Furl
Spurl
Blink
Simpy
Google
Del.icio.us
Y!MyWeb
 
 Search 
   
Hyun-Seok Kim, Korea University
Il-Gon Kim, Korea University
Jin-Young Choi, Korea University
Electronic Commerce and Internet in wireless networks are profoundly changing the way of payment, but there is still little confidence among users concerning the security of their data. The application of formal techniques to the modelling and design of electronic commerce protocols should help to improve their reliability and so enhance the choices of these new technologies. In this paper, we show how the Casper, a special-purpose formal methods tool designed for the verification of the security protocols, was used in the analysis of the BCY(Beller, Chang, Yacobi), the Carlsen BCY and the Mu-Varadharajan BCY protocols. We describe the results of our analysis, which uncovered several vulnerabilities in the specification that would have made possible attacks such as man-in-the-middle attack and replay attack. Finally, we propose a new protocol resistant to these attacks and formally verify its correctness.
Citation:
Hyun-Seok Kim, Il-Gon Kim, Jin-Young Choi, "Analysis of Security Protocols with Certificate over Open Networks: Electronic Payment System," icdcsw, vol. 2, pp.217-223, Second International Workshop on Security in Distributed Computing Systems (SDCS) (ICDCSW'05), 2005
Usage of this product signifies your acceptance of the Terms of Use.