Paper published in a book (Scientific congresses, symposiums and conference proceedings)
Automated Identification of Desynchronisation Attacks on Shared Secrets
Mauw, Sjouke; Smith, Zachary Daniel; Toro Pozo, Jorge Luis et al.
2018In Automated Identification of Desynchronisation Attacks on Shared Secrets
Peer reviewed
 

Files


Full Text
Desynchronisation-Esorics-2018.pdf
Author preprint (485.59 kB)
Request a copy

All documents in ORBilu are protected by a user license.

Send to



Details



Keywords :
security; desynchronisation; key update
Abstract :
[en] Key-updating protocols are a class of communication protocol that aim to increase security by having the participants change encryption keys between protocol executions. However, such protocols can be vulnerable to desynchronisation attacks, a denial of service attack in which the agents are tricked into updating their keys improperly, so that they are no longer able to communicate. In this work we introduce a method that can be used to automatically verify (or falsify) resistance to desynchronisation attacks for a range of protocols. This approach is then used to identify previously unreported vulnerabilities in two published RFID grouping protocols.
Disciplines :
Computer science
Author, co-author :
Mauw, Sjouke ;  University of Luxembourg > Faculty of Science, Technology and Communication (FSTC) > Computer Science and Communications Research Unit (CSC)
Smith, Zachary Daniel ;  University of Luxembourg > Faculty of Science, Technology and Communication (FSTC) > Computer Science and Communications Research Unit (CSC)
Toro Pozo, Jorge Luis ;  University of Luxembourg > Faculty of Science, Technology and Communication (FSTC) > Computer Science and Communications Research Unit (CSC)
Trujillo Rasua, Rolando ;  University of Luxembourg > Interdisciplinary Centre for Security, Reliability and Trust (SNT)
External co-authors :
yes
Language :
English
Title :
Automated Identification of Desynchronisation Attacks on Shared Secrets
Publication date :
September 2018
Event name :
European Symposium on Research in Computer Security
Event date :
from 03-09-2018 to 07-09-2018
Audience :
International
Main work title :
Automated Identification of Desynchronisation Attacks on Shared Secrets
Publisher :
Springer
Peer reviewed :
Peer reviewed
Focus Area :
Security, Reliability and Trust
Available on ORBilu :
since 13 November 2018

Statistics


Number of views
119 (8 by Unilu)
Number of downloads
1 (0 by Unilu)

Scopus citations®
 
1
Scopus citations®
without self-citations
1
OpenCitations
 
0
WoS citations
 
1

Bibliography


Similar publications



Contact ORBilu