How to prevent type-flaw and multi-protocol attacks on cryptographic protocols under Exclusive-OR

Computer Science – Cryptography and Security

Scientific paper

Rate now

  [ 0.00 ] – not rated yet Voters 0   Comments 0

Details

37 pages plus 14 pages in the Appendix

Scientific paper

Type-flaw attacks and multi-protocol attacks on security protocols have been frequently reported in the literature. Heather et al. and Guttman et al. have proven that these could be prevented by tagging encrypted components with distinct constants in a standard protocol model with free message algebra and perfect encryption. However, most "real-world" protocols such as SSL 3.0 are designed with the Exclusive-OR (XOR) operator that possesses algebraic properties, breaking the free algebra assumption. These algebraic properties induce equational theories that need to be considered when analyzing protocols that use the operator. This is the problem we consider in this paper: We prove that, under certain assumptions, tagging encrypted components still prevents type-flaw and multi-protocol attacks even in the presence of the XOR operator and its algebraic properties.

No associations

LandOfFree

Say what you really think

Search LandOfFree.com for scientists and scientific papers. Rate them and share your experience with other people.

Rating

How to prevent type-flaw and multi-protocol attacks on cryptographic protocols under Exclusive-OR does not yet have a rating. At this time, there are no reviews or comments for this scientific paper.

If you have personal experience with How to prevent type-flaw and multi-protocol attacks on cryptographic protocols under Exclusive-OR, we encourage you to share that experience with our LandOfFree.com community. Your opinion is very important and How to prevent type-flaw and multi-protocol attacks on cryptographic protocols under Exclusive-OR will most certainly appreciate the feedback.

Rate now

     

Profile ID: LFWR-SCP-O-379307

  Search
All data on this website is collected from public sources. Our data reflects the most accurate information available at the time of publication.