Formal analysis of card-based payment systems in mobile devices
Formal analysis of card-based payment systems in mobile devices
复制标题
移动设备中基于卡的支付系统的形式分析
DOI:
--
复制
发表时间:
2006
期刊:
影响因子:
--
通讯作者:
J. Cho
中科院分区:
文献类型:
--
作者:
Vijayakrishnan Pasupathinathan;J. Pieprzyk;Huaxiong Wang;J. Cho
To provide card holder authentication while they are conducting an electronic transaction using mobile devices, VISA and MasterCard independently proposed two electronic payment protocols: Visa 3D Secure and MasterCard Secure Code. The protocols use pre-registered passwords to provide card holder authentication and Secure Socket Layer/ Transport Layer Security (SSL/TLS) for data confidentiality over wired networks and Wireless Transport Layer Security (WTLS) between a wireless device and a Wireless Application Protocol (WAP) gateway. The paper presents our analysis of security properties in the proposed protocols using formal method tools: Casper and FDR2. We also highlight issues concerning payment security in the proposed protocols.