Preventing type flaw attacks on security protocols with a simplified tagging scheme
نویسندگان
چکیده
A type flaw attack on a security protocol is an attack where a field in a message that was originally intended to have one type is subsequently interpreted as having another type. Heather et al. proves that type flaw attacks can be prevented with the technique of tagging each field with the information that indicates its intended type. We simplify Heather et al.’s tagging scheme by combining all the tags inside each encrypted component into a single tag and by omitting the tags on the outmost level. The simplification reduces the sizes of messages in the security protocol. We also formally prove our simplified tagging scheme is as secure as Heather et al.’s with the strand space method. Note that Heather et al.’s tagging scheme and our simplified tagging are applicable to, not just one protocol, but a variety of security protocols. keywords: network security, security protocol, type flaw, strand space, tagging
منابع مشابه
On Preventing Type Flaw Attacks on Security Protocols With a Simplified Tagging Scheme
A type flaw attack on a security protocol is an attack in which a field in a message that was originally intended to have one type is subsequently interpreted as having another type. Heather et al. proved that type flaw attacks can be prevented by tagging each field with the information that indicates its intended type. We simplify Heather et al.’s tagging scheme by combining all the tags insid...
متن کاملHow to prevent type-flaw attacks on security protocols under algebraic properties
Type-flaw attacks upon security protocols wherein agents are led to misinterpret message types have been reported frequently in the literature. Preventing them is crucial for protocol security and verification. Heather et al. proved that tagging every message field with it’s type prevents all type-flaw attacks under a free message algebra and perfect encryption system. In this paper, we prove t...
متن کاملHow to prevent type-flaw and multi-protocol attacks on cryptographic protocols under Exclusive-OR
Type-flaw attacks and multi-protocol attacks are notorious threats to cryptographic protocol security. They are arguably the most commonly reported attacks on protocols. For nearly fifteen years, researchers have continuously emphasized the importance of preventing these attacks. In their classical works, Heather et al. and Guttman et al. proved that these could be prevented by tagging encrypte...
متن کاملHow to Prevent Type Flaw Attacks on Security Protocols
A type flaw attack on a security protocol is an attack where a field that was originally intended to have one type is subsequently interpreted as having another type. A number of type flaw attacks have appeared in the academic literature. In this paper we prove that type flaw attacks can be prevented using a simple technique of tagging each field with some information indicating its intended type.
متن کاملHow to prevent type-flaw guessing attacks on password protocols∗
A message in a protocol is said to have a type-flaw if it was created with some intended type, but is later received and treated as a different type. A type-flaw guessing attack is an attack where a password is guessed and verified by inducing type-flaws in a protocol. Heather et al. [HLS00] prove that attacks that use typeflaws can be prevented if honest agents tag messages with their intended...
متن کامل