Attack and revision of an electronic auction protocol using OFMC


Loading...

Date

2011

Publication Type

Report

ETH Bibliography

yes

Citations

Altmetric

Data

Abstract

In the article we show an attack on the cryptographic proto col of electronic auction with extended requirements [KK04]. The found attack consists of authentication breach and secret retrieval. It is a kind of “man in the middle attack”. The intruder impersonates an agent and learns some secret information. We have discovered this flaw unsing OFMC an automatic tool of cryptographic protocol verification. After a description of this attack, we propose a new version of the e-auction pro tocol. We also check with OFMC the secrecy for the new protocol and give an informal proof of the other properties that this new e-auction protocol has to guarantee.

Publication status

published

External links

Editor

Book title

Volume

549

Pages / Article No.

Publisher

ETH Zurich, Department of Computer Science

Event

Edition / version

Methods

Software

Geographic location

Date collected

Date created

Subject

Organisational unit

02150 - Dep. Informatik / Dep. of Computer Science

Notes

Funding

Related publications and datasets