首页> 外文会议>International conference on networked systems >Securing NFC Credit Card Payments Against Malicious Retailers
【24h】

Securing NFC Credit Card Payments Against Malicious Retailers

机译:确保针对恶意零售商的NFC信用卡付款

获取原文
获取外文期刊封面目录资料

摘要

The protocol by which "contactless" (NFC) credit cards operate is insecure. Previous work has done much to protect this protocol from malicious third parties, e.g. eavesdroppers, credit card skimmers, etc. However, most of these defenses rely on the retailers being honest, and on their Points of Sale following the credit card protocol faithfully. In this paper, we extend the threat model to include malicious retailers, and remove any restrictions on the operation of their Points of Sale. In particular, we identify two classes of attacks which may be executed by a malicious retailer: Over-charge attacks exploiting victim customers, and Transparent Bridge attacks exploiting victim retailers. We then extend the protocol from previous work in order to defend against these attacks, protecting cardholders and honest retailers from malicious retailers.
机译:“非接触式”(NFC)信用卡的操作协议不安全。以前的工作已经做了很多工作,可以保护该协议免受恶意第三方的攻击,例如但是,这些防御措施中的大多数都依赖于诚实的零售商,以及忠实遵循信用卡协议的销售点。在本文中,我们将威胁模型扩展到包括恶意零售商,并消除了对其销售点的操作的任何限制。特别是,我们确定了恶意零售商可能执行的两类攻击:利用受害客户的过度收费攻击和利用受害零售商的透明桥攻击。然后,我们将协议从以前的工作中扩展出来,以防御这些攻击,保护持卡人和诚实的零售商免受恶意零售商的攻击。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号