首页> 外文会议>Secyruty standardisation research >Unpicking PLAID A Cryptographic Analysis of an ISO-Standards-Track Authentication Protocol
【24h】

Unpicking PLAID A Cryptographic Analysis of an ISO-Standards-Track Authentication Protocol

机译:取消选择ISO标准跟踪身份验证协议的密码学分析

获取原文
获取原文并翻译 | 示例

摘要

The Protocol for Lightweight Authentication of Identity (PLAID) aims at secure and private authentication between a smart card and a terminal. Originally developed by a unit of the Australian Department of Human Services for physical and logical access control, PLAID has now been standardized as an Australian standard AS-5185-2010 and is currently in the fast track standardization process for ISO/IEC 25185-1.2. We present a cryptographic evaluation of PLAID. As well as reporting a number of undesirable cryptographic features of the protocol, we show that the privacy properties of PLAID are significantly weaker than claimed: using a variety of techniques we can fingerprint and then later identify cards. These techniques involve a novel application of standard statistical and data analysis techniques in cryptography. We also discuss countermeasures to our attacks.
机译:身份轻量认证协议(PLAID)旨在智能卡和终端之间的安全和私有认证。 PLAID最初是由澳大利亚人类服务部的一个部门开发的,用于物理和逻辑访问控制,现已被标准化为澳大利亚标准AS-5185-2010,目前正处于ISO / IEC 25185-1.2的快速标准化过程中。我们提出PLAID的加密评估。除了报告该协议的许多不受欢迎的加密功能外,我们还显示PLAID的隐私属性明显弱于所声称的:使用多种技术,我们可以指纹识别,然后识别卡。这些技术涉及标准统计和数据分析技术在密码学中的新颖应用。我们还将讨论针对我们的攻击的对策。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号