首页> 外文期刊>IEEE transactions on information forensics and security >DECIM: Detecting Endpoint Compromise In Messaging
【24h】

DECIM: Detecting Endpoint Compromise In Messaging

机译:DECIM:在邮件中检测端点损坏

获取原文
获取原文并翻译 | 示例
           

摘要

We present DECIM, an approach to solve the challenge of detecting endpoint compromise in messaging. DECIM manages and refreshes encryption/decryption keys in an automatic and transparent way: it makes it necessary for uses of the key to be inserted in an append-only log, which the device owner can interrogate in order to detect misuse. We propose a multi-device messaging protocol that exploits our concept to allow users to detect unauthorised usage of their device keys. It is co-designed with a formal model, and we verify its core security property using the Tamarin prover. We present a proof-of-concept implementation providing the main features required for deployment. We find that DECIM messaging is efficient even for millions of users. The methods we introduce are not intended to replace existing methods used to keep keys safe (such as hardware devices, careful procedures, or key refreshment techniques). Rather, our methods provide a useful and effective additional layer of security.
机译:我们提出了DECIM,它是一种解决在消息传递中检测端点损害的挑战的方法。 DECIM以自动透明的方式管理和刷新加密/解密密钥:必须将密钥的使用插入仅附加日志中,设备所有者可以查询该日志以检测滥用情况。我们提出了一种多设备消息协议,该协议利用我们的概念来允许用户检测其设备密钥的未授权使用。它是与正式模型共同设计的,我们使用Tamarin证明器验证其核心安全性。我们提供概念验证的实现,提供部署所需的主要功能。我们发现,即使对于数百万的用户,DECIM消息传递也是有效的。我们介绍的方法无意替代用于保持密钥安全的现有方法(例如,硬件设备,谨慎的过程或密钥刷新技术)。而是,我们的方法提供了有用且有效的附加安全层。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号