首页> 外文期刊>Journal of Logic and Algebraic Programming >Source code verification of a secure payment applet
【24h】

Source code verification of a secure payment applet

机译:安全支付小程序的源代码验证

获取原文
获取原文并翻译 | 示例

摘要

This paper discusses a case study in formal verification and development of secure smart card applications. An elementary Java Card electronic purse applet is presented whose specification can be simply formulated as "in normal operation, the applet's balance field can only be decreased, never increased". The applet features a challenge-response mechanism which allows legitimate terminals to increase the balance by putting the applet into a special operation mode. A systematic approach is used to guarantee a secure flow of control within the applet: appropriate transition properties are first formalized as a finite state machine, then incorporated in the specification, and finally formally verified using the Loop translation tool and the PVS theorem proven
机译:本文讨论了安全智能卡应用程序的形式验证和开发中的案例研究。提出了一个基本的Java Card电子钱包小程序,其规格可以简单地表述为“在正常操作中,小程序的余额字段只能减少,从不增加”。小程序具有质询-响应机制,该机制允许合法终端通过将小程序置于特殊的操作模式来增加余额。使用一种系统的方法来确保小程序内的安全控制流:适当的过渡属性首先形式化为有限状态机,然后并入规范中,最后使用Loop转换工具和经证明的PVS定理进行正式验证

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号