SAT-based lazy formal analysis method for security protocols

A SAT-based security protocol formalization analysis method named SAT-LMC is proposed.The method introduces optimized the initial state and transformational rules with “lazy” idea.The efficiency of detection is significantly improved.Moreover,by adding support for strong type flaw attack defect,the...

Full description

Saved in:
Bibliographic Details
Main Authors: Chun-xiang GU, Huan-xiao WANG, Yong-hui ZHENG, Dan XIN, Nan LIU
Format: Article
Language:zho
Published: Editorial Department of Journal on Communications 2014-11-01
Series:Tongxin xuebao
Subjects:
Online Access:http://www.joconline.com.cn/zh/article/doi/10.11959/j.issn.1000-436x.2014.11.013/
Tags: Add Tag
No Tags, Be the first to tag this record!
Description
Summary:A SAT-based security protocol formalization analysis method named SAT-LMC is proposed.The method introduces optimized the initial state and transformational rules with “lazy” idea.The efficiency of detection is significantly improved.Moreover,by adding support for strong type flaw attack defect,the attack detection becomes more comprehensive.A security protocol analysis tool is implemented based on the method; a type flaw attack is detected for protocol Otway-Rees.For OAuth2.0 protocol,analysis shows that there is a kind of man-in-the-middle attack of the authorization code in some application scenarios.
ISSN:1000-436X