首页> 外文会议>Radio frequency identification : Security and privacy issues >Practical NFC Peer-to-Peer Relay Attack Using Mobile Phones
【24h】

Practical NFC Peer-to-Peer Relay Attack Using Mobile Phones

机译:使用手机进行实用的NFC对等中继攻击

获取原文
获取原文并翻译 | 示例

摘要

NFC is a standardised technology providing short-range RFID communication channels for mobile devices. Peer-to-peer appli-cations for mobile devices are receiving increased interest and in some cases these services are relying on NFC communication. It has been sug-gested that NFC systems are particularly vulnerable to relay attacks, and that the attacker's proxy devices could even be implemented using off-the-shelf NFC-enabled devices. This paper describes how a relay at-tack can be implemented against systems using legitimate peer-to-peer NFC communication by developing and installing suitable MIDlets on the attacker's own NFC-enabled mobile phones. The attack does not need to access secure program memory nor use any code signing, and can use publicly available APIs. We go on to discuss how relay attack countermeasures using device location could be used in the mobile envi-ronment. These countermeasures could also be applied to prevent relay attacks on contactless applications using 'passive' NFC on mobile phones.
机译:NFC是一种为移动设备提供短距离RFID通信通道的标准化技术。移动设备的点对点应用越来越受到关注,在某些情况下,这些服务依赖NFC通信。有人建议说,NFC系统特别容易受到中继攻击,并且攻击者的代理设备甚至可以使用支持NFC的现成设备来实现。本文介绍了如何通过在攻击者自己的支持NFC的移动电话上开发并安装合适的MIDlet,对使用合法对等NFC通信的系统实施中继攻击。该攻击不需要访问安全的程序存储器,也不需要使用任何代码签名,并且可以使用公共可用的API。我们继续讨论如何在移动环境中使用基于设备位置的中继攻击对策。这些对策也可以用于在手机上使用“被动” NFC来防止对非接触式应用程序的中继攻击。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号