...
首页> 外文期刊>Dependable and Secure Computing, IEEE Transactions on >Location-Aware and Safer Cards: Enhancing RFID Security and Privacy via Location Sensing
【24h】

Location-Aware and Safer Cards: Enhancing RFID Security and Privacy via Location Sensing

机译:位置感应和更安全的卡:通过位置感应增强RFID的安全性和隐私性

获取原文
获取原文并翻译 | 示例
           

摘要

In this paper, we report on a new approach for enhancing security and privacy in certain RFID applications whereby location or location-related information (such as speed) can serve as a legitimate access context. Examples of these applications include access cards, toll cards, credit cards, and other payment tokens. We show that location awareness can be used by both tags and back-end servers for defending against unauthorized reading and relay attacks on RFID systems. On the tag side, we design a location-aware selective unlocking mechanism using which tags can selectively respond to reader interrogations rather than doing so promiscuously. On the server side, we design a location-aware secure transaction verification scheme that allows a bank server to decide whether to approve or deny a payment transaction and detect a specific type of relay attack involving malicious readers. The premise of our work is a current technological advancement that can enable RFID tags with low-cost location (GPS) sensing capabilities. Unlike prior research on this subject, our defenses do not rely on auxiliary devices or require any explicit user involvement.
机译:在本文中,我们报告了一种在某些RFID应用中增强安全性和隐私性的新方法,其中位置或与位置相关的信息(例如速度)可以用作合法的访问上下文。这些应用程序的示例包括访问卡,收费卡,信用卡和其他支付令牌。我们表明,标签和后端服务器都可以使用位置感知来防御未经授权的读取以及对RFID系统的中继攻击。在标签方面,我们设计了一种位置感知的选择性解锁机制,利用该机制标签可以选择性地响应阅读器的询问,而不是随意进行。在服务器端,我们设计了一种位置感知的安全交易验证方案,该方案允许银行服务器决定是批准还是拒绝付款交易,并检测涉及恶意阅读器的特定类型的中继攻击。我们工作的前提是当前的技术进步,可以使RFID标签具有低成本的位置(GPS)感应功能。与之前对此主题的研究不同,我们的防御措施不依赖辅助设备,也不需要任何明确的用户参与。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号