System-Wide Security for Offline Payment Terminals

被引:3
|
作者
Ivanov, Nikolay [1 ]
Yan, Qiben [1 ]
机构
[1] Michigan State Univ, E Lansing, MI 48824 USA
基金
美国国家科学基金会;
关键词
Blockchain; Off-chain interaction; Smart contract; Offline payment;
D O I
10.1007/978-3-030-90022-9_6
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Most self-service payment terminals require network connectivity for processing electronic payments. The necessity to maintain network connectivity increases costs, introduces cybersecurity risks, and significantly limits the number of places where the terminals can be installed. Leading payment service providers have proposed offline payment solutions that rely on algorithmically generated payment tokens. Existing payment token solutions, however, require complex mechanisms for authentication, transaction management, and most importantly, security risk management. In this paper, we present VOLGAPAY, a blockchain-based system that allows merchants to deploy secure offline payment terminal infrastructure that does not require collection and storage of any sensitive data. We design a novel payment protocol which mitigates security threats for all the participants of VOLGAPAY, such that the maximum loss from gaining full access to any component by an adversary incurs only a limited scope of harm. We achieve significant enhancements in security, operation efficiency, and cost reduction via a combination of polynomial multi-hash chain micropayment channels and blockchain grafting for off-chain channel state transition. We implement the VOLGAPAY payment system, and with thorough evaluation and security analysis, we demonstrate that VOLGAPAY is capable of delivering a fast, secure, and cost-efficient solution for offline payment terminals.
引用
收藏
页码:99 / 119
页数:21
相关论文
共 50 条
  • [1] System-Wide Information Management (SWIM) demonstration security architecture
    Stephens, Bob
    2006 IEEE/AIAA 25TH DIGITAL AVIONICS SYSTEMS CONFERENCE, VOLS 1- 3, 2006, : 82 - 93
  • [2] A SYSTEM-WIDE PROGRAM
    GREB, GA
    BULLETIN OF THE ATOMIC SCIENTISTS, 1984, 40 (10) : S26 - S27
  • [3] System-wide protection
    Horowitz, Stanley H.
    Novosel, Damir
    Madani, Vahid
    Adamiak, Mark
    IEEE POWER & ENERGY MAGAZINE, 2008, 6 (05): : 34 - +
  • [4] System-wide and targeted principles of legal provision of national tax security
    Maslov, K., V
    VESTNIK OF SAINT PETERSBURG UNIVERSITY-LAW-VESTNIK SANKT-PETERBURGSKOGO UNIVERSITETA-PRAVO, 2024, 15 (02): : 390 - 403
  • [5] System-wide impact of chronic care payment schemes in Europe: evidence from an empirical analysis
    Tsiachristas, Apostolos
    Dikkers, Carolien
    Boland, Melinde
    Rutten-van Molken, Maureen P. M. H.
    INTERNATIONAL JOURNAL OF INTEGRATED CARE, 2013, 13
  • [6] Enforcing system-wide properties
    Eichberg, M
    Mezini, M
    Schäfer, T
    Beringer, C
    Hamel, KM
    2004 AUSTRALIAN SOFTWARE ENGINEERING CONFERENCE, PROCEEDINGS, 2004, : 158 - 167
  • [7] Leading system-wide improvement
    Harris, Alma
    INTERNATIONAL JOURNAL OF LEADERSHIP IN EDUCATION, 2012, 15 (03) : 395 - 401
  • [8] Review of Offline Payment Function of CBDC Considering Security Requirements
    Chu, Yeonouk
    Lee, Jaeho
    Kim, Sungjoong
    Kim, Hyunjoong
    Yoon, Yongtae
    Chung, Hyeyoung
    APPLIED SCIENCES-BASEL, 2022, 12 (09):
  • [9] System-wide impacts of hospital payment reforms: Evidence from Central and Eastern Europe and Central Asia
    Moreno-Serra, Rodrigo
    Wagstaff, Adam
    JOURNAL OF HEALTH ECONOMICS, 2010, 29 (04) : 585 - 602
  • [10] Inception: System-Wide Security Testing of Real-World Embedded Systems Software
    Corteggiani, Nassim
    Camurati, Giovanni
    Francillon, Aurelien
    PROCEEDINGS OF THE 27TH USENIX SECURITY SYMPOSIUM, 2018, : 309 - 326