New Countermeasure Approach on XML Digital Signature Against Wrapping Attack

被引:1
|
作者
Sawesi, Khaled Giuma A. [1 ]
Saudi, Madihah Mohd [1 ,2 ]
Azman, Norhidayah Bt [1 ]
机构
[1] USIM, Fac Sci & Technol, Nilai 71800, Negeri Sembilan, Malaysia
[2] USIM, ISI, Nilai 71800, Negeri Sembilan, Malaysia
关键词
XML Signature; SOAP Message; Countermeasure; SIA; XSW;
D O I
10.1166/asl.2017.7334
中图分类号
O [数理科学和化学]; P [天文学、地球科学]; Q [生物科学]; N [自然科学总论];
学科分类号
07 ; 0710 ; 09 ;
摘要
XML signature wrapping attack poses a great threat to the integrity of web services. This is evident in the losses suffered by the Amazon Company in the past. This paper presents a new algorithm called the Spatial Information Approach (SIA). The paper forges the digital signature based on the principle of ratio signature which is adopted from a study in cancer detection. SIA creates a spatial map of the entire SOAP message where its performance is compared to SESoap, another current method that faithfully constructs a digital signature from the whole message. The experiment was conducted in a controlled lab environment by using open source tools in Linux Ubuntu environment. Based on the experiment conducted, SIA is superior to SESoap in terms of performance that shows improvement of the processing speed by approximately 4-14% for messages of size 50 Kb to 750 Kb.
引用
收藏
页码:5168 / 5172
页数:5
相关论文
共 50 条
  • [1] Digital Signature Based Countermeasure Against Puppet Attack in the Internet of Things
    Pu, Cong
    Carpenter, Logan
    2019 IEEE 18TH INTERNATIONAL SYMPOSIUM ON NETWORK COMPUTING AND APPLICATIONS (NCA), 2019, : 189 - 192
  • [2] Detection of XML Signature Wrapping Attack Using Node Counting
    Gupta, Abhinav Nath
    Thilagam, P. Santhi
    PROCEEDINGS OF THE 3RD INTERNATIONAL SYMPOSIUM ON BIG DATA AND CLOUD COMPUTING CHALLENGES (ISBCC - 16'), 2016, 49 : 57 - 63
  • [3] Spatial Signature Method (SSM) Against XML Signature Wrapping Attacks
    Saudi, Madihah Mohd
    Zaizi, Nurzi Juana Mohd
    Sweese, Khaled Juma Ahmed
    Abu Bakar, Azreena
    ENGINEERING APPLICATION OF ARTIFICIAL INTELLIGENCE CONFERENCE 2018 (EAAIC 2018), 2019, 255
  • [4] Making XML Signatures Immune to XML Signature Wrapping Attacks
    Mainka, Christian
    Jensen, Meiko
    Lo Iacono, Luigi
    Schwenk, Joerg
    CLOUD COMPUTING AND SERVICES SCIENCE, CLOSER 2012, 2013, 367 : 151 - 167
  • [5] XML Signature Wrapping Angriffe wirksam unterbinden
    Meiko Jensen
    Holger Junker
    Luigi Lo Iacono
    Christian Mainka
    Jörg Schwenk
    Datenschutz und Datensicherheit - DuD, 2012, 36 (4) : 236 - 240
  • [6] Digital-Signature Oriented Steganography Approach against Man-in-the-Middle Attack
    Mwakajwanga, Gwamaka
    Mwambe, Othmar
    International Journal of Interactive Mobile Technologies, 2024, 18 (16) : 158 - 173
  • [7] XML Wrapping Attack Mitigation using Positional Token
    Kumar, Jitendra
    Rajendran, Balaji
    Bindhumadhava, B. S.
    Babu, Sarat Chandra N.
    2017 INTERNATIONAL CONFERENCE ON PUBLIC KEY INFRASTRUCTURE AND ITS APPLICATIONS (PKIA 2017), 2017, : 36 - 42
  • [8] Function Masking: A New Countermeasure Against Side Channel Attack
    Kim, Taesung
    Ahn, Sungjun
    Lee, Seungkwang
    Choi, Dooho
    INFORMATION SECURITY APPLICATIONS, WISA 2014, 2015, 8909 : 331 - 342
  • [9] Countermeasure against the Jacobi symbol attack
    Computational Science Graduate Program, Universidad Nacional Aut´onoma de &#7742exico, Campus Cuautitĺan, Av. 1 de Mayo s/n, Col. Atlanta. 54740 Cuautitĺan Izcalli, United States
    WSEAS Trans. Comput., 12 (407-416):
  • [10] An Effective Countermeasure Against UAV Swarm Attack
    He, Daojing
    Yang, Guang
    Li, Hongyi
    Chan, Sammy
    Cheng, Yao
    Guizani, Nadra
    IEEE NETWORK, 2021, 35 (01): : 380 - 385