A secure end-to-end SMS-based mobile banking protocol

被引:18
|
作者
Bojjagani, Sriramulu [1 ,2 ]
Sastry, V. N. [1 ]
机构
[1] Inst Dev & Res Banking Technol IDRBT, Ctr Mobile Banking, Hyderabad 500057, Andhra Pradesh, India
[2] Univ Hyderabad, Sch Comp & Informat Sci SCIS, Hyderabad 500046, Andhra Pradesh, India
关键词
AVISPA; ECC; GPRS; GSM; Scyther; SMS; KEY EXCHANGE; CRYPTOGRAPHY;
D O I
10.1002/dac.3302
中图分类号
TM [电工技术]; TN [电子技术、通信技术];
学科分类号
0808 ; 0809 ;
摘要
Short message service (SMS) provides a wide channel of communication for banking in mobile commerce and mobile payment. The transmission of SMS is not secure in the network using global system for mobile communications or general packet radio service. Security threats in SMS restricted the use of SMS in mobile banking within certain limits. This paper proposed a model to address the security of SMS using elliptic curve cryptography. The proposed model provides end-to-end SMS communication between the customer and the bank through the mobile application. The main objective of the proposed model is to design and develop a security framework for SMS banking. Further, the protocol is verified for its correctness and security properties because most of the protocols are not having the facility to be verified by using the formal methods. Our proposed framework is experimentally validated by formal methods using model checking tool called automated validation of internet security protocols and Scyther tools. Security analysis shows that the proposed mechanism works better compared to existing SMS payment protocols for real-world applications.
引用
收藏
页数:19
相关论文
共 50 条
  • [1] SMSSec: An end-to-end protocol for secure SMS
    Lo, Johnny Li-Chang
    Bishop, Judith
    Eloff, J. H. P.
    [J]. COMPUTERS & SECURITY, 2008, 27 (5-6) : 154 - 167
  • [2] SSMBP: A Secure SMS-based Mobile Banking Protocol with Formal Verification
    Bojjagani, Sriramulu
    Sastry, V. N.
    [J]. 2015 IEEE 11TH INTERNATIONAL CONFERENCE ON WIRELESS AND MOBILE COMPUTING, NETWORKING AND COMMUNICATIONS (WIMOB), 2015, : 252 - 259
  • [3] BVPSMS: A Batch Verification Protocol for End-to-End Secure SMS for Mobile Users
    Saxena, Neetesh
    Shen, Hong
    Komninos, Nikos
    Choo, Kim-Kwang Raymond
    Chaudhari, Narendra S.
    [J]. IEEE TRANSACTIONS ON DEPENDABLE AND SECURE COMPUTING, 2020, 17 (03) : 550 - 565
  • [4] Secure End-To-End Authentication for Mobile Banking
    Singh, Basudeo
    Jasmine, K. S.
    [J]. SOFTWARE ENGINEERING IN INTELLIGENT SYSTEMS (CSOC2015), VOL 3, 2015, 349 : 223 - 232
  • [5] EasySMS: A Protocol for End-to-End Secure Transmission of SMS
    Saxena, Neetesh
    Chaudhari, Narendra S.
    [J]. IEEE TRANSACTIONS ON INFORMATION FORENSICS AND SECURITY, 2014, 9 (07) : 1157 - 1168
  • [6] An Encryption Protocol for End-to-end Secure Transmission of SMS
    Thomas, Minta
    Panchami, V
    [J]. 2015 INTERNATIONAL CONFERENCED ON CIRCUITS, POWER AND COMPUTING TECHNOLOGIES (ICCPCT-2015), 2015,
  • [7] A Novel Protocol For the Security of SMS-Based Mobile Banking
    Abolghasemi, Meer Soheil
    Rezapour, Taha Yasin
    Atani, Reza Ebrahimi
    [J]. 2013 5TH CONFERENCE ON INFORMATION AND KNOWLEDGE TECHNOLOGY (IKT), 2013, : 97 - 101
  • [8] A secure end-to-end proximity NFC-based mobile payment protocol
    Bojjagani, Sriramulu
    Sastry, V. N.
    [J]. COMPUTER STANDARDS & INTERFACES, 2019, 66
  • [9] SMS-Based Web Search for Low-end Mobile Devices
    Chen, Jay
    Subramanian, Lakshmi
    Brewer, Eric
    [J]. MOBICOM 10 & MOBIHOC 10: PROCEEDINGS OF THE 16TH ANNUAL INTERNATIONAL CONFERENCE ON MOBILE COMPUTING AND NETWORKING AND THE 11TH ACM INTERNATIONAL SYMPOSIUM ON MOBILE AD HOC NETWORKING AND COMPUTING, 2010, : 125 - 135
  • [10] Secure End-to-End SMS Communication over GSM Networks
    Islam, Saad
    Ul Haq, Inam
    Saeed, Amna
    [J]. 2015 12TH INTERNATIONAL BHURBAN CONFERENCE ON APPLIED SCIENCES AND TECHNOLOGY (IBCAST), 2015, : 286 - 292