A Secure Fair Exchange for SMS-Based Mobile Payment Protocols Based on Symmetric Encryption Algorithms with Formal Verification

Information security and fair exchange are essential to creating trust among all the parties participating in any sale transaction. However, implementing them in any mobile commerce is challenging due to the limitation of resources on mobile devices. Numerous m-commerce protocols that have been prop...

Full description

Bibliographic Details
Main Authors: Chalee Thammarat, Werasak Kurutach
Format: Article
Language:English
Published: Hindawi-Wiley 2018-01-01
Series:Wireless Communications and Mobile Computing
Online Access:http://dx.doi.org/10.1155/2018/6953160
id doaj-0bae0d2bf84d4601b72f6a38a5707b82
record_format Article
spelling doaj-0bae0d2bf84d4601b72f6a38a5707b822020-11-25T03:26:42ZengHindawi-WileyWireless Communications and Mobile Computing1530-86691530-86772018-01-01201810.1155/2018/69531606953160A Secure Fair Exchange for SMS-Based Mobile Payment Protocols Based on Symmetric Encryption Algorithms with Formal VerificationChalee Thammarat0Werasak Kurutach1Faculty of Information Science and Technology, Mahanakorn University of Technology, 140 Moo 1, Cheumsampan Road, Nong Chok, Bangkok 10530, ThailandFaculty of Information Science and Technology, Mahanakorn University of Technology, 140 Moo 1, Cheumsampan Road, Nong Chok, Bangkok 10530, ThailandInformation security and fair exchange are essential to creating trust among all the parties participating in any sale transaction. However, implementing them in any mobile commerce is challenging due to the limitation of resources on mobile devices. Numerous m-commerce protocols that have been proposed so far still lack those two important aspects. In this paper, we propose mobile payment (m-payment) protocols, a crucial part of m-commerce, that incorporate both information security and fair exchange while retaining their own lightweight property. To allow convenience of use, the proposed protocols can be implemented on the existing Short Message Service (SMS) infrastructure. Our approach is based on the secure session key generation technique to enhance information security under lightweight conditions and involves a trusted third party to guarantee fair exchange without information disclosure. We have formally proven that our protocols are more effective and efficient than others in terms of fairness, security, and lightweight properties. In addition, the soundness and completeness of the protocols have been analyzed and proven using BAN logic and an automated security protocol proof tool named Scyther.http://dx.doi.org/10.1155/2018/6953160
collection DOAJ
language English
format Article
sources DOAJ
author Chalee Thammarat
Werasak Kurutach
spellingShingle Chalee Thammarat
Werasak Kurutach
A Secure Fair Exchange for SMS-Based Mobile Payment Protocols Based on Symmetric Encryption Algorithms with Formal Verification
Wireless Communications and Mobile Computing
author_facet Chalee Thammarat
Werasak Kurutach
author_sort Chalee Thammarat
title A Secure Fair Exchange for SMS-Based Mobile Payment Protocols Based on Symmetric Encryption Algorithms with Formal Verification
title_short A Secure Fair Exchange for SMS-Based Mobile Payment Protocols Based on Symmetric Encryption Algorithms with Formal Verification
title_full A Secure Fair Exchange for SMS-Based Mobile Payment Protocols Based on Symmetric Encryption Algorithms with Formal Verification
title_fullStr A Secure Fair Exchange for SMS-Based Mobile Payment Protocols Based on Symmetric Encryption Algorithms with Formal Verification
title_full_unstemmed A Secure Fair Exchange for SMS-Based Mobile Payment Protocols Based on Symmetric Encryption Algorithms with Formal Verification
title_sort secure fair exchange for sms-based mobile payment protocols based on symmetric encryption algorithms with formal verification
publisher Hindawi-Wiley
series Wireless Communications and Mobile Computing
issn 1530-8669
1530-8677
publishDate 2018-01-01
description Information security and fair exchange are essential to creating trust among all the parties participating in any sale transaction. However, implementing them in any mobile commerce is challenging due to the limitation of resources on mobile devices. Numerous m-commerce protocols that have been proposed so far still lack those two important aspects. In this paper, we propose mobile payment (m-payment) protocols, a crucial part of m-commerce, that incorporate both information security and fair exchange while retaining their own lightweight property. To allow convenience of use, the proposed protocols can be implemented on the existing Short Message Service (SMS) infrastructure. Our approach is based on the secure session key generation technique to enhance information security under lightweight conditions and involves a trusted third party to guarantee fair exchange without information disclosure. We have formally proven that our protocols are more effective and efficient than others in terms of fairness, security, and lightweight properties. In addition, the soundness and completeness of the protocols have been analyzed and proven using BAN logic and an automated security protocol proof tool named Scyther.
url http://dx.doi.org/10.1155/2018/6953160
work_keys_str_mv AT chaleethammarat asecurefairexchangeforsmsbasedmobilepaymentprotocolsbasedonsymmetricencryptionalgorithmswithformalverification
AT werasakkurutach asecurefairexchangeforsmsbasedmobilepaymentprotocolsbasedonsymmetricencryptionalgorithmswithformalverification
AT chaleethammarat securefairexchangeforsmsbasedmobilepaymentprotocolsbasedonsymmetricencryptionalgorithmswithformalverification
AT werasakkurutach securefairexchangeforsmsbasedmobilepaymentprotocolsbasedonsymmetricencryptionalgorithmswithformalverification
_version_ 1724591175153745920