A Secure Fair Exchange for SMS-Based Mobile Payment Protocols Based on Symmetric Encryption Algorithms with Formal Verification
Information security and fair exchange are essential to creating trust among all the parties participating in any sale transaction. However, implementing them in any mobile commerce is challenging due to the limitation of resources on mobile devices. Numerous m-commerce protocols that have been prop...
Main Authors: | , |
---|---|
Format: | Article |
Language: | English |
Published: |
Hindawi-Wiley
2018-01-01
|
Series: | Wireless Communications and Mobile Computing |
Online Access: | http://dx.doi.org/10.1155/2018/6953160 |
id |
doaj-0bae0d2bf84d4601b72f6a38a5707b82 |
---|---|
record_format |
Article |
spelling |
doaj-0bae0d2bf84d4601b72f6a38a5707b822020-11-25T03:26:42ZengHindawi-WileyWireless Communications and Mobile Computing1530-86691530-86772018-01-01201810.1155/2018/69531606953160A Secure Fair Exchange for SMS-Based Mobile Payment Protocols Based on Symmetric Encryption Algorithms with Formal VerificationChalee Thammarat0Werasak Kurutach1Faculty of Information Science and Technology, Mahanakorn University of Technology, 140 Moo 1, Cheumsampan Road, Nong Chok, Bangkok 10530, ThailandFaculty of Information Science and Technology, Mahanakorn University of Technology, 140 Moo 1, Cheumsampan Road, Nong Chok, Bangkok 10530, ThailandInformation security and fair exchange are essential to creating trust among all the parties participating in any sale transaction. However, implementing them in any mobile commerce is challenging due to the limitation of resources on mobile devices. Numerous m-commerce protocols that have been proposed so far still lack those two important aspects. In this paper, we propose mobile payment (m-payment) protocols, a crucial part of m-commerce, that incorporate both information security and fair exchange while retaining their own lightweight property. To allow convenience of use, the proposed protocols can be implemented on the existing Short Message Service (SMS) infrastructure. Our approach is based on the secure session key generation technique to enhance information security under lightweight conditions and involves a trusted third party to guarantee fair exchange without information disclosure. We have formally proven that our protocols are more effective and efficient than others in terms of fairness, security, and lightweight properties. In addition, the soundness and completeness of the protocols have been analyzed and proven using BAN logic and an automated security protocol proof tool named Scyther.http://dx.doi.org/10.1155/2018/6953160 |
collection |
DOAJ |
language |
English |
format |
Article |
sources |
DOAJ |
author |
Chalee Thammarat Werasak Kurutach |
spellingShingle |
Chalee Thammarat Werasak Kurutach A Secure Fair Exchange for SMS-Based Mobile Payment Protocols Based on Symmetric Encryption Algorithms with Formal Verification Wireless Communications and Mobile Computing |
author_facet |
Chalee Thammarat Werasak Kurutach |
author_sort |
Chalee Thammarat |
title |
A Secure Fair Exchange for SMS-Based Mobile Payment Protocols Based on Symmetric Encryption Algorithms with Formal Verification |
title_short |
A Secure Fair Exchange for SMS-Based Mobile Payment Protocols Based on Symmetric Encryption Algorithms with Formal Verification |
title_full |
A Secure Fair Exchange for SMS-Based Mobile Payment Protocols Based on Symmetric Encryption Algorithms with Formal Verification |
title_fullStr |
A Secure Fair Exchange for SMS-Based Mobile Payment Protocols Based on Symmetric Encryption Algorithms with Formal Verification |
title_full_unstemmed |
A Secure Fair Exchange for SMS-Based Mobile Payment Protocols Based on Symmetric Encryption Algorithms with Formal Verification |
title_sort |
secure fair exchange for sms-based mobile payment protocols based on symmetric encryption algorithms with formal verification |
publisher |
Hindawi-Wiley |
series |
Wireless Communications and Mobile Computing |
issn |
1530-8669 1530-8677 |
publishDate |
2018-01-01 |
description |
Information security and fair exchange are essential to creating trust among all the parties participating in any sale transaction. However, implementing them in any mobile commerce is challenging due to the limitation of resources on mobile devices. Numerous m-commerce protocols that have been proposed so far still lack those two important aspects. In this paper, we propose mobile payment (m-payment) protocols, a crucial part of m-commerce, that incorporate both information security and fair exchange while retaining their own lightweight property. To allow convenience of use, the proposed protocols can be implemented on the existing Short Message Service (SMS) infrastructure. Our approach is based on the secure session key generation technique to enhance information security under lightweight conditions and involves a trusted third party to guarantee fair exchange without information disclosure. We have formally proven that our protocols are more effective and efficient than others in terms of fairness, security, and lightweight properties. In addition, the soundness and completeness of the protocols have been analyzed and proven using BAN logic and an automated security protocol proof tool named Scyther. |
url |
http://dx.doi.org/10.1155/2018/6953160 |
work_keys_str_mv |
AT chaleethammarat asecurefairexchangeforsmsbasedmobilepaymentprotocolsbasedonsymmetricencryptionalgorithmswithformalverification AT werasakkurutach asecurefairexchangeforsmsbasedmobilepaymentprotocolsbasedonsymmetricencryptionalgorithmswithformalverification AT chaleethammarat securefairexchangeforsmsbasedmobilepaymentprotocolsbasedonsymmetricencryptionalgorithmswithformalverification AT werasakkurutach securefairexchangeforsmsbasedmobilepaymentprotocolsbasedonsymmetricencryptionalgorithmswithformalverification |
_version_ |
1724591175153745920 |