Location via proxy:   [ UP ]  
[Report a bug]   [Manage cookies]                
skip to main content
10.5555/1151828.1151853dlproceedingsArticle/Chapter ViewAbstractPublication Pagesaus-cswConference Proceedingsconference-collections
Article
Free access

Formal analysis of card-based payment systems in mobile devices

Published: 01 January 2006 Publication History
  • Get Citation Alerts
  • Abstract

    To provide card holder authentication while they are conducting an electronic transaction using mobile devices, VISA and MasterCard independently proposed two electronic payment protocols: Visa 3D Secure and MasterCard Secure Code. The protocols use pre-registered passwords to provide card holder authentication and Secure Socket Layer/ Transport Layer Security (SSL/TLS) for data confidentiality over wired networks and Wireless Transport Layer Security (WTLS) between a wireless device and a Wireless Application Protocol (WAP) gateway. The paper presents our analysis of security properties in the proposed protocols using formal method tools: Casper and FDR2. We also highlight issues concerning payment security in the proposed protocols.

    References

    [1]
    C.A.R Hoare (1985), Communicating Sequential Processes , Prentice Hall International.
    [2]
    Netscape Communications (), SSL 3.0 specification, http://wp.netscape.com/eng/ssl3/.
    [3]
    Formal Systems (Europe) Ltd (), Failuers-Divergence Refinement, FDR 2 User Manual, http://www.fsel.com/.
    [4]
    Gavin Lowe (1999 ), Casper - A compiler for the analysis of security protocols, User Manual and Tutorial, Ver1.3
    [5]
    MasterCard (1999), Master Card Secure code - Merchat implementation guide, www.mastercardonline.com.
    [6]
    MasterCard & VISA (), SET Secure Electronic transaction protocol, Book 1,2 and 3, www.setco.org.
    [7]
    VISA(2002), 3D Secure protocol specification - Core functions, international.visa.com/fb/main.jsp.
    [8]
    VISA (2002), 3D Secure system overview, international.visa.com/fb/main.jsp.
    [9]
    VISA (2003), 3-D Secure protocol specification - Extensions for Mobile Internet Devices, international.visa.com/fb/main.jsp.

    Cited By

    View all
    • (2012)A secure and optimized mobile payment framework with formal verificationProceedings of the First International Conference on Security of Internet of Things10.1145/2490428.2490432(27-35)Online publication date: 17-Aug-2012
    • (2009)MPCSProceedings of the 2nd International Conference on Interaction Sciences: Information Technology, Culture and Human10.1145/1655925.1656029(571-579)Online publication date: 24-Nov-2009

    Index Terms

    1. Formal analysis of card-based payment systems in mobile devices

                            Recommendations

                            Comments

                            Information & Contributors

                            Information

                            Published In

                            cover image DL Hosted proceedings
                            ACSW Frontiers '06: Proceedings of the 2006 Australasian workshops on Grid computing and e-research - Volume 54
                            January 2006
                            230 pages

                            Publisher

                            Australian Computer Society, Inc.

                            Australia

                            Publication History

                            Published: 01 January 2006

                            Author Tags

                            1. card-based systems
                            2. electronic payments
                            3. formal verification
                            4. mobile payment

                            Qualifiers

                            • Article

                            Conference

                            ACSW Frontiers '06
                            ACSW Frontiers '06: Grid computing and e-research
                            January 16 - 19, 2006
                            Tasmania, Hobart, Australia

                            Acceptance Rates

                            Overall Acceptance Rate 204 of 424 submissions, 48%

                            Contributors

                            Other Metrics

                            Bibliometrics & Citations

                            Bibliometrics

                            Article Metrics

                            • Downloads (Last 12 months)70
                            • Downloads (Last 6 weeks)29
                            Reflects downloads up to 11 Aug 2024

                            Other Metrics

                            Citations

                            Cited By

                            View all
                            • (2012)A secure and optimized mobile payment framework with formal verificationProceedings of the First International Conference on Security of Internet of Things10.1145/2490428.2490432(27-35)Online publication date: 17-Aug-2012
                            • (2009)MPCSProceedings of the 2nd International Conference on Interaction Sciences: Information Technology, Culture and Human10.1145/1655925.1656029(571-579)Online publication date: 24-Nov-2009

                            View Options

                            View options

                            PDF

                            View or Download as a PDF file.

                            PDF

                            eReader

                            View online with eReader.

                            eReader

                            Get Access

                            Login options

                            Media

                            Figures

                            Other

                            Tables

                            Share

                            Share

                            Share this Publication link

                            Share on social media