• Home
  • Search
  • Reverse analysis of secure communication protocol based on taint analysis
  • Cite Icon2
  • https://doi.org/10.1049/cp.2014.0729Copy DOI Icon

Reverse analysis of secure communication protocol based on taint analysis

  • Jan 1, 2014
  • Meijian Li +2 more
Show More
  • Abstract
  • Literature Map
  • Citations
  • Similar Papers
Abstract

To maintain communications confidentiality, security protocols are widely used in more and more network applications. Moreover, some malwares even leverage these kinds of protocols to evade inspection by IDS. Most security protocols are designed and verified by formalized methods; however, observation shows that protocol implementations commonly contain flaws or vulnerabilities. Therefore, research on reverse engineering of security protocols can play an important role in improving the security of network applications, especially by providing another way to fight against malwares. Nevertheless, previous protocol reverse engineering technologies, which are based on analysis of network traces, encounter great challenges when the network messages transmitted between different protocol principals are encrypted. This paper proposes a taint analysis based method, which aims to infer the message format from dynamic execution of security protocol applications. The proposed approach is based on the observation that the process of message parsing in cryptographic protocol applications reveals rich information about the hierarchical structures and semantics of their messages. Hence, by observing calls to library function and instruction execution in network programs, the proposed approach can reverse derive large amount of information about their protocol, such as message format and protocol model, even the communication is encrypted. Experiments show that the reverse analysis results not only accurately identify message fields, but also unveil the structure of the encrypted message fields.

Similar Papers
  • Research Article
  • Citations12

Securing patient data in the healthcare industry: A blockchain-driven protocol with advanced encryption.

  • Mar 01, 2024
  • Journal of Education and Health Promotion
  • Sourav Kunal +4
  • Research Article
  • Citations7

A Comparitive Analysis of Wireless Security Protocols (WEP And WPA2)

  • Jul 31, 2014
  • International Journal on AdHoc Networking Systems
  • Vipin Poddar +1
  • Research Article
  • Citations323

Scyther : semantics and verification of security protocols

  • Jan 01, 2006
  • Data Archiving and Networked Services (DANS)
  • Cas Cremers
  • Book Chapter

Introduction

  • Jul 19, 2008
  • Qingfeng Chen +2
  • Research Article
  • Citations73

Security protocols over open networks and distributed systems: formal methods for their analysis, design, and verification

  • May 01, 1999
  • Computer Communications
  • S Gritzalis +2
  • Conference Article
  • Citations49

Threshold-Dependent Camouflaged Cells to Secure Circuits Against Reverse Engineering Attacks

  • Jul 01, 2016
  • Maria I Mera Collantes +2
  • Conference Article

Looping for Good: Cyclic Proofs for Security Protocols

  • Nov 19, 2025
  • Felix Linker +3
  • Book Chapter
  • Citations14

Validating Security Protocols under the General Attacker

  • Jan 01, 2009
  • Wihem Arsac +3
  • Conference Article
  • Citations2

Design and analysis of security protocol for RFID without back-end database

  • Aug 01, 2015
  • Yong-Sheng Hao +1
  • Conference Article
  • Citations1

Security protocol analysis based on run modes and Petri net

  • May 06, 2022
  • Wei Dong +3
  • Book Chapter
  • Citations21

Discrete vs. Dense Times in the Analysis of Cyber-Physical Security Protocols

  • Jan 01, 2015
  • Max Kanovich +4
  • Research Article
  • Citations14

A method for symbolic analysis of security protocols

  • Apr 11, 2005
  • Theoretical Computer Science
  • Michele Boreale +1
  • Book Chapter
  • Citations743

The Scyther Tool: Verification, Falsification, and Analysis of Security Protocols

  • Jul 07, 2008
  • Cas J F Cremers
  • Conference Article
  • Citations25

Scandalee: a side-channel-based disassembler using local electromagnetic emanations

  • Mar 09, 2015
  • Daehyun Strobel +4
  • Research Article
  • Citations4

Hybrid app security protocol for high speed mobile communication

  • Nov 07, 2014
  • The Journal of Supercomputing
  • Seoung-Hyeon Lee +3
Cactus Communications logo

Copyright 2026 Cactus Communications. All rights reserved.