• Home
  • Search
  • Validating Security Protocols under the General Attacker
  • Cite Icon14
  • https://doi.org/10.1007/978-3-642-03459-6_3Copy DOI Icon

Validating Security Protocols under the General Attacker

  • Jan 1, 2009
  • Wihem Arsac +3 more
Show More
  • Abstract
  • Literature Map
  • References
  • Citations
  • Similar Papers
Abstract

Security protocols have been analysed using a variety of tools and focusing on a variety of properties. Most findings assume the ever so popular Dolev-Yao threat model. A more recent threat model called the Rational Attacker [1] sees each protocol participant decide whether or not to conform to the protocol upon their own cost/benefit analysis. Each participant neither colludes nor shares knowledge with anyone, a feature that rules out the applicability of existing equivalence results in the Dolev-Yao model. Aiming at mechanical validation, we abstract away the actual cost/benefit analysis and obtain the General Attacker threat model, which sees each principal blindly act as a Dolev-Yao attacker.The analysis of security protocols under the General Attacker threat model brings forward yet more insights: retaliation attacks and anticipation attacks are our main findings, while the tool support can scale up to the new analysis at a negligible price. The general threat model for security protocols based on set-rewriting that was adopted in AVISPA [2] is leveraged so as to express the General Attacker. The state-of-the-art model checker SATMC [3] is then used to automatically validate a protocol under the new threats, so that retaliation and anticipation attacks can automatically be found.KeywordsModel CheckSecurity ProtocolCryptographic ProtocolThreat ModelGeneral AttackThese keywords were added by machine and not by the authors. This process is experimental and the keywords may be updated as the learning algorithm improves.

Similar Papers
  • Book Chapter
  • Citations743

The Scyther Tool: Verification, Falsification, and Analysis of Security Protocols

  • Jul 07, 2008
  • Cas J F Cremers
  • Research Article
  • Citations323

Scyther : semantics and verification of security protocols

  • Jan 01, 2006
  • Data Archiving and Networked Services (DANS)
  • Cas Cremers
  • Conference Article
  • Citations1

Security protocol analysis based on run modes and Petri net

  • May 06, 2022
  • Wei Dong +3
  • Conference Article

The Ever Changing Threat Model: A Social-Technical Perspective

  • Jun 01, 2013
  • Jean Everson Martina
  • Research Article
  • Citations14

A method for symbolic analysis of security protocols

  • Apr 11, 2005
  • Theoretical Computer Science
  • Michele Boreale +1
  • Conference Article

Formal automatic verification of security protocols

  • May 10, 2006
  • Meihua Xiao +1
  • Research Article
  • Citations7

A Comparitive Analysis of Wireless Security Protocols (WEP And WPA2)

  • Jul 31, 2014
  • International Journal on AdHoc Networking Systems
  • Vipin Poddar +1
  • Conference Article
  • Citations3

To infinity and beyond or, avoiding the infinite in security protocol analysis

  • Apr 23, 2006
  • James Heather +1
  • PDF
  • Research Article
  • Citations6

A formal analysis method for composition protocol based on model checking

  • May 19, 2022
  • Scientific Reports
  • Meihua Xiao +4
  • Book Chapter
  • Citations21

Discrete vs. Dense Times in the Analysis of Cyber-Physical Security Protocols

  • Jan 01, 2015
  • Max Kanovich +4
  • Book Chapter
  • Citations8

Security Protocol Analysis with Improved Authentication Tests

  • Jan 01, 2006
  • Xiehua Li +3
  • Conference Article
  • Citations4

Smart Water Distribution System Communication Architecture Risk Analysis Using Formal Methods

  • Nov 24, 2020
  • Stefana Krivokuca +4
  • Conference Article
  • Citations6

Elements of Epistemic Crypto Logic

  • Jan 01, 2013
  • Jan Van Eijck +1
  • Book Chapter
  • Citations12

Modeling and Analysis of Security Protocols Using Role Based Specifications and Petri Nets

  • Jan 01, 2008
  • Roland Bouroulet +4
  • Book Chapter
  • Citations10

Modeling Partial Attacks with Alloy

  • Jan 01, 2010
  • Amerson Lin +2
Cactus Communications logo

Copyright 2026 Cactus Communications. All rights reserved.