[论文解读] Security Analysis of two Distance-Bounding Protocols
本文分析了两种距离判定协议——Hitomi 和 NUS 的安全性,证明两者实际安全性低于其宣称水平。研究揭示了针对 Hitomi 的完整密钥披露攻击,并表明 NUS 协议下距离欺骗攻击的成功概率可达 (3/4)^n,若攻击者具备计算能力,该成功率可略有提升。
In this paper, we analyze the security of two recently proposed distance bounding protocols called the Hitomi and the NUS protocols. Our results show that the claimed security of both protocols has been overestimated. Namely, we show that the Hitomi protocol is susceptible to a full secret key disclosure attack which not only results in violating the privacy of the protocol but also can be exploited for further attacks such as impersonation, ma?a fraud and terrorist fraud attacks. Our results also demonstrates that the probability of success in a distance fraud attack against the NUS protocol can be increased up to (3/4)^n and even slightly more, if the adversary is furnished with some computational capabilities.
研究动机与目标
- 评估 Hitomi 和 NUS 距离判定协议的实际安全保证。
- 识别并利用可能破坏其宣称安全属性的潜在漏洞。
- 在现实攻击者模型下评估密钥披露和距离欺骗攻击的可行性。
- 量化 NUS 协议下攻击的成功概率,特别是具备计算能力增强时的情况。
提出的方法
- 对 Hitomi 协议进行形式化密码分析,以识别其密钥交换机制中的缺陷。
- 构建一种利用 Hitomi 中时间信息和消息结构的完整秘密密钥披露攻击。
- 分析 NUS 协议的质询-响应机制,以评估其对距离欺骗攻击的抵抗能力。
- 将攻击者在距离欺骗中的成功概率建模为 (3/4)^n,并扩展至计算优势情形。
- 利用时间信息和侧信道信息对两种协议实施实际攻击。
- 评估计算能力对提升 NUS 攻击成功率的影响。
实验结果
研究问题
- RQ1Hitomi 协议是否可通过完整秘密密钥披露攻击被攻破?
- RQ2NUS 协议在多大程度上仍能抵御距离欺骗攻击?
- RQ3计算能力的存在如何影响 NUS 攻击的成功概率?
- RQ4在现实威胁模型下,两种协议的安全声明是否成立?
主要发现
- Hitomi 协议易受完整秘密密钥披露攻击,违反了机密性和完整性。
- NUS 协议下距离欺骗攻击的成功概率可达 (3/4)^n,远高于此前宣称的水平。
- 即使计算能力有限,攻击者也能略微提高 NUS 攻击的成功率。
- 两种协议中的漏洞均削弱了其对冒充攻击、黑帮欺诈和恐怖分子欺诈的宣称抵抗能力。
- 结果表明,文献中对两种协议的安全性声明被高估了。
- 这些缺陷的实用化利用可导致现实世界中的攻击,如密钥披露和伪造认证。
更好的研究,从现在开始
从阅读论文到最终审阅,大幅缩短您的研究时间。
无需绑定信用卡
本解读由 AI 生成,并经人工编辑审核。