首页 | 本学科首页   官方微博 | 高级检索  
     

改进Athena算法的多协议攻击自动化验证方法
引用本文:刘威,郭渊博,雷新锋,李俊锋.改进Athena算法的多协议攻击自动化验证方法[J].计算机科学,2014,41(12):112-117,132.
作者姓名:刘威  郭渊博  雷新锋  李俊锋
作者单位:1. 解放军信息工程大学 郑州450001;数学工程与先进计算国家重点实验室 郑州450001
2. 中国人民解放军第61840部队 北京100097
3. 太原卫星发射中心 太原036300
基金项目:本文受国家部委基金项目(9140C130103120C13062)资助
摘    要:多协议环境下协议安全性问题是安全协议形式化分析验证领域的一个公开问题。针对此问题,在分析Athena算法的基础上提出了一种多协议攻击自动化验证方法。该方法扩展了Athena状态表示方法和后继状态生成算法,使得攻击者具备截取其它协议交互消息和计算生成当前协议消息的能力,能够以自动化的方式验证协议是否存在多协议攻击。实验结果表明,提出的方法能够实现多协议攻击的自动化验证。

关 键 词:多协议攻击  自动化验证  安全属性  Athena算法  逆向搜索
收稿时间:2014/1/24 0:00:00
修稿时间:2014/4/10 0:00:00

Automatic Verification for Multi-protocol Attacks by Improving Athena
LIU Wei,GUO Yuan-bo,LEI Xin-feng and LI Jun-feng.Automatic Verification for Multi-protocol Attacks by Improving Athena[J].Computer Science,2014,41(12):112-117,132.
Authors:LIU Wei  GUO Yuan-bo  LEI Xin-feng and LI Jun-feng
Affiliation:The PLA Information Engineering University,Zhengzhou 450001,China;State Key Laboratory of Mathematical Engineering and Advanced Computing,Zhengzhou 450001,China;The PLA Information Engineering University,Zhengzhou 450001,China;State Key Laboratory of Mathematical Engineering and Advanced Computing,Zhengzhou 450001,China;Unit 61840 of the PLA,Beijing 100097,China;Taiyuan Satellite Launch Center,Taiyuan 036300,China
Abstract:Protocol security in multi-protocol environments is an open issue in formal analysis for security protocols.Aiming at this problem,an automatic verification for multi-protocol attacks was proposed based on Athena algorithm.The state representation and successor state generation algorithm of Athena are extended,and the attacker can intercept messages from one protocol and insert messages generated by it to another protocol.Some state reduction rules are introduced.The method can verify whether there is a multi-protocol attack.The experiment results show that the method can implement automatic verification for multi-protocol attacks.
Keywords:Multi-protocol attacks  Automatic verification  Security properties  Athena  Backwards search
本文献已被 CNKI 万方数据 等数据库收录!
点击此处可从《计算机科学》浏览原始摘要信息
点击此处可从《计算机科学》下载全文
设为首页 | 免责声明 | 关于勤云 | 加入收藏

Copyright©北京勤云科技发展有限公司  京ICP备09084417号