TLS Protocol Verification for Securing E-Commerce Websites
Daassa Asma (),
Machhout Mohsen and
Aguili Taoufik
Additional contact information
Daassa Asma: Electronics and Microelectronics Laboratory, Faculty of Sciences, Monastir, National Engineering School of Tunis, University of Tunis El Manar, Tunisia
Machhout Mohsen: Electronics and Microelectronics Laboratory, Faculty of Sciences, University of Monastir, Monastir, Tunisia
Aguili Taoufik: Syscom Laboratory, Department of Information and Communications Technology, National Engineering School of Tunis, Tunis, Tunisia
Journal of Internet Banking and Commerce, 2017, vol. 22, issue 02, 01-15
Abstract:
E-commerce security is very important especially nowadays but internet is entrusted due to the attacks and hackers exploitations. To improve the security of electronics transactions, many protocols are developed. SSL/TLS is the most commonly used, although many dangerous attacks were found. So, developers have to upgrade SSL/TLS to avoid these attacks and enhance security. To achieve their goals, hackers exploit flaws and errors found in SSL/TLS protocol implementations, it is necessary to verify and validate the security of the entire software code. Therefore, to improve the security of SSL/TLS protocol, researchers try to find solutions; protocols must therefore be tested and validated before their launch. In this paper, we will focus on analyzing SSL/TLS protocol with automated formal verification tool AVISPA. We study the renegotiation attack and try to detect it using AVISPA. We use formal models for automatic verification of security protocol to discover new attacks, to prevent similar attack in the future and also to increase the tool efficiency.
Keywords: SSL/TLS; Security; e-Commerce; HLPSL; AVISPA; Attacks (search for similar items in EconPapers)
JEL-codes: A11 (search for similar items in EconPapers)
Date: 2017
References: Add references at CitEc
Citations:
Downloads: (external link)
https://www.icommercecentral.com/open-access/tls-p ... bsites.php?aid=86177 Full text (text/html)
Related works:
This item may be available elsewhere in EconPapers: Search for items with the same title.
Export reference: BibTeX
RIS (EndNote, ProCite, RefMan)
HTML/Text
Persistent link: https://EconPapers.repec.org/RePEc:ris:joibac:0108
Access Statistics for this article
Journal of Internet Banking and Commerce is currently edited by Vijaya Lakshmi, Nahum Goldmann and Dale Pinto
More articles in Journal of Internet Banking and Commerce
Bibliographic data for series maintained by Dale Pinto ().