Modeling insider attacks on group key-exchange protocols
Title | Modeling insider attacks on group key-exchange protocols |
Publication Type | Conference Papers |
Year of Publication | 2005 |
Authors | Katz J, Shin J S |
Conference Name | Proceedings of the 12th ACM conference on Computer and communications security |
Date Published | 2005/// |
Publisher | ACM |
Conference Location | New York, NY, USA |
ISBN Number | 1-59593-226-7 |
Keywords | group key exchange, insider attacks, universal composability |
Abstract | Protocols for authenticated key exchange (AKE) allow parties within an insecure network to establish a common session key which can then be used to secure their future communication. It is fair to say that group AKE is currently less well understood than the case of two-party AKE; in particular, attacks by malicious insiders --- a concern specific to the group setting --- have so far been considered only in a relatively "ad-hoc" fashion. The main contribution of this work is to address this deficiency by providing a formal, comprehensive model and definition of security for group AKE which automatically encompasses insider attacks. We do so by defining an appropriate ideal functionality for group AKE within the universal composability (UC) framework. As a side benefit, any protocol secure with respect to our definition is secure even when run concurrently with other protocols, and the key generated by any such protocol may be used securely in any subsequent application.In addition to proposing this definition, we show that the resulting notion of security is strictly stronger than the one proposed by Bresson, et al. (termed "AKE-security"), and that our definition implies all previously-suggested notions of security against insider attacks. We also show a simple technique for converting any AKE-secure protocol into one secure with respect to our definition. |
URL | http://doi.acm.org/10.1145/1102120.1102146 |
DOI | 10.1145/1102120.1102146 |