arrow
Return

Analyzing Security Protocol Web Implementations Based on Model Extraction With Applied PI Calculus

delete2020-01-01
delete3
delete
OA
AI
X
Xudong He
Q
Qin Liu
S
Shuang Chen
C
Chin‐Tser Huang
王德军 (Dejun Wang)
B
Bo Meng *
DOI:10.1109/ACCESS.2020.2971615delete
deleteOriginal
deleteShare
deleteSave
View PDF
Abstract

Abstract

En 中文
Analyzing security protocol web implementations is a crucial part of web security. Based on the model extraction technology, this paper first defines SubJavaScript and SubPython languages, and then establishes mapping models from SubPython and SubJavaScript to Applied PI Calculus respectively, after that, develops the semi-automatic model extraction tools SubPython2PV and SubJavaScript2PV to analyze the four widely used security protocol web implementations. The experiment shows that the four typical security protocol web implications have confidentiality, but lack of authentication.
Keywords:
Security protocol implementations
model extraction
SubJavaScript
SubPython
formal method
ProVerif
AI Summary

AI Summary

Key information extracted from the uploaded paper, including a brief overview, abstract, background, key highlights, visual analysis, and future outlook.

Journal

IEEE Access cover
IEEE Access
IF:
3.6
Papers:
9.8W
Citations:
29.4W

Organization

South Central Minzu University cover
South Central Minzu University
Scholars:
4.6K
Papers: 3.3K
Citations: 3.4K
U
University of South Carolina System
Scholars:
1.5W
Papers: 1.4W
Citations: 27