ISSN: 1204-5357
TLS Protocol Verification for Securing E-Commerce Websites
E-commerce security is very important especially nowadays but internet is entrusted due to the attacks and hackers exploitations. To improve the security of electronics transactions, many protocols are developed. SSL/TLS is the most commonly used, although many dangerous attacks were found. So, developers have to upgrade SSL/TLS to avoid these attacks and enhance security. To achieve their goals, hackers exploit flaws and errors found in SSL/TLS protocol implementations, it is necessary to verify and validate the security of the entire software code. Therefore, to improve the security of SSL/TLS protocol, researchers try to find solutions; protocols must therefore be tested and validated before their launch. In this paper, we will focus on analyzing SSL/TLS protocol with automated formal verification tool AVISPA. We study the renegotiation attack and try to detect it using AVISPA. We use formal models for automatic verification of security protocol to discover new attacks, to prevent similar attack in the future and also to increase the tool efficiency.
Daassa Asma, Machhout Mohsen, Aguili Taoufik
To read the full article Download Full Article | Visit Full Article
Copyright © 2025 Research and Reviews, All Rights Reserved