Article ID | Journal | Published Year | Pages | File Type |
---|---|---|---|---|
487733 | Procedia Computer Science | 2014 | 7 Pages |
Abstract
Current mobile authentication solutions put a cognitive burden on users to detect and avoid Man-In-The-Middle attacks. In this paper, we present a mobile authentication protocol named Mobile-ID which prevents Man-In-The-Middle attacks without relying on a human in the loop. With Mobile-ID, the message signed by the secure element on the mobile device incorporates the context information of the connected service provider. Hence, upon receiving the signed message the Mobile-ID server could easily identify the existence of an on-going attack and notify the genuine service provider.
Related Topics
Physical Sciences and Engineering
Computer Science
Computer Science (General)