Show simple item record

dc.contributor.advisorBettati, Riccardo
dc.contributor.advisorReddy, A. L. Narasimha
dc.creatorPanda, Sri Aditya
dc.date.accessioned2016-07-08T15:12:49Z
dc.date.available2016-07-08T15:12:49Z
dc.date.created2016-05
dc.date.issued2016-04-12
dc.date.submittedMay 2016
dc.identifier.urihttps://hdl.handle.net/1969.1/156966
dc.description.abstractNear Field Communication (NFC) is an RFID based proximity communication technology. The extensive use of NFC technology for popular and sensitive applications such as financial transactions and content sharing necessitates the implementation of secure transmission standards for data exchange. NFC-SEC is one such set of cryptographic standards that extends NFC to provide better security. However, NFC is still susceptible to Man-in-the-Middle (MITM) attacks due to the lack of device authentication, which in turn allows for masquerading and other attacks. Inclusion of a certification authority has commonly been proposed to resolve this issue at the cost of significant additional communication overhead. In this thesis, we first demonstrate a practical MITM attack on an NFC-SEC communication session. We then present NonceCrypt, a light-weight countermeasure against this class of attacks. NonceCrypt addresses the vulnerability of NFC-SEC by an added step of authentication over a secure out-of-band communication channel. We implement NonceCrypt on an Arduino platform and evaluate its implementation cost and runtime overhead in a set of experiments. Results indicate that the increase memory and time overhead for this scheme are negligible. It avoids involving any additional entities in the communication and is based on a flexible implementation scheme that can be used for both smartphones and contactless cards.en
dc.format.mimetypeapplication/pdf
dc.language.isoen
dc.subjectNear Field Communicationen
dc.subjectNFCen
dc.subjectMITMen
dc.subjectMan-in-the-Middle Attacken
dc.subjectOut-of-Band Key Exchangeen
dc.subjectRFIDen
dc.subjectNFC-SECen
dc.subjectNonceCrypten
dc.subjectChannelKeyen
dc.subjectencryptionen
dc.subjectsecurityen
dc.titlePreventing Man-in-the-Middle Attacks in Near Field Communication by Out-of-Band Key Exchangeen
dc.typeThesisen
thesis.degree.departmentElectrical and Computer Engineeringen
thesis.degree.disciplineComputer Engineeringen
thesis.degree.grantorTexas A & M Universityen
thesis.degree.nameMaster of Scienceen
thesis.degree.levelMastersen
dc.contributor.committeeMemberGratz, Paul
dc.type.materialtexten
dc.date.updated2016-07-08T15:12:49Z
local.etdauthor.orcid0000-0002-5084-627X


Files in this item

Thumbnail

This item appears in the following Collection(s)

Show simple item record