Secure ownership and ownership transfer in RFID systems

  • Authors:
  • Ton Van Deursen;Sjouke Mauw;Saša Radomirović;Pim Vullers

  • Affiliations:
  • University of Luxembourg, Luxembourg;University of Luxembourg, Luxembourg;University of Luxembourg, Luxembourg;University of Luxembourg, Luxembourg and Radboud University Nijmegen, The Netherlands

  • Venue:
  • ESORICS'09 Proceedings of the 14th European conference on Research in computer security
  • Year:
  • 2009

Quantified Score

Hi-index 0.00

Visualization

Abstract

We present a formal model for stateful security protocols. This model is used to define ownership and ownership transfer as concepts as well as security properties. These definitions are based on an intuitive notion of ownership related to physical ownership. They are aimed at RFID systems, but should be applicable to any scenario sharing the same intuition of ownership. We discuss the connection between ownership and the notion of desynchronization resistance and give the first formal definition of the latter. We apply our definitions to existing RFID protocols, exhibiting attacks on desynchronization resistance, secure ownership, and secure ownership transfer.