Proxy server authentication for blocking HTTP-cache-poisoning attacks

  • Lee, Wookey
  • Park, Simon Soon Hyoung
  • Lim, Chasung
  • Kim, Jinho
  • Kang, Sangwon
Citations

SCOPUS

1

초록

E-commerce systems have usually been processed by credit cards and public certificate via web sites where the client passes through web proxy server or the route of proxy server. In these systems, private information such as credit card numbers and passwords need to be protected by SSL (Secure Sockets Layer) or TLS (Transport Layer Security) encryption. But private information is still vulnerable to sniffing attacks through changing certificates of proxy servers, which is called the attacking of SSL-in-the-middle proxy. This paper analyzes credit card security systems which are defenseless against the hacking of false proxy server. It also proposes an effective method for protecting against the attacks of authentication proxy server Man-In-The Middle. © 2015 NSP Natural Sciences Publishing Cor.

키워드

HTTPSMITMProxy serverSSLTLS
제목
Proxy server authentication for blocking HTTP-cache-poisoning attacks
저자
Lee, WookeyPark, Simon Soon HyoungLim, ChasungKim, JinhoKang, Sangwon
DOI
10.12785/amis/092L23
발행일
2015
유형
Article
저널명
Applied Mathematics and Information Sciences
9
2
페이지
483 ~ 492