DocumentCode :
1767575
Title :
Preventing real-world relay attacks on contactless devices
Author :
Henzl, Martin ; Hanacek, Petr ; Kacic, Matej
Author_Institution :
Dept. of Intell. Syst., Brno Univ. of Technol., Brno, Czech Republic
fYear :
2014
fDate :
13-16 Oct. 2014
Firstpage :
1
Lastpage :
6
Abstract :
This paper is focused on preventing relay attacks on contactless devices, such as contactless smart cards or Near-Field Communication (NFC) devices. Relay attacks can be prevented by the so called distance bounding protocols, which are based on restricting the round trip time to some limit. Distance bounding protocols protect against all theoretical attacks, because the time limit is calculated from the maximal allowed distance and from the speed of light. Real-world attacks are not perfect and induce additional delay to the delay caused by the signal travelling longer distance. This delay is caused by hardware components processing the signal and sending it to a different location. If the communication is relayed over a distance exceeding the range of one transmitter, it is likely that some buffering will be used. If the data are sent over network using TCP/IP, the induced delay will be significant. The attacker can reduce the response time in the relay attack by overclocking the forged reader in order to get the response from the smart card faster than the legitimate reader would get it. This would give the attacker a chance to reduce the roundtrip time and not exceed the time limit defined in the distance bounding protocol. We propose a method to prevent real-world attacks that induce delays significantly longer than the delay caused by the time travelling longer distance. We also show a countermeasure to the oveclocking attacks.
Keywords :
near-field communication; radiofrequency identification; smart cards; telecommunication security; transport protocols; RFID; TCP-IP; contactless devices; contactless smart cards; delay induction; distance bounding protocols; near-field communication devices; oveclocking attacks; real-world relay attack prevention; round trip time reduction; signal processing; Delays; Hardware; Protocols; Relays; Smart cards; Standards; Time factors; Contactless; NFC; Near Field Communication; Proximity; RFID; Relay Attack; Smart Card;
fLanguage :
English
Publisher :
ieee
Conference_Titel :
Security Technology (ICCST), 2014 International Carnahan Conference on
Conference_Location :
Rome
Print_ISBN :
978-1-4799-3530-7
Type :
conf
DOI :
10.1109/CCST.2014.6987031
Filename :
6987031
Link To Document :
بازگشت