Title :
A Lightweight Anonymous Mobile Shopping Scheme Based on DAA for Trusted Mobile Platform
Author :
Bo Yang ; Dengguo Feng ; Yu Qin
Author_Institution :
Trusted Comput. & Inf. Assurance Lab., Inst. of Software, Beijing, China
Abstract :
The deposit security and the purchasing anonymity are two important issues when consumers do shopping on mobile platforms. However, there is currently no solution to completely address both the issues. In this paper, we propose a lightweight anonymous mobile shopping scheme based on DAA for trusted mobile platform. By fully considering the background of mobile applications, we design the scheme according to four elliptic curve based DAA (ECC-DAA) schemes. The entities of mobile device manufacturer, mobile device, central trusted party, banks and e-commerce platform compose the system architecture and seven phases are designed accordingly. Moreover, we present the architecture of trusted mobile platform based on Trust Zone and TPM emulator, which helps achieve seven security properties including the deposit security and the purchasing anonymity. The issues about sensitive data management and credential revocation are discussed. ECC-DAA schemes including CF08, BCL08, BL10 and CPS10 and three kinds of elliptic curves including MNT, BN and super singular curve are finally compared and implemented as foundation. The simulating experiment result indicates that the proposed scheme with our trusted architecture has a good computing performance for consumers using mobile devices.
Keywords :
Internet; electronic commerce; mobile computing; public key cryptography; retail data processing; DAA; ECC-DAA schemes; Trust Zone; central trusted party; e-commerce platform; elliptic curve based DAA; lightweight anonymous mobile shopping scheme; mobile applications; mobile device manufacturer; mobile platforms; purchasing anonymity; sensitive data management; trusted mobile platform; Computer architecture; Cryptography; Kernel; Mobile communication; Mobile handsets; Privacy; TPM; TrustZone; mobile platform; mobile shopping; privacy; trusted computing;
Conference_Titel :
Trust, Security and Privacy in Computing and Communications (TrustCom), 2014 IEEE 13th International Conference on
Conference_Location :
Beijing
DOI :
10.1109/TrustCom.2014.6