DocumentCode :
2915165
Title :
A proposal to improve the security of mobile banking applications
Author :
Elkhodr, Mahmoud ; Shahrestani, Seyed ; Kourouche, K.
Author_Institution :
Sch. of Comput., Eng. & Math., Univ. of Western Sydney, Sydney, NSW, Australia
fYear :
2012
fDate :
21-23 Nov. 2012
Firstpage :
260
Lastpage :
265
Abstract :
Mobile banking (m-banking) is considered to be one of the most important mobile commerce applications currently available. The ubiquitous access to data with no place restrictions helps to promote this technology. The security and privacy of sensitive financial data is one of the main concerns in acceptance of these systems in Australia. It is specifically important to secure the transmission of the financial data between the financial institutions´ server and the mobile device used by consumers, as their communications are via unsecured networks such as the Internet. In this paper, a trust negotiation approach is proposed to address these security concerns. Trust negotiation is combined with the Transport Layer Security (TLS) as the underlying protocol. This combination of technology aims to maximize the existing security of m-banking applications. It results in significant improvements in security compared to the traditional identity-based only access control techniques. The proposed approach is implemented as a mobile application. It demonstrates that the developed application is easy to use and deploy in typical mobile environments.
Keywords :
banking; data privacy; mobile commerce; security of data; Australia; Internet; TLS protocol; financial data privacy; financial data security; financial data transmission; identity-based only access control technique; m-banking; mobile banking; mobile commerce application; security concern; security improvement; transport layer security; trust negotiation approach; ubiquitous data access; Androids; Banking; Humanoid robots; Mobile communication; Mobile handsets; Security; Servers; Mobile Banking; Mobile Computing; Security; Ubiquitous Access;
fLanguage :
English
Publisher :
ieee
Conference_Titel :
ICT and Knowledge Engineering (ICT & Knowledge Engineering), 2012 10th International Conference on
Conference_Location :
Bangkok
ISSN :
2157-0981
Print_ISBN :
978-1-4673-2316-1
Type :
conf
DOI :
10.1109/ICTKE.2012.6408565
Filename :
6408565
Link To Document :
بازگشت