An Extensible Framework for Efficient Secure SMS

被引:26
|
作者
De Santis, Alfredo [1 ]
Castiglione, Aniello [1 ]
Cattaneo, Giuseppe [1 ]
Cembalo, Maurizio [1 ]
Petagna, Fabio [1 ]
Petrillo, Umberto Ferraro [2 ]
机构
[1] Univ Salerno, Dip Informat Applicaz RM Capocelli, Via Ponte don Melillo, I-84084 Fisciano, SA, Italy
[2] Univ Roma Sapienza, Dip Stat Probabil & Stat Appl, I-00185 Rome, Italy
关键词
Elliptic curve cryptography; mobile secure communications; SMS security; power consumption analysis; performance analysis;
D O I
10.1109/CISIS.2010.81
中图分类号
TP301 [理论、方法];
学科分类号
081202 ;
摘要
Nowadays, Short Message Service (SMS) still represents the most used mobile messaging service. SMS messages are used in many different application fields, even in cases where security features, such as authentication and confidentiality between the communicators, must be ensured. Unfortunately, the SMS technology does not provide a built-in support for any security feature. This work presents SEESMS (Secure Extensible and Efficient SMS), a software framework written in Java which allows two peers to exchange encrypted and digitally signed SMS messages. The communication between peers is secured by using public-key cryptography. The key-exchange process is implemented by using a novel and simple security protocol which minimizes the number of SMS messages to use. SEESMS supports the encryption of a communication channel through the ECIES and the RSA algorithms. The identity validation of the contacts involved in the communication is implemented through the RSA, DSA and ECDSA signature schemes. SEESMS is able to certify the phone number of the peers using the framework. Additional cryptosystems can be coded and added to SEESMS as plug-ins. Special attention has been devoted to the implementation of an efficient framework in terms of energy consumption and execution time. This efficiency is obtained in two steps. First, all the cryptosystems available in the framework are implemented using mature and fully optimized cryptographic libraries. Second, an experimental analysis was conducted to determine which combination of cryptosystems and security parameters were able to provide a better trade-off in terms of speed/security and energy consumption. This experimental analysis has also been useful to expose some serious performance issues affecting the cryptographic libraries which are commonly used to implement security features on mobile devices.
引用
收藏
页码:843 / 850
页数:8
相关论文
共 50 条
  • [31] An Efficient and Secure Automotive Wireless Software Update Framework
    Steger, Marco
    Boano, Carlo Alberto
    Niedermayr, Thomas
    Karner, Michael
    Hillebrand, Joachim
    Roemer, Kay
    Rom, Werner
    IEEE TRANSACTIONS ON INDUSTRIAL INFORMATICS, 2018, 14 (05) : 2181 - 2193
  • [32] A model-based extensible framework for efficient application design using FPGA
    Mohanty, Sumit
    Prasanna, Viktor K.
    ACM TRANSACTIONS ON DESIGN AUTOMATION OF ELECTRONIC SYSTEMS, 2007, 12 (02)
  • [33] Building secure protocols for extensible distributed coordination through secure extensions
    Junior, Edson Floriano S.
    Alchieri, Eduardo
    Aranha, Diego F.
    Solis, Priscila
    COMPUTERS & SECURITY, 2019, 87
  • [34] Extensible propulsion simulation platform: Part II - Extensible framework
    Cao, Zhi-Song
    Yu, Long-Jiang
    Piao, Ying
    Hangkong Dongli Xuebao/Journal of Aerospace Power, 2007, 22 (02): : 268 - 273
  • [35] An Extensible, Optimizing Compiler for Secure Distributed Programs
    Acay, Cosku
    Recto, Rolph
    Gancher, Joshua
    Myers, Andrew C.
    Shi, Elaine
    PROCEEDINGS OF THE 42ND ACM SIGPLAN INTERNATIONAL CONFERENCE ON PROGRAMMING LANGUAGE DESIGN AND IMPLEMENTATION (PLDI '21), 2021, : 740 - 755
  • [36] A secure extensible container for hybrid mobile applications
    Jaramillo, David
    Smart, Robert
    Furht, Borko
    Agarwal, Ankur
    2013 PROCEEDINGS OF IEEE SOUTHEASTCON, 2013,
  • [37] An Extensible Monitoring and Adaptation Framework
    Popescu, Razvan
    Staikopoulos, Athanasios
    Clarke, Siobhan
    SERVICE-ORIENTED COMPUTING: ICSOC/SERVICE WAVE 2009 WORKSHOPS, 2010, 6275 : 314 - 324
  • [38] An extensible framework for IMRT verification
    Salk, J
    Kosta, M
    Blank, P
    RADIOTHERAPY AND ONCOLOGY, 2003, 68 : S104 - S104
  • [39] SMS: A Secure Healthcare Model for Smart Cities
    Tripathi, Gautami
    Ahad, Mohd Abdul
    Paiva, Sara
    ELECTRONICS, 2020, 9 (07) : 1 - 18
  • [40] ParSecureML: An Efficient Parallel Secure Machine Learning Framework on GPUs
    Chen, Zheng
    Zhang, Feng
    Zhou, Amelie Chi
    Zhai, Jidong
    Zhang, Chenyang
    Du, Xiaoyong
    PROCEEDINGS OF THE 49TH INTERNATIONAL CONFERENCE ON PARALLEL PROCESSING, ICPP 2020, 2020,