Modeling insider attacks on group key-exchange protocols

TitleModeling insider attacks on group key-exchange protocols
Publication TypeConference Papers
Year of Publication2005
AuthorsKatz J, Shin J S
Conference NameProceedings of the 12th ACM conference on Computer and communications security
Date Published2005///
PublisherACM
Conference LocationNew York, NY, USA
ISBN Number1-59593-226-7
Keywordsgroup key exchange, insider attacks, universal composability
Abstract

Protocols for authenticated key exchange (AKE) allow parties within an insecure network to establish a common session key which can then be used to secure their future communication. It is fair to say that group AKE is currently less well understood than the case of two-party AKE; in particular, attacks by malicious insiders --- a concern specific to the group setting --- have so far been considered only in a relatively "ad-hoc" fashion. The main contribution of this work is to address this deficiency by providing a formal, comprehensive model and definition of security for group AKE which automatically encompasses insider attacks. We do so by defining an appropriate ideal functionality for group AKE within the universal composability (UC) framework. As a side benefit, any protocol secure with respect to our definition is secure even when run concurrently with other protocols, and the key generated by any such protocol may be used securely in any subsequent application.In addition to proposing this definition, we show that the resulting notion of security is strictly stronger than the one proposed by Bresson, et al. (termed "AKE-security"), and that our definition implies all previously-suggested notions of security against insider attacks. We also show a simple technique for converting any AKE-secure protocol into one secure with respect to our definition.

URLhttp://doi.acm.org/10.1145/1102120.1102146
DOI10.1145/1102120.1102146