Posted: September 10th, 2022
Replay and Pre-play attacks against PKI
Replay and Pre-play attacks against PKI
Technology is rapidly growing, hence the increase in user identity validations to secure online access. Replay and pre-play attacks are some of the attacks deployed against Public Key infrastructure even though the latter is rare. Replay attacks are normally a network attack whereby transmissions are repeatedly sent to the target node repeatedly in hopes that the active participants will believe the protocol run has been completed successfully. A pre-play attack is a form of replay attack but it involves devising the attack before executing it. Since PKIs are use digital certifications to authenticate users, the replay attacks aim at bypassing such authentications by posing as the actual message that was sent (Hazari 2002, p.389). These attacks are a common man-in-the middle example since they tend to disguise themselves as an acceptable entity in the network. Replay and Pre-pray attacks can be controlled and prevented through a number of ways. One of the most efficient ways includes using both Diffie-Hellman and blowfish algorithm (Shubh 2016, p.1). These two methods enhance the security since DH generates keys while blowfish works on encryption. The blowfish algorithm offers key expansion features where 16 sub keys of 48 bits are generated from the initial 64bil keys for each Data Encryption Standard. Another way to mitigate replay and pre-play attacks is to a tag components using session ids and their number. This type of approach prevents all types of attacks from the Syverson’s taxonomy. The session ids will be used to identify runs so that the network can keep track of transmissions and identify malicious activity. All these approaches are made to ensure the safety of online users as organizations continue to come up with stronger authentication solutions.
References
Hazari, S. (2002). Challenges of implementing public key infrastructure in Netcentric enterprises. Logistics Information Management.
Shubh, T. and Sharma, S., 2016. Man-in-the-middle-attack prevention using HTTPS and SSL. Int J Comput Sci Mobile Comput, 5(6), pp.569-579.
Order | Check Discount
Sample Homework Assignments & Research Topics
Tags:
Replay and Pre-play attacks against PKI