SIMSec: A Key Exchange Protocol Between SIM Card and Service Provider


Ok K., Coskun V., Yarman S. B., CEVIKBAS C., Ozdenizci B.

WIRELESS PERSONAL COMMUNICATIONS, cilt.89, sa.4, ss.1371-1390, 2016 (SCI-Expanded) identifier identifier

  • Yayın Türü: Makale / Tam Makale
  • Cilt numarası: 89 Sayı: 4
  • Basım Tarihi: 2016
  • Doi Numarası: 10.1007/s11277-016-3326-5
  • Dergi Adı: WIRELESS PERSONAL COMMUNICATIONS
  • Derginin Tarandığı İndeksler: Science Citation Index Expanded (SCI-EXPANDED), Scopus
  • Sayfa Sayıları: ss.1371-1390
  • İstanbul Üniversitesi Adresli: Evet

Özet

Mobile technology is so popular and overdosed adoption is inevitable in today's world. As the mobile technologies have advanced, Service Providers (SP) have offered services via Smartphones and some of them required secure data communication between the Subscriber Identity Module (SIM) cards on Smartphones and the servers of SP. The latest SIM cards comply with recent specifications including secure domain generation, mobile signatures, pre-installed encryption keys, and other useful security services. Nevertheless, un-keyed SIM cards do not satisfy such requirements, thus end-to-end encryption between the SIM card and SP cannot be provided. In this paper, we provide a key exchange protocol, which creates a symmetric key through the collaborative work of the SIM card and the SP server. After a successful protocol performance, the SIM card and SP can perform end-to-end data encryption. After defining the protocol, we also discuss the security issues and provide a formal security analysis of the protocol using the Casper/FDR tool.