跳到主要內容

臺灣博碩士論文加值系統

(216.73.217.177) 您好!臺灣時間:2026/08/13 01:43
字體大小: 字級放大   字級縮小   預設字形  
回查詢結果 :::

詳目顯示

: 
twitterline
研究生:黃嘉偉
研究生(外文):HUANG, JIA-WEI
論文名稱:安全的NFC行動支付協議之研究
論文名稱(外文):A Study of Secure Payment Protocols for NFC-enabled Mobile Phones
指導教授:薛夙珍薛夙珍引用關係
指導教授(外文):Hsueh, Sue-Chen
口試委員:呂慈純廖彩雲林明言
口試委員(外文):Lu, Tzu-ChuenLiao, Tsai-YunLin, Ming-Yen
口試日期:2016-12-16
學位類別:碩士
校院名稱:朝陽科技大學
系所名稱:資訊管理系
學門:電算機學門
學類:電算機一般學類
論文種類:學術論文
論文出版年:2016
畢業學年度:105
語文別:中文
論文頁數:97
中文關鍵詞:行動支付資訊安全消費隱私近場通訊
外文關鍵詞:PaymentInformation SecurityConsumer PrivacyNFC
相關次數:
  • 被引用被引用:3
  • 點閱點閱:1487
  • 評分評分:
  • 下載下載:364
  • 收藏至我的研究室書目清單書目收藏:2
在近場通訊(Near Field Communication, NFC)的行動支付上,一直存在著安全與隱私的議題,例如假冒身份、重送攻擊,以及客戶個資隱私被揭露等。多數的研究成果都以解決上述問題而提出各種交易協議,為了能提高身份驗證與交易安全性,採用了多次加解密運算以及數位簽章,卻也因繁重的計算負擔導致協議整體運作效率較不理想,並且較無考慮到保護隱私的問題。本研究將先探討過去文獻所提出的交易協定,從中了解其優點與缺點,並尋找可用的安全技術,來設計安全的行動支付交易協定。除了考慮的交易的資訊安全性外,也將分別對行動支付的協議效率問題,以及行動支付的資料隱私問題進行探討與改善。在完成協議設計後,針對所提出的協議進行分析與討論,試著說明協議能抵禦常見的惡意攻擊,以及身分仿冒,確保交易協議的安全性足夠。除了交易的安全性外,也試著證實協議的整體效率充足,以及透過匿名的方法解決交易的資料隱私問題。
Although NFC mobile payment is fruitful and useful, security and customer privacy are of great concern to users. For example, attacks like identity impersonation, eavesdropping, and replaying might occur, also personal information and finance conditions could be exposed during payment transactions. Many protocols have been presented to solve these problems by using multiple times of encryptions and digital signatures times for higher security. However, the complicated computations introduce overheads and generate inefficient operations for these protocols. And then, those protocols have not concern consumer privacy problem clearly. We discuss those proposed protocols from literature and find out the advantage and weak point. And looking for the useful security technology to design the secure mobile payment protocol. Not only concern information security of the payment but also concern efficiency and consumer privacy problem. After design the protocols, we will analyze the protocol. And try to explain the protocol is secure and efficient that can defense common attack and cost a low computations. We also try to use the anonymous methods to solve the consumer privacy problem.
目錄
摘要 I
Abstract II
誌謝 III
目錄 IV
表目錄 VII
圖目錄 VIII
第一章、緒論 1
1.1 研究背景 1
1.2 研究動機 3
1.3 研究目的 6
1.4 研究範圍 7
1.5 研究步驟 9
第二章、文獻探討 11
2.1 行動支付 11
2.2 NFC行動支付 15
2.3 一次性密碼 26
2.4 金鑰加密系統與安全技術 31
2.4.1 金鑰加密系統 32
2.4.2 雜湊演算法 33
2.4.3 Diffie-Hellman演算法 34
第三章、安全的NFC行動支付交易協議 36
3.1 安全的NFC行動支付交易協議架構 37
3.2 安全的NFC行動支付交易協議方法詳述 39
3.3 安全的NFC行動支付交易協議分析 48
3.4 小結 52
第四章、安全與匿名的NFC行動支付協議 54
4.1 安全與匿名的NFC行動支付協議架構 55
4.2 安全與匿名的NFC行動支付協議方法詳述 57
4.3 安全與匿名的NFC行動支付協議分析 66
4.4 小結 71
第五章、安全的NFC儲值卡行動支付協議 72
5.1 安全的NFC儲值卡行動支付協議架構 72
5.2 安全的NFC儲值卡行動支付協議方法詳述 75
5.3 安全的NFC儲值卡行動支付協議分析 87
5.4 小結 91
第六章、結論與未來方向 92
6.1 結論 92
6.2 未來方向 94
參考文獻 96

表目錄
表3.1 安全的NFC行動支付交易協議符號說明 38
表3.2 安全的NFC行動支付交易協議計算量表 52
表4.1 安全與匿名的NFC行動支付協議符號說明 56
表4.2 安全與匿名的NFC行動支付協議計算量表 70
表5.1 安全的NFC儲值卡行動支付協議符號說明 74
表5.2 安全的NFC儲值卡行動支付協議計算量表 90
表6.1研究成果協議分析比較表 94

圖目錄
圖1.1 研究範圍示意圖 8
圖1.2 研究步驟示意圖 10
圖2.1 Pourghomi學者之方法示意圖 19
圖2.2 Abughazalah學者方法之發行階段示意圖 21
圖2.3 Abughazalah學者方法之認證階段示意圖 23
圖2.4 Abughazalah學者方法之付款階段示意 26
圖3.1 安全的NFC行動支付交易協議架構圖 37
圖3.2 安全的NFC行動支付交易協議購物階段示意圖 41
圖3.3 安全的NFC行動支付交易協議認證階段示意圖 44
圖3.4 安全的NFC行動支付交易協議付款階段示意圖 47
圖4.1安全與匿名的NFC行動支付協議架構圖 56
圖4.2安全與匿名的NFC行動支付協議匿名認證階段示意圖 60
圖4.3安全與匿名的NFC行動支付協議對稱金鑰產生階段示意圖 62
圖4.4 安全與匿名的NFC行動支付協議交易階段示意圖 65
圖5.1安全的NFC儲值卡行動支付協議架構圖 73
圖5.2安全的NFC儲值卡行動支付協議註冊階段示意圖 78
圖5.3安全的NFC儲值卡行動支付協議儲值階段示意圖 79
圖5.4 安全的NFC儲值卡行動支付協議交易階段示意圖 82
圖5.5 安全的NFC儲值卡行動支付協議取款階段示意圖 83
圖5.6 安全的NFC儲值卡行動支付協議復原階段示意圖 86

參考文獻
[1]翁世吉、田育任(2014),「行動商務支付應用發展趨勢」,財金資訊季刊,第七十八期,第19-26頁。
[2]葉乃菁、李順仁(2004),網路安全理論與實務,文魁資訊股份有限公司,第3-2 - 3-20頁。
[3]S. Abughazalah, K. Markantonakis and K. Mayes(2014), “Secure Mobile Payment on NFC-Enabled Mobile Phones Formally Analysed Using CasperFDR,” Proceedings of the IEEE 13th International Conference on Trust, Security and Privacy in Computing and Communications, pp. 422-431, Beijing.
[4]M. Badra and R. B. Badra(2016), “A lightweight security protocol for NFC-based mobile payments,” The 7th International Conference on Ambient Systems, Networks and Technologies, Vol. 83, pp. 705-711.
[5]Y. L. Chi, I. C. Lin, C. H. Chen and M. S. Hwang(2015), “The Secure Transaction Protocol in NFC Card Emulation Mode,” International Journal of Network Security, Vol. 17, No. 4, pp. 431-438.
[6]S. M. Darwish and A. M. Hassan(2012), “A Model to Authenticate Requests for Online Banking Transactions,” Alexandria Engineering Journal, Vol. 51, No. 3, pp. 185-191.
[7]H. Eun, H. Lee, and H. Oh(2013), “Conditional Privacy Preserving Security Protocol for NFC Applications,” IEEE Transactions on Consumer Electronics, Vol. 59, Issue 1, pp. 153-160.
[8]T. Halonen(2002), A System for Secure Mobile Payment Transactions, Master Thesis, Helsinki University of Technology.
[9]A. Hiltgen, T. Kramp and T. Weigold(2006), “Secure Internet Banking Authentication,” IEEE Security & Privacy, Vol. 4, No. 2, pp. 21-29.
[10]M. Hollow(2012), “Pre-1900 Utopian Visions of the ‘Cashless Society’,” MPRA Paper No. 40780, posted 20, August, 23:29 UTC.
[11]C. Y. Huang, S. P. Ma and K. T. Chen(2011), “Using One-Time Passwords to Prevent Password Phishing Attacks,” Journal of Network and Computer Applications, Vol. 34, No. 4, pp. 1292-1301.
[12]J. T. Isaac and Z. Sherali(2014), “Secure Mobile Payment Systems,” IT Professional, Vol. 16, Issue 3, pp. 36-43.
[13]W. S. Juang(2004), “Efficient Password Authenticated Key Agreement Using Smart Cards,” Computers & Security, Vol.23, No. 2, pp. 167-173.
[14]J. Pesonen and E. Horster(2012), “Near Field Communication Technology in Tourism,” Tourism Management Perspectives, Vol. 4, pp. 11-18.
[15]P. Pourghomi, M. Qasim Saeed and G. Ghinea(2013), “A Proposed NFC Payment Application,” International Journal of Advanced Computer Science and Applications,Vol. 4, No. 8, pp. 173-181.
[16]R. Song(2010), “Advanced Smart Card Based Password Authentication Protocol,” Computer Standards & Interface, Vol. 32, No. 5-6, pp.321-325.
[17]H. van der Heijden(2002), “Factors Affecting the Successful Introduction of Mobile Payment Systems,” Proceedings of the 15th Bled Electronic Commerce Conference, pp. 430-443.
[18]經濟部技術處, “行動支付市場驅動因素與趨勢剖析,” 2015/03/24, https://www.moea.gov.tw/MNS/doit/industrytech/IndustryTech.aspx?menu_id=13545&it_id=10
[19]科技報橘, “【Jento 專欄】看 Toyota 如何把 QR Code 的掃描前後體驗,做到最好,” 2012/12/15, http://buzzorange.com/techorange/2012/12/25/qr-code-best-practice-from-toyota/
[20]數位時代, “麥當勞NFC行動支付服務,讓消費者快速下單,” 2014/09/04, http://www.bnext.com.tw/article/view/id/33647
[21]Apple Inc., “Apple Pay – Apple,” http://www.apple.com/apple-pay/
[22]Gartner, “Gartner Says Worldwide Mobile Payment Transaction Value to Surpass $235 Billion in 2013,” 2013/06/04, http://www.gartner.com/newsroom/id/2504915
[23]Google Inc., “Google Wallet,” https://www.google.com/wallet/
[24]Hami鈴聲下載-中華電信(2013), http://hamitone.emome.net/ringtone/web/index.jsp
[25]Wiki, “近場通訊,” 2016/04/12, https://zh.wikipedia.org/wiki/%E8%BF%91%E5%A0%B4%E9%80%9A%E8%A8%8A
[26]Wiki, “Diffie–Hellman key exchange,” 2016/01/22, https://en.wikipedia.org/wiki/Diffie%E2%80%93Hellman_key_exchange

QRCODE
 
 
 
 
 
                                                                                                                                                                                                                                                                                                                                                                                                               
第一頁 上一頁 下一頁 最後一頁 top
無相關期刊