On the security of public key protocols
1983/03/01 by D. Dolev, Danny Dolev, A. Yao · 5,709 citations
Computer Science · #Advanced Authentication Protocols Security #Computer network #Computer science #Computer security #Computer security model #Cryptographic Implementations and Security #Cryptographic protocol #Cryptography #Cryptography and Data Security #DECIPHER #Encryption #Key (lock) #Protocol (science) #Public-key cryptography
paper · doi:10.1109/tit.1983.1056650
published in IEEE Transactions on Information Theory 29(2), 198-208 (Institute of Electrical and Electronics Engineers)
openalex publication_date 1983/03/01 · openalex created_date 2025/10/10 · openalex updated_date 2026/08/05
Abstract
Recently the use of public key encryption to provide secure network communication has received considerable attention. Such public key systems are usually effective against passive eavesdroppers, who merely tap the lines and try to decipher the message. It has been pointed out, however, that an improperly designed protocol could be vulnerable to an active saboteur, one who may impersonate another user or alter the message being transmitted. Several models are formulated in which the security of protocols can be discussed precisely. Algorithms and characterizations that can be used to determine protocol security in these models are given.
Citations
Cited by
- CLAACS‐IOD: Certificate‐embedded lightweight authentication and access control scheme for Internet of Drones
- Rewriting the Response Path: Silent Tampering and Provider-Signed Defense in BYOK LLM Agents
- Evaluating Large Language Models for Symbolic Security Protocol Analysis
- Dynamic Logic with Parallel Operator for Verifying Communication Protocols
- Strand-Based Approach to Patch Security Protocols
- On the Complexity of Verification of Time-Sensitive Distributed Systems: Technical Report
- Securing Cross-Domain Internet of Drones: An RFF-PUF Allied Authenticated Key Exchange Protocol With Over-the-Air Enrollment
- Fast Deterministically Safe Proof-of-Work Consensus
- Proving DNSSEC Correctness: A Formal Approach to Secure Domain Name Resolution
- Analysis of the Security Design, Engineering, and Implementation of the SecureDNA System
- Evaluating Vulnerabilities of Connected Vehicles Under Cyber Attacks by Attack-Defense Tree
- Trusted AI Agents in the Cloud
- Secure Command, Control and Communications Systems (C3) for Army UxVs
- QuLore: An Adaptive Security Framework to Extend Quantum-Safe Communications to Real-World Networks
- Quantum-Resistant Authentication Scheme for RFID Systems Using Lattice-Based Cryptography
- Towards a Formal Verification of Secure Vehicle Software Updates
- TRICK: Time and Range Integrity ChecK using Low Earth Orbiting Satellite for Securing GNSS
- Cryptographic Binding Should Not Be Optional: A Formal-Methods Analysis of FIDO UAF Channel Binding
- Existential Assertions for Voting Protocols
- NFCGate: Opening the Door for NFC Security Research with a Smartphone-Based Toolkit
- DNStamp: Short-lived Trusted Timestamping
- STASH: Securing transparent authentication schemes using prover-side proximity verification
- Design and analysis of authenticated key agreement scheme in cloud-assisted cyber–physical systems
- An improved and anonymous two-factor authentication protocol for health-care applications with wireless medical sensor networks
- QAE-BAC: Achieving Quantifiable Anonymity and Efficiency in Blockchain-Based Access Control with Attribute
- Symbolic verification of Apple's Find My location-tracking protocol
- Symbolic Abstractions for Quantum Protocol Verification
- A Symbolic Logic with Concrete Bounds for Cryptographic Protocols
- Verifying a Mix Net in CSP
- Finitary Deduction Systems
- Designing Quantum-Safe Lattice-Based Multi-Authority CP-ABE Scheme for Blockchain-Enabled IoT-Based Consumer Healthcare Electronics
- A Lightweight Authentication and Key Agreement Protocol Design for FANET
- A Peered Bulletin Board for Robust Use in Verifiable Voting Systems
- Securing Private Federated Learning in a Malicious Setting: A Scalable TEE-Based Approach with Client Auditing
- Towards Reliable Service Provisioning for Dynamic UAV Clusters in Low-Altitude Economy Networks
- The Aegis Protocol: A Foundational Security Framework for Autonomous AI Agents
- State Space Reduction in the Maude-NRL Protocol Analyzer
- Towards a Decentralized IoT Onboarding for Smart Homes Using Consortium Blockchain
- Formal Verification of Physical Layer Security Protocols for Next-Generation Communication Networks (extended version)
- HyperDegrade: From GHz to MHz Effective CPU Frequencies
- AOT: Anonymization by Oblivious Transfer
- Symbolic Execution in Practice: A Survey of Applications in Vulnerability, Malware, Firmware, and Protocol Analysis
- VWAttacker: A Systematic Security Testing Framework for Voice over WiFi User Equipments
- Diffie-Hellman in the Air: A Link Layer Approach for In-Band Wireless Pairing
- A Bisimilarity Congruence for the Applied pi-Calculus Sufficiently Coarse to Verify Privacy Properties
- Modelling Arbitrary Computations in the Symbolic Model using an Equational Theory for Bounded Binary Circuits
- Analysing ZigBee Key Establishment Protocols
- Attack Interference in Non-Collaborative Scenarios for Security Protocol Analysis [Extended Version]
- MADP-IIME: malware attack detection protocol in IoT-enabled industrial multimedia environment using machine learning approach
- Dealing With Logical Omniscience: Expressiveness and Pragmatics
- Authentication Protocols for Internet of Things: A Comprehensive Survey
- Modeling Bitcoin Contracts by Timed Automata
- Active Attack Resilience in 5G: A New Take on Authentication and Key Agreement
- Knowledge Flow Analysis for Security Protocols
- A Trace Logic for Local Security Properties
- WatchWitch: Interoperability, Privacy, and Autonomy for the Apple Watch
- On the Privacy of Optimization Approaches
- The Secrets Must Not Flow: Scaling Security Verification to Large Codebases (extended version)
- Lightweight Electronic Signatures and Reliable Access Control Included in Sensor Networks to Prevent Cyber Attacks from Modifying Patient Data
- Adversarial Attacks on Deep Learning-Based False Data Injection Detection in Differential Relays
- Physical Layer Challenge-Response Authentication between Ambient Backscatter Devices
- Building Automotive Security on Internet Standards: An Integration of DNSSEC, DANE, and DANCE to Authenticate and Authorize In-Car Services
- Non-collaborative Attackers and How and Where to Defend Flawed Security Protocols (Extended Version)
- ModelForge: Using GenAI to Improve the Development of Security Protocols
- Homomorphisms and Minimality for Enrich-by-Need Security Analysis
- A Semi-Decidable Procedure for Secrecy in Cryptographic Protocols
- Actor-network procedures: Modeling multi-factor authentication, device pairing, social interactions
- A Generalized Two-Phase Analysis of Knowledge Flows in Security Protocols
- A Key-Agreement Protocol Based on Static Parameters and Hash Functions
- Compact and Selective Disclosure for Verifiable Credentials
- Memory Simulations, Security and Optimization in a Verified Compiler
- State Space Reduction with Message Inspection in Security Protocol Model Checking
- On the Decidability of (ground) Reachability Problems for Cryptographic Protocols (extended version)
- Compliance in Real Time Multiset Rewriting Models
- Extensible Post Quantum Cryptography Based Authentication
- Trace Equivalence and Epistemic Logic to Express Security Properties
- QRES: Quantitative Reasoning on Encrypted Security SLAs
- Symbolic Timed Observational Equivalence
- SecureTime: Secure Multicast Time Synchronization
- RAMHU: A New Robust Lightweight Scheme for Mutual Users Authentication in Healthcare Applications
- Verifying Security Protocols using Dynamic Strategies
- A Formal Approach to Exploiting Multi-Stage Attacks based on File-System Vulnerabilities of Web Applications (Extended Version)
- A Modular End-to-End Framework for Secure Firmware Updates on Embedded\n Systems
- Location-Aware Mobile Intrusion Detection with Enhanced Privacy in a 5G Context
- Decidability of Parameterised Dolev-Yao Secrecy
- Secure key exchange scheme for WPA/WPA2-PSK using public key cryptography
- Vehicular Communication Security: Multi-Channel and Multi-Factor Authentication
- A bibliometric retrospective of Computers & Security
- Calcium Vulnerability Scanner (CVS): A Deeper Look
- An Algebraic Characterization of Security of Cryptographic Protocols
- EnclaveX: End-to-End Confidential AI with CPU/GPU TEEs
- Confidential Serverless Computing
- Right Divisibility in Erasing Semi-Thue Systems: A Minimal View of Intruder Deduction
- Secure Long-Range Autonomous Valet Parking: A Reservation Scheme With Three-Factor Authentication and Key Agreement
- Formal Analysis and Supply Chain Security for Agentic AI Skills
- BAN-GZKP: Optimal Zero Knowledge Proof based Scheme for Wireless Body Area Networks
- TruSDN: Bootstrapping Trust in Cloud Network Infrastructure
- Abstract interpretation of temporal concurrent constraint programs
- A logic of authentication
- Automated Analysis of Voting Systems under an Active Intruder Model in CSP
- Computational Security Analysis of the UMTS and LTE Authentication and Key Agreement Protocols
- Sensor-Based Proximity Detection in the Face of Active Adversaries
- FLSSM: A Federated Learning Storage Security Model with Homomorphic Encryption
- Security Analysis and Improvement of 'a More Secure Anonymous User Authentication Scheme for the Integrated EPR Information System'. [europepmc]
- Cryptanalysis and Improvement of a Biometric-Based Multi-Server Authentication and Key Agreement Scheme. [europepmc]
- An Enhanced Biometric Based Authentication with Key-Agreement Protocol for Multi-Server Architecture Based on Elliptic Curve Cryptography. [europepmc]
- An Energy Efficient Mutual Authentication and Key Agreement Scheme Preserving Anonymity for Wireless Sensor Networks. [europepmc]
- Secure Authentication Protocol for Wireless Sensor Networks in Vehicular Communications. [europepmc]
- PAX: Using Pseudonymization and Anonymization to Protect Patients' Identities and Data in the Healthcare System. [europepmc]
- Secure Three-Factor Authentication Protocol for Multi-Gateway IoT Environments. [europepmc]
- A Secure Lightweight Three-Factor Authentication Scheme for IoT in Cloud Computing Environment. [europepmc]
- LDAKM-EIoT: Lightweight Device Authentication and Key Management Mechanism for Edge-Based IoT Deployment. [europepmc]
- Lightweight Authentication Protocol for M2M Communications of Resource-Constrained Devices in Industrial Internet of Things. [europepmc]
- An Efficient, Anonymous and Robust Authentication Scheme for Smart Home Environments. [europepmc]
- S6AE: Securing 6LoWPAN Using Authenticated Encryption Scheme. [europepmc]
- Design of Secure Protocol for Cloud-Assisted Electronic Health Record System Using Blockchain. [europepmc]
- SLUA-WSN: Secure and Lightweight Three-Factor-Based User Authentication Protocol for Wireless Sensor Networks. [europepmc]
- WSN-SLAP: Secure and Lightweight Mutual Authentication Protocol for Wireless Sensor Networks. [europepmc]
- Lightweight user authentication scheme for roaming service in GLOMONET with privacy preserving. [europepmc]
- A Secure and Lightweight Authentication Protocol for IoT-Based Smart Homes. [europepmc]
- Drone Secure Communication Protocol for Future Sensitive Applications in Military Zone. [europepmc]
- Secure Patient Authentication Framework in the Healthcare System Using Wireless Medical Sensor Networks. [europepmc]
- Blockchain-envisioned access control for internet of things applications: a comprehensive survey and future directions. [europepmc]
- LAP-IoHT: A Lightweight Authentication Protocol for the Internet of Health Things. [europepmc]
- Provably Secure Mutual Authentication and Key Agreement Scheme Using PUF in Internet of Drones Deployments. [europepmc]
- ECA-VFog: An efficient certificateless authentication scheme for 5G-assisted vehicular fog computing. [europepmc]
- Lightweight Hash-Based Authentication Protocol for Smart Grids. [europepmc]
- Secure PUF-Based Authentication Systems. [europepmc]
Related