No matter whether payment of the public passenger transport ticket is made via a smartphone app or whether a prepaid card is used for the public swimming pool or a bonus card for the supermarket: Many people already open their “electronic purses” every day. However, most of them are not aware of the fact that by doing so, they largely lose privacy. Researchers of Karlsruhe Institute of Technology (KIT) have developed a secure and anonymous system for daily use. It will be presented at the ACM CCS 2017 conference in the USA.
Computer scientist Andy Rupp, member of the “Cryptography and Security” working group of KIT, is always surprised about lacking problem awareness: “I observed that only few users are aware of the fact that by using such bonus or payment systems they disclose in detail how and what they consume or which routes they have taken.” To prevent manipulation of the accounts by dishonest users, customer data and account balances of payment and bonus systems are usually administrated with the help of a central database. In every payment transaction, the customer is identified and the details of her/his transaction are transmitted to the central database. This repeated identification process produces a data trace that might be misused by the provider or third parties.
The new “BBA+“ protocol makes electronic payment secure and confidential. (Photo: Gabi Zachmann/KIT)
The cryptography expert did not want to resign himself to this apparent conflict of privacy and security. Together with Gunnar Hartung and Matthias Nagel of KIT and Max Hoffmann of Ruhr-Universität Bochum, he has now presented the basics of an “electronic purse” that works anonymously, but prevents misuse at the same time. The “black-box accumulation plus” (BBA+) protocol developed by them transfers all necessary account data to the card used or the smartphone and guarantees their confidentiality with the help of cryptographic methods. At the same time, BBA+ offers security guarantees for the operator of the bonus or payment system: The protocol guarantees a correct account balance and is mathematically constructed such that the identity of the user is disclosed as soon as the attempt is made to pay with a manipulated account.
The new protocol is a further development of an anonymous bonus card system that was also designed by the KIT research group. For collecting and redeeming points, however, it required an internet connection to prevent misuse. “Our new protocol guarantees privacy and security for customers during offline operation as well,” Andy Rupp says. “This is needed for ensuring the payment system’s suitability for daily use. Think of a subway turnstile or a toll bridge. There you may have no internet connection at all or it is very slow.” Also its high efficiency makes the protocol suited for everyday use: During first test runs, researchers executed payments within about one second.
Learn more: Secure Payment without Leaving a Trace
The Latest on: Secure payment without a trace
[google_news title=”” keyword=”secure payment without a trace” num_posts=”10″ blurb_length=”0″ show_thumb=”left”]- The top money transfer apps for sending money between friends, family and small businesseson April 30, 2024 at 9:25 pm
By signing up for a money transfer app, you are, in essence, making it possible for anyone to send you a digital payment without viewing any of your secure account information, just your user ID ...
- Certified Checks: A Secure Payment Methodon April 23, 2024 at 2:42 pm
Certified checks are more secure than a personal check but don ... to the person who wrote the check to receive another form of payment. You may also report fraud to the Federal Trade Commission.
- A Beginner’s Guide to Payment Processingon April 21, 2024 at 5:00 pm
Payment processing is an integral part of any online business. Learn the basics of payment processing to ensure smooth and secure payment ... payments between banks without using cash, wire ...
- The 5 Best Payment Gateways for Secure Transactionson April 21, 2024 at 5:00 pm
Choosing the right payment ... for secure transactions. Whether you run an online marketplace, a brick-and-mortar store, or both, your top priority is pleasing customers and making sales. Without ...
- The mystery of Ireland’s ‘vanishing triangle’ – where six women disappeared without a traceon February 13, 2024 at 5:59 pm
According to Alan Bailey, Trace’s national coordinator ... that police scrutiny and public interest would be enough to secure convictions in cases she feels have too many similarities ...
- Sub mysteriously goes missing without a trace under 'Doomsday' glacieron February 8, 2024 at 6:55 am
‘It’s a bit like looking for a needle in a haystack, but without even knowing where the ... additional financing to top up the insurance payment.
- How To Transfer Money Safely: 6 Ways To Send Moneyon November 21, 2023 at 9:24 am
That’s why choosing a secure payment ... Peer-to-peer payment apps are popular tools for transferring money. These apps let you send cash fast from multiple types of accounts without revealing ...
- Putting a Down Payment on a Car: Everything You Need to Knowon March 31, 2021 at 5:00 pm
An ideal down payment on a car is one that a person can reasonably withdraw from their bank account without nuking one ... deposit on a vehicle in order to secure the thing while waiting for ...
- The #1 Payment Killing Your Wealthon October 2, 2018 at 2:06 am
Perhaps you really needed a new car under warranty and saved up a large down payment to make it happen. Or maybe you planned on buying a new car with cash, but chose financing to secure a sweet 0% ...
- How Can a Subcontractor Secure Payment for Services?on July 23, 2018 at 9:48 am
This gives you some control over securing payment for the work you complete. Submit invoices promptly after each phase so you are paid and can continue working without fear of working without pay.
via Google News and Bing News