Enhancement of secured web protocol using attestation and pseudonymization techniques / Fazli Mat Nor

Lack of security awareness among end users when dealing with internet transactions leaves open many client-side application vulnerabilities as well as privacy threats. Attackers could exploit these vulnerabilities and launch client-side attacks such as the Man in the Middle (MitM) attack or the mali...

Full description

Saved in:
Bibliographic Details
Main Author: Mat Nor, Fazli
Format: Thesis
Language:English
Published: 2016
Online Access:https://ir.uitm.edu.my/id/eprint/85770/1/85770.pdf
Tags: Add Tag
No Tags, Be the first to tag this record!
id my-uitm-ir.85770
record_format uketd_dc
spelling my-uitm-ir.857702023-11-23T05:14:46Z Enhancement of secured web protocol using attestation and pseudonymization techniques / Fazli Mat Nor 2016 Mat Nor, Fazli Lack of security awareness among end users when dealing with internet transactions leaves open many client-side application vulnerabilities as well as privacy threats. Attackers could exploit these vulnerabilities and launch client-side attacks such as the Man in the Middle (MitM) attack or the malicious software attack due to lack of measures to detect malicious changes on the client-side platform and privacy protection. Thus, there is a need to implement a trusted environment and privacy enhancement between the client and the server. This research aims to enhance existing web protocol and preserve the privacy of users using attestation and pseudonymization technique with new proposed protocol, MyTrust. The advantages of proposed protocol include an end-to-end trusted environment which prevents identity impersonation by illegitimate parties. Prior to proposed protocol, this research presented a discussion on related works in term of its advantages and disadvantages. Subsequently, the proposed protocol is analyzed and evaluated based on its security vulnerabilities attack and performance. The analysis results showed that adding this additional preventive measure improved the overall protocol resistance to attack, and the performance of this approach is still comparable with existing implementations. This research emphasizes the significance of trusted computing technology and privacy enhancement technology for web protocols in aid of preventing client-side attacks. 2016 Thesis https://ir.uitm.edu.my/id/eprint/85770/ https://ir.uitm.edu.my/id/eprint/85770/1/85770.pdf text en public masters Universiti Teknologi MARA (UiTM) Faculty of Computer and Mathematical Sciences Abd Jalil, Kamarularifin
institution Universiti Teknologi MARA
collection UiTM Institutional Repository
language English
advisor Abd Jalil, Kamarularifin
description Lack of security awareness among end users when dealing with internet transactions leaves open many client-side application vulnerabilities as well as privacy threats. Attackers could exploit these vulnerabilities and launch client-side attacks such as the Man in the Middle (MitM) attack or the malicious software attack due to lack of measures to detect malicious changes on the client-side platform and privacy protection. Thus, there is a need to implement a trusted environment and privacy enhancement between the client and the server. This research aims to enhance existing web protocol and preserve the privacy of users using attestation and pseudonymization technique with new proposed protocol, MyTrust. The advantages of proposed protocol include an end-to-end trusted environment which prevents identity impersonation by illegitimate parties. Prior to proposed protocol, this research presented a discussion on related works in term of its advantages and disadvantages. Subsequently, the proposed protocol is analyzed and evaluated based on its security vulnerabilities attack and performance. The analysis results showed that adding this additional preventive measure improved the overall protocol resistance to attack, and the performance of this approach is still comparable with existing implementations. This research emphasizes the significance of trusted computing technology and privacy enhancement technology for web protocols in aid of preventing client-side attacks.
format Thesis
qualification_level Master's degree
author Mat Nor, Fazli
spellingShingle Mat Nor, Fazli
Enhancement of secured web protocol using attestation and pseudonymization techniques / Fazli Mat Nor
author_facet Mat Nor, Fazli
author_sort Mat Nor, Fazli
title Enhancement of secured web protocol using attestation and pseudonymization techniques / Fazli Mat Nor
title_short Enhancement of secured web protocol using attestation and pseudonymization techniques / Fazli Mat Nor
title_full Enhancement of secured web protocol using attestation and pseudonymization techniques / Fazli Mat Nor
title_fullStr Enhancement of secured web protocol using attestation and pseudonymization techniques / Fazli Mat Nor
title_full_unstemmed Enhancement of secured web protocol using attestation and pseudonymization techniques / Fazli Mat Nor
title_sort enhancement of secured web protocol using attestation and pseudonymization techniques / fazli mat nor
granting_institution Universiti Teknologi MARA (UiTM)
granting_department Faculty of Computer and Mathematical Sciences
publishDate 2016
url https://ir.uitm.edu.my/id/eprint/85770/1/85770.pdf
_version_ 1783736377644417024