信息网络安全 ›› 2017, Vol. 17 ›› Issue (2): 1-5.doi: 10.3969/j.issn.1671-1122.2017.02.001

• •    下一篇

移动支付系统安全性研究综述

刘永磊1,2(), 金志刚1, 高天迎2   

  1. 1.天津大学电子信息工程学院,天津 300072
    2.天津城建大学计算机与信息工程学院,天津 300384
  • 收稿日期:2016-11-15 出版日期:2017-02-20 发布日期:2020-05-12
  • 作者简介:

    作者简介: 刘永磊(1983—),男, 天津,讲师,博士,主要研究方向为网络安全;金志刚(1972—),男,上海,教授,博士,主要研究方向为网络性能评价、水下网络、无线网络等;高天迎(1977—) ,男,天津,讲师,硕士,主要研究方向为数据挖据,机器学习。

  • 基金资助:
    天津市科技计划[15PTFHCX00100];中国博士后科学基金[2016M601265]

Survey of Security Research in Mobile Payment System

Yonglei LIU1,2(), Zhigang JIN1, Tianying GAO2   

  1. 1.School of Electric and Information Engineering, Tianjin University, Tianjin 300072, China
    2.School of Computer and Information Engineering, Tianjin Chengjian University, Tianjin 300384, China
  • Received:2016-11-15 Online:2017-02-20 Published:2020-05-12

摘要:

随着互联网尤其是通信技术、智能手机与Web2.0的发展,移动电子商务日益普及,智能设备的多网络接口性质和移动支付的协议与机制缺陷导致的安全问题也愈发严重。文章研究了移动支付的系统体系结构包括:非接触层、控制层、网络层和应用层,给出了移动电子支付的基本流程。通过对现有网络体系中的各层安全性问题进行分析,如非接触层安全、网络层安全和应用层安全等,文章对现有的移动支付协议及其改进进行了研究分析,同时对安全性评估算法进行了分析比较。在此基础上给出了安全的移动电子支付系统结构的基本框架,并进行了分析。最后文章指出了移动支付系统安全性研究的不足,并对未来的发展方向进行了展望。

关键词: 移动支付, 电子商务, 安全评估, 无线网络

Abstract:

With the development of Internet, especially communication technology, smart phones and Web2.0, the increasing popularity of mobile E-commerce appears. However, the natures of multiple network interfaces in smart mobile devices and design flaws of mobile payment protocols and mechanisms make security issues become more serious. The mobile payment system network architecture which comprises contactless layer, control layer, network layer, and application layer is analyzed. And the basic process of mobile payment is put forward. And then, the existing network system security issues of each layer are analyzed, including contactless layer security, control layer security, network layer security, and application layer security. The mobile payment protocols and their improvements are analyzed and summarized. The security assessment methods are also analyzed, compared and summarized. Moreover, A new secure mobile payment system network architecture is given. Finally, the summary of the existing security research is processed,And the future research direction is put forward.

Key words: mobile payment, E-Commerce, security assessment, wireless network

中图分类号: