• DocumentCode
    1799712
  • Title

    A Lightweight Anonymous Mobile Shopping Scheme Based on DAA for Trusted Mobile Platform

  • Author

    Bo Yang ; Dengguo Feng ; Yu Qin

  • Author_Institution
    Trusted Comput. & Inf. Assurance Lab., Inst. of Software, Beijing, China
  • fYear
    2014
  • fDate
    24-26 Sept. 2014
  • Firstpage
    9
  • Lastpage
    17
  • Abstract
    The deposit security and the purchasing anonymity are two important issues when consumers do shopping on mobile platforms. However, there is currently no solution to completely address both the issues. In this paper, we propose a lightweight anonymous mobile shopping scheme based on DAA for trusted mobile platform. By fully considering the background of mobile applications, we design the scheme according to four elliptic curve based DAA (ECC-DAA) schemes. The entities of mobile device manufacturer, mobile device, central trusted party, banks and e-commerce platform compose the system architecture and seven phases are designed accordingly. Moreover, we present the architecture of trusted mobile platform based on Trust Zone and TPM emulator, which helps achieve seven security properties including the deposit security and the purchasing anonymity. The issues about sensitive data management and credential revocation are discussed. ECC-DAA schemes including CF08, BCL08, BL10 and CPS10 and three kinds of elliptic curves including MNT, BN and super singular curve are finally compared and implemented as foundation. The simulating experiment result indicates that the proposed scheme with our trusted architecture has a good computing performance for consumers using mobile devices.
  • Keywords
    Internet; electronic commerce; mobile computing; public key cryptography; retail data processing; DAA; ECC-DAA schemes; Trust Zone; central trusted party; e-commerce platform; elliptic curve based DAA; lightweight anonymous mobile shopping scheme; mobile applications; mobile device manufacturer; mobile platforms; purchasing anonymity; sensitive data management; trusted mobile platform; Computer architecture; Cryptography; Kernel; Mobile communication; Mobile handsets; Privacy; TPM; TrustZone; mobile platform; mobile shopping; privacy; trusted computing;
  • fLanguage
    English
  • Publisher
    ieee
  • Conference_Titel
    Trust, Security and Privacy in Computing and Communications (TrustCom), 2014 IEEE 13th International Conference on
  • Conference_Location
    Beijing
  • Type

    conf

  • DOI
    10.1109/TrustCom.2014.6
  • Filename
    7011228