{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,4,20]],"date-time":"2026-04-20T10:44:21Z","timestamp":1776681861861,"version":"3.51.2"},"publisher-location":"Berlin, Heidelberg","reference-count":35,"publisher":"Springer Berlin Heidelberg","isbn-type":[{"value":"9783540206934","type":"print"},{"value":"9783540409816","type":"electronic"}],"content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":[],"published-print":{"date-parts":[[2003]]},"DOI":"10.1007\/978-3-540-40981-6_11","type":"book-chapter","created":{"date-parts":[[2010,6,22]],"date-time":"2010-06-22T19:17:45Z","timestamp":1277234265000},"page":"115-132","source":"Crossref","is-referenced-by-count":20,"title":["Modeling Adversaries in a Logic for Security Protocol Analysis"],"prefix":"10.1007","author":[{"given":"Joseph Y.","family":"Halpern","sequence":"first","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Riccardo","family":"Pucella","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"297","reference":[{"key":"11_CR1","doi-asserted-by":"crossref","unstructured":"Abadi, M., Fournet, C.: Mobile values, new names, and secure communication. In: Proceedings of the 28th ACM Symposium on Principles of Programming Languages (POPL 2001), pp. 104\u2013115 (2001)","DOI":"10.1145\/360204.360213"},{"key":"11_CR2","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"publisher","first-page":"3","DOI":"10.1007\/3-540-44929-9_1","volume-title":"Theoretical Computer Science: Exploring New Frontiers of Theoretical Informatics","author":"M. Abadi","year":"2000","unstructured":"Abadi, M., Rogaway, P.: Reconciling two views of cryptography (the computational soundness of formal encryption). In: Watanabe, O., Hagiya, M., Ito, T., van Leeuwen, J., Mosses, P.D. (eds.) TCS 2000. LNCS, vol.\u00a01872, pp. 3\u201322. Springer, Heidelberg (2000)"},{"key":"11_CR3","doi-asserted-by":"crossref","unstructured":"Abadi, M., Tuttle, M.R.: A semantics for a logic of authentication. In: Proc. 10th ACM Symp. on Principles of Distributed Computing, pp. 201\u2013216 (1991)","DOI":"10.1145\/112600.112618"},{"key":"11_CR4","volume-title":"Electronic Notes in Theoretical Computer Science","author":"R. Accorsi","year":"2001","unstructured":"Accorsi, R., Basin, D., Vigan\u00f2, L.: Towards an awareness-based semantics for security protocol analysis. In: Goubault-Larrecq, J. (ed.) Electronic Notes in Theoretical Computer Science, vol.\u00a055. Elsevier Science Publishers, Amsterdam (2001)"},{"key":"11_CR5","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"crossref","first-page":"232","DOI":"10.1007\/3-540-48329-2_21","volume-title":"Advances in Cryptology - CRYPTO \u201993","author":"M. Bellare","year":"1994","unstructured":"Bellare, M., Rogaway, P.: Entity authentication and key distribution. In: Stinson, D.R. (ed.) CRYPTO 1993. LNCS, vol.\u00a0773, pp. 232\u2013249. Springer, Heidelberg (1994)"},{"key":"11_CR6","doi-asserted-by":"publisher","first-page":"14","DOI":"10.1109\/CSFW.1990.128181","volume-title":"Proceedings of the Computer Security Foundations Workshop","author":"P. Bieber","year":"1990","unstructured":"Bieber, P.: A logic of communication in hostile environment. In: Proceedings of the Computer Security Foundations Workshop, pp. 14\u201322. IEEE Computer Society Press, Los Alamitos (1990)"},{"issue":"1","key":"11_CR7","doi-asserted-by":"publisher","first-page":"18","DOI":"10.1145\/77648.77649","volume":"8","author":"M. Burrows","year":"1990","unstructured":"Burrows, M., Abadi, M., Needham, R.: A logic of authentication. ACM Transactions on Computer Systems\u00a08(1), 18\u201336 (1990)","journal-title":"ACM Transactions on Computer Systems"},{"key":"11_CR8","doi-asserted-by":"crossref","unstructured":"Clarke, E.M., Jha, S., Marrero, W.: Using state space exploration and a natural deduction style message derivation engine to verify security protocols. In: Proceedings of the IFIP Working Conference on Programming Concepts and Methods, PROCOMET (1998)","DOI":"10.1007\/978-0-387-35358-6_10"},{"issue":"2","key":"11_CR9","doi-asserted-by":"publisher","first-page":"198","DOI":"10.1109\/TIT.1983.1056650","volume":"29","author":"D. Dolev","year":"1983","unstructured":"Dolev, D., Yao, A.C.: On the security of public key protocols. IEEE Transactions on Information Theory\u00a029(2), 198\u2013208 (1983)","journal-title":"IEEE Transactions on Information Theory"},{"key":"11_CR10","doi-asserted-by":"publisher","first-page":"241","DOI":"10.1109\/CSFW.2001.930150","volume-title":"Proceedings of the Computer Security Foundations Workshop","author":"N. Durgin","year":"2001","unstructured":"Durgin, N., Mitchell, J., Pavlovic, D.: A compositional logic for protocol correctness. In: Proceedings of the Computer Security Foundations Workshop, pp. 241\u2013255. IEEE Computer Society Press, Los Alamitos (2001)"},{"key":"11_CR11","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"crossref","first-page":"58","DOI":"10.1007\/3-540-39799-X_7","volume-title":"Advances in Cryptology","author":"S. Even","year":"1986","unstructured":"Even, S., Goldreich, O., Shamir, A.: On the security of ping-pong protocols when implemented using the RSA. In: Williams, H.C. (ed.) CRYPTO 1985. LNCS, vol.\u00a0218, pp. 58\u201372. Springer, Heidelberg (1986)"},{"key":"11_CR12","doi-asserted-by":"publisher","first-page":"39","DOI":"10.1016\/0004-3702(87)90003-8","volume":"34","author":"R. Fagin","year":"1988","unstructured":"Fagin, R., Halpern, J.Y.: Belief, awareness, and limited reasoning. Artificial Intelligence\u00a034, 39\u201376 (1988)","journal-title":"Artificial Intelligence"},{"issue":"2","key":"11_CR13","doi-asserted-by":"publisher","first-page":"340","DOI":"10.1145\/174652.174658","volume":"41","author":"R. Fagin","year":"1994","unstructured":"Fagin, R., Halpern, J.Y.: Reasoning about knowledge and probability. Journal of the ACM\u00a041(2), 340\u2013367 (1994)","journal-title":"Journal of the ACM"},{"key":"11_CR14","doi-asserted-by":"crossref","DOI":"10.7551\/mitpress\/5803.001.0001","volume-title":"Reasoning about Knowledge","author":"R. Fagin","year":"1995","unstructured":"Fagin, R., Halpern, J.Y., Moses, Y., Vardi, M.Y.: Reasoning about Knowledge. The MIT Press, Cambridge (1995)"},{"key":"11_CR15","doi-asserted-by":"crossref","unstructured":"Gong, L., Needham, R., Yahalom, R.: Reasoning about belief in cryptographic protocols. In: Proc. IEEE Symposium on Security and Privacy, pp. 234\u2013248 (May 1990)","DOI":"10.1109\/RISP.1990.63854"},{"key":"11_CR16","doi-asserted-by":"publisher","first-page":"145","DOI":"10.1109\/CSFW.2001.930143","volume-title":"Proceedings of the 14th IEEE Computer Security Foundations Workshop (CSFW 2001)","author":"A.D. Gordon","year":"2001","unstructured":"Gordon, A.D., Jeffrey, A.: Authenticity by typing for security protocols. In: Proceedings of the 14th IEEE Computer Security Foundations Workshop (CSFW 2001), pp. 145\u2013159. IEEE Computer Society Press, Los Alamitos (2001)"},{"key":"11_CR17","doi-asserted-by":"crossref","unstructured":"Halpern, J.Y., Moses, Y., Tuttle, M.R.: A knowledge-based analysis of zero knowledge. In: Proc. 20th ACM Symp. on Theory of Computing, pp. 132\u2013147 (1988)","DOI":"10.1145\/62212.62224"},{"issue":"4","key":"11_CR18","doi-asserted-by":"publisher","first-page":"917","DOI":"10.1145\/153724.153770","volume":"40","author":"J.Y. Halpern","year":"1993","unstructured":"Halpern, J.Y., Tuttle, M.R.: Knowledge, probability, and adversaries. Journal of the ACM\u00a040(4), 917\u2013962 (1993)","journal-title":"Journal of the ACM"},{"key":"11_CR19","doi-asserted-by":"publisher","first-page":"67","DOI":"10.1002\/malq.19630090502","volume":"9","author":"S. Kripke","year":"1963","unstructured":"Kripke, S.: A semantical analysis of modal logic I: normal modal propositional calculi. Zeitschrift f\u00fcr Mathematische Logik und Grundlagen der Mathematik\u00a09, 67\u201396 (1963); Announced in Journal of Symbolic Logic 24, 323 (1959)","journal-title":"Zeitschrift f\u00fcr Mathematische Logik und Grundlagen der Mathematik"},{"key":"11_CR20","doi-asserted-by":"crossref","unstructured":"Lincoln, P., Mitchell, J.C., Mitchell, M., Scedrov, A.: A probabilistic poly-time framework for protocol analysis. In: Proceedings of the ACM Conference on Computer and Communications Security, pp. 112\u2013121 (1998)","DOI":"10.1145\/288090.288117"},{"key":"11_CR21","doi-asserted-by":"publisher","first-page":"131","DOI":"10.1016\/0020-0190(95)00144-2","volume":"56","author":"G. Lowe","year":"1995","unstructured":"Lowe, G.: An attack on the Needham-Schroeder public-key authentication protocol. Information Processing Letters\u00a056, 131\u2013133 (1995)","journal-title":"Information Processing Letters"},{"key":"11_CR22","doi-asserted-by":"crossref","unstructured":"Lowe, G.: Some new attacks upon security protocols. In: Proc. 9th IEEE Computer Security Foundations Workshop, pp. 162\u2013169 (1996)","DOI":"10.1109\/CSFW.1996.503701"},{"key":"11_CR23","unstructured":"Lowe, G.: Analysing protocols subject to guessing attacks. In: Proceedings of the Workshop on Issues in the Theory of Security, WITS 2002 (2002)"},{"key":"11_CR24","first-page":"44","volume-title":"Proceedings of the 8th IEEE Computer Security Foundations Workshop","author":"W. Mao","year":"1995","unstructured":"Mao, W.: An augmentation of BAN-like logics. In: Proceedings of the 8th IEEE Computer Security Foundations Workshop, pp. 44\u201356. IEEE Computer Society Press, Los Alamitos (1995)"},{"issue":"2","key":"11_CR25","doi-asserted-by":"publisher","first-page":"113","DOI":"10.1016\/0743-1066(95)00095-X","volume":"26","author":"C. Meadows","year":"1996","unstructured":"Meadows, C.: The NRL protocol analyzer: An overview. Journal of Logic Programming\u00a026(2), 113\u2013131 (1996)","journal-title":"Journal of Logic Programming"},{"key":"11_CR26","unstructured":"Merritt, M., Wolper, P.: States of knowledge in cryptographic protocols. Unpublished manuscript (1985)"},{"issue":"2","key":"11_CR27","doi-asserted-by":"publisher","first-page":"274","DOI":"10.1109\/TSE.1987.233151","volume":"13","author":"J.K. Millen","year":"1987","unstructured":"Millen, J.K., Clark, S.C., Freedman, S.B.: The Interrogator: Protocol security analysis. IEEE Transactions on Software Engineering\u00a013(2), 274\u2013288 (1987)","journal-title":"IEEE Transactions on Software Engineering"},{"key":"11_CR28","first-page":"141","volume-title":"Proceedings of the IEEE Symposium on Research in Security and Privacy","author":"J. Mitchell","year":"1997","unstructured":"Mitchell, J., Mitchell, M., Stern, U.: Automated analysis of cryptographic protocols using mur\u03d5. In: Proceedings of the IEEE Symposium on Research in Security and Privacy, pp. 141\u2013151. IEEE Computer Society Press, Los Alamitos (1997)"},{"issue":"5","key":"11_CR29","doi-asserted-by":"publisher","first-page":"594","DOI":"10.1109\/5.4444","volume":"76","author":"J.H. Moore","year":"1988","unstructured":"Moore, J.H.: Protocol failures in cryptosystems. Proceedings of the IEEE\u00a076(5), 594\u2013602 (1988)","journal-title":"Proceedings of the IEEE"},{"key":"11_CR30","first-page":"261","volume-title":"Proc. Second Conference on Theoretical Aspects of Reasoning about Knowledge","author":"Y. Moses","year":"1988","unstructured":"Moses, Y.: Resource-bounded knowledge. In: Vardi, M.Y. (ed.) Proc. Second Conference on Theoretical Aspects of Reasoning about Knowledge, pp. 261\u2013276. Morgan Kaufmann, San Francisco (1988)"},{"issue":"12","key":"11_CR31","doi-asserted-by":"publisher","first-page":"993","DOI":"10.1145\/359657.359659","volume":"21","author":"R.M. Needham","year":"1978","unstructured":"Needham, R.M., Schroeder, M.D.: Using encryption for authentication in large networks of computers. Communications of the ACM\u00a021(12), 993\u2013999 (1978)","journal-title":"Communications of the ACM"},{"issue":"1\/2","key":"11_CR32","doi-asserted-by":"crossref","first-page":"85","DOI":"10.3233\/JCS-1998-61-205","volume":"6","author":"L.C. Paulson","year":"1998","unstructured":"Paulson, L.C.: The inductive approach to verifying cryptographic protocols. Journal of Computer Security\u00a06(1\/2), 85\u2013128 (1998)","journal-title":"Journal of Computer Security"},{"issue":"1","key":"11_CR33","doi-asserted-by":"publisher","first-page":"7","DOI":"10.1016\/S0020-0190(97)00180-4","volume":"65","author":"P.Y.A. Ryan","year":"1998","unstructured":"Ryan, P.Y.A., Schneider, S.A.: An attack on a recursive authentication protocol: A cautionary tale. Information Processing Letters\u00a065(1), 7\u201310 (1998)","journal-title":"Information Processing Letters"},{"key":"11_CR34","doi-asserted-by":"crossref","unstructured":"Stubblebine, S., Wright, R.: An authentication logic supporting synchronization, revocation, and recency. In: Proc. Third ACM Conference on Computer and Communications Security, pp. 95\u2013105 (1996)","DOI":"10.1145\/238168.238195"},{"key":"11_CR35","doi-asserted-by":"crossref","unstructured":"Syverson, P.: A logic for the analysis of cryptographic protocols. NRL Report 9305, Naval Research Laboratory (1990)","DOI":"10.21236\/ADA230779"}],"container-title":["Lecture Notes in Computer Science","Formal Aspects of Security"],"original-title":[],"link":[{"URL":"http:\/\/link.springer.com\/content\/pdf\/10.1007\/978-3-540-40981-6_11","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2025,2,22]],"date-time":"2025-02-22T04:49:24Z","timestamp":1740199764000},"score":1,"resource":{"primary":{"URL":"http:\/\/link.springer.com\/10.1007\/978-3-540-40981-6_11"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2003]]},"ISBN":["9783540206934","9783540409816"],"references-count":35,"URL":"https:\/\/doi.org\/10.1007\/978-3-540-40981-6_11","relation":{},"ISSN":["0302-9743","1611-3349"],"issn-type":[{"value":"0302-9743","type":"print"},{"value":"1611-3349","type":"electronic"}],"subject":[],"published":{"date-parts":[[2003]]}}}