{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,3,3]],"date-time":"2026-03-03T12:33:12Z","timestamp":1772541192299,"version":"3.50.1"},"reference-count":59,"publisher":"Springer Science and Business Media LLC","issue":"3-4","license":[{"start":{"date-parts":[[2020,7,18]],"date-time":"2020-07-18T00:00:00Z","timestamp":1595030400000},"content-version":"tdm","delay-in-days":0,"URL":"https:\/\/www.springer.com\/tdm"},{"start":{"date-parts":[[2020,7,18]],"date-time":"2020-07-18T00:00:00Z","timestamp":1595030400000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/www.springer.com\/tdm"}],"content-domain":{"domain":["link.springer.com"],"crossmark-restriction":false},"short-container-title":["Ann. Telecommun."],"published-print":{"date-parts":[[2021,4]]},"DOI":"10.1007\/s12243-020-00784-1","type":"journal-article","created":{"date-parts":[[2020,7,18]],"date-time":"2020-07-18T13:03:16Z","timestamp":1595077396000},"page":"203-222","update-policy":"https:\/\/doi.org\/10.1007\/springer_crossmark_policy","source":"Crossref","is-referenced-by-count":4,"title":["Towards more secure EMV purchase transactions"],"prefix":"10.1007","volume":"76","author":[{"ORCID":"https:\/\/orcid.org\/0000-0001-7742-7748","authenticated-orcid":false,"given":"Nour","family":"El Madhoun","sequence":"first","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Emmanuel","family":"Bertin","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Mohamad","family":"Badra","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Guy","family":"Pujolle","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"297","published-online":{"date-parts":[[2020,7,18]]},"reference":[{"key":"784_CR1","unstructured":"EMV (2011) Book 1, Book 2, Book 3, Book 4, Version 4.3. EMVCo"},{"key":"784_CR2","unstructured":"EMV - Level 1 Specifications for Payment Systems (2018) EMV contactless interface specification, version 3.0. EMVCo"},{"key":"784_CR3","doi-asserted-by":"crossref","unstructured":"De Ruiter J, Poll E (2012) Formal analysis of the emv protocol suite. In: Springer theory of security and applications, pp 113\u2013129","DOI":"10.1007\/978-3-642-27375-9_7"},{"key":"784_CR4","unstructured":"van den Breekel J, Ortiz-Yepes DA, Poll E, de Ruiter J (2016) Emv in a nutshell. Technical Report"},{"key":"784_CR5","unstructured":"EMV Consortium http:\/\/www.emvco.com\/, last connection (30\/12\/2019)"},{"key":"784_CR6","doi-asserted-by":"crossref","unstructured":"VISA https:\/\/www.visa.fr\/, last connection (30\/12\/2019)","DOI":"10.32576\/nb.2019.4.4"},{"key":"784_CR7","unstructured":"MasterCard http:\/\/www.mastercard.com\/fr\/particuliers\/index.html, lastconnection (30\/12\/2019)"},{"key":"784_CR8","unstructured":"American Express https:\/\/www.americanexpress.com\/fr\/, last connection (30\/12\/2019)"},{"key":"784_CR9","unstructured":"Lifchitz R (2012) Hacking the nfc credit cards for fun and debit. In: Hackito Ergo Sum conference"},{"key":"784_CR10","doi-asserted-by":"crossref","unstructured":"El Madhoun N, Bertin E, Pujolle G (2019) The EMV payment system: is it reliable?. In: The 3rd cyber security in networking international conference (CSNet). IEEE, pp 1\u20137","DOI":"10.1109\/CSNet47905.2019.9108846"},{"key":"784_CR11","unstructured":"Tubb G (2013) Contactless cards: App reveals security risk. https:\/\/news.sky.com\/story\/contactless-cards-app-reveals-security-risk-10443980, last connection (30\/11\/2019)"},{"key":"784_CR12","unstructured":"Emms MJ (2016) Contactless payments: usability at the cost of security? Ph.D. Thesis, Newcastle University"},{"issue":"2","key":"784_CR13","first-page":"93","volume":"12","author":"HA Al-Ofeishat","year":"2012","unstructured":"Al-Ofeishat HA, Mohammad A (2012) Near field communication (nfc). Int J Comput Sci Netw Secur 12(2):93\u201399","journal-title":"Int J Comput Sci Netw Secur"},{"key":"784_CR14","doi-asserted-by":"crossref","unstructured":"Dierks T (2008) The transport layer security (tls) protocol version 1.2","DOI":"10.17487\/rfc5246"},{"key":"784_CR15","doi-asserted-by":"crossref","unstructured":"El Madhoun N, Bertin E (2017) Magic always comes with a price: utility versus security for bank cards. In: The 1st cyber security in networking conference (CSNet). IEEE, pp 1\u20137","DOI":"10.1109\/CSNET.2017.8241995"},{"key":"784_CR16","doi-asserted-by":"crossref","unstructured":"El Madhoun N, Bertin E, Pujolle G (2018) An overview of the EMV protocol and its security vulnerabilities. In: The fourth international conference on mobile and secure services (MobiSecServ). IEEE, pp 1\u20135","DOI":"10.1109\/MOBISECSERV.2018.8311444"},{"key":"784_CR17","doi-asserted-by":"crossref","unstructured":"Murdoch SJ, Drimer S, Anderson R, Bond M (2010) Chip and pin is broken. In: IEEE symposium on security and privacy, pp 433\u2013446","DOI":"10.1109\/SP.2010.33"},{"key":"784_CR18","doi-asserted-by":"crossref","unstructured":"Shrikrishna K, Kumar NN, Shyamasundar R (2018) Security analysis of EMV protocol and approaches for strengthening it. In: International conference on distributed computing and internet technology. Springer, Berlin, pp 69\u201385","DOI":"10.1007\/978-3-319-72344-0_4"},{"key":"784_CR19","doi-asserted-by":"crossref","unstructured":"Emms M, Arief B, Freitas L, Hannon J, van Moorsel A (2014) Harvesting high value foreign currency transactions from emv contactless credit cards without the pin. In: Proceedings of ACM SIGSAC conference on computer and communications security, pp 716\u2013726","DOI":"10.1145\/2660267.2660312"},{"key":"784_CR20","unstructured":"Coulier F, Hoornaert F, Mennes F (2014) Remote authentication and transaction signatures. Google Patents, US Patent 8,667,285"},{"key":"784_CR21","doi-asserted-by":"publisher","first-page":"705","DOI":"10.1016\/j.procs.2016.04.156","volume":"83","author":"M Badra","year":"2016","unstructured":"Badra M, Badra RB (2016) A lightweight security protocol for nfc-based mobile payments. Elsevier, Procedia Comput Sci 83:705\u2013711","journal-title":"Elsevier, Procedia Comput Sci"},{"key":"784_CR22","unstructured":"de Ruiter JEJ (2015) Lessons learned in the analysis of the emv and tls security protocols. Ph.D Thesis, Radboud University"},{"key":"784_CR23","doi-asserted-by":"crossref","unstructured":"Thammarat C, Kurutach W, Phoomvuthisarn S (2017) A secure lightweight and fair exchange protocol for nfc mobile payment based on limited-use of session keys. In: 17th international symposium on, communications and information technologies (ISCIT). IEEE, Piscataway, pp 1\u20136","DOI":"10.1109\/ISCIT.2017.8261168"},{"key":"784_CR24","doi-asserted-by":"crossref","unstructured":"Urien P, Piramuthu S (2013) Framework and authentication protocols for smartphone, nfc, and rfid in retail transactions. In: IEEE international conference on intelligent sensors, sensor networks and information processing, pp 77\u201382","DOI":"10.1109\/ISSNIP.2013.6529768"},{"key":"784_CR25","doi-asserted-by":"crossref","unstructured":"Ceipidor UB, Medaglia CM, Marino A, Sposato S, Moroni A (2012) Kernees: a protocol for mutual authentication between nfc phones and pos terminals for secure payment transactions. In: International ISC conference on information security and cryptology (ISCISC). IEEE, Piscataway, pp 115\u2013120","DOI":"10.1109\/ISCISC.2012.6408203"},{"issue":"1","key":"784_CR26","first-page":"125","volume":"10","author":"M Al-Fayoumi","year":"2018","unstructured":"Al-Fayoumi M, Nashwan S (2018) Performance analysis of sap-nfc protocol. Int J Commun Netw Inf Secur (IJCNIS) 10(1):125\u2013130","journal-title":"Int J Commun Netw Inf Secur (IJCNIS)"},{"key":"784_CR27","doi-asserted-by":"crossref","unstructured":"Abughazalah S, Markantonakis K, Mayes K (2014) Secure mobile payment on nfc-enabled mobile phones formally analysed using casperfdr 422\u2013431","DOI":"10.1109\/TrustCom.2014.55"},{"key":"784_CR28","first-page":"173","volume":"12","author":"P Pourghomi","year":"2013","unstructured":"Pourghomi P, Ghinea G et al (2013) A proposed nfc payment application. Int J Adv Comput Sci Appl 12:173\u2013181","journal-title":"Int J Adv Comput Sci Appl"},{"key":"784_CR29","unstructured":"Lee Y-S, Kim E, Jung M-S (2013) A nfc based authentication method for defense of the man in the middle attack. In: Proceedings of the 3rd international conference on computer science and information technology, pp 10\u201314"},{"key":"784_CR30","doi-asserted-by":"crossref","unstructured":"Al-Tamimi M, Al-Haj A (2017) Online security protocol for nfc mobile payment applications. In: 8th International conference on information technology (ICIT). IEEE, Piscataway, pp 827\u2013832","DOI":"10.1109\/ICITECH.2017.8079954"},{"key":"784_CR31","doi-asserted-by":"crossref","unstructured":"Kahya N, Ghoualmi N, Lafourcade P (2012) Formal analysis of pkm using scyther tool. In: International conference on information technology and e-services. IEEE, Piscataway, pp 1\u20136","DOI":"10.1109\/ICITeS.2012.6216598"},{"key":"784_CR32","unstructured":"Cremers C, Lafourcade P (2007) Comparing state spaces in automatic protocol verification. In: International workshop on automated verification of critical systems (AVoCS)"},{"key":"784_CR33","doi-asserted-by":"crossref","unstructured":"Cremers C, Mauw S (2012) Operational semantics and verification of security protocols, Springer, Berlin","DOI":"10.1007\/978-3-540-78636-8"},{"key":"784_CR34","unstructured":"Cremers CJ (2008) The scyther tool: verification, falsification, and analysis of security protocols. In: International conference on computer aided verification. Springer, Berlin"},{"key":"784_CR35","unstructured":"Blanchet B, et al. (2001) An efficient cryptographic protocol verifier based on prolog rules. csfw"},{"key":"784_CR36","doi-asserted-by":"crossref","unstructured":"Armando A, Basin D, Boichut Y, Chevalier Y, Compagna L, Cu\u00e9llar J, Drielsma PH, H\u00e9am P-C, Kouchnarenko O, Mantovani J et al (2005) The avispa tool for the automated validation of internet security protocols and applications. In: International conference on computer aided verification. Springer, Berlin","DOI":"10.1007\/11513988_27"},{"key":"784_CR37","doi-asserted-by":"crossref","unstructured":"Zhang L, Ma M (2020) Secure and efficient scheme for fast initial link setup against key reinstallation attacks in IEEE 802.11 ah networks. International Journal of Communication Systems, Wiley Online Library","DOI":"10.1002\/dac.4192"},{"key":"784_CR38","unstructured":"Subramanian NV, Dehliger J (2006) Multi-protocol attack: a survey of current research"},{"key":"784_CR39","volume-title":"Scyther: semantics and verification of security protocols","author":"CJF Cremers","year":"2006","unstructured":"Cremers CJF (2006) Scyther: semantics and verification of security protocols. Eindhoven University of Technology, Eindhoven"},{"key":"784_CR40","doi-asserted-by":"crossref","unstructured":"Ahamad SS, Pathan A-SK (2019) Trusted service manager (tsm) based privacy preserving and secure mobile commerce framework with formal verification. In: Complex adaptive systems modeling. Springer, Berlin","DOI":"10.1186\/s40294-019-0064-z"},{"key":"784_CR41","unstructured":"Mansour I, Lafourcade P, Chalhoub G (2014) M\u00e9canismes d\u2019authentification pour des r\u00e9seaux de capteurs sans fil multi-sauts"},{"key":"784_CR42","doi-asserted-by":"crossref","unstructured":"Naoui S, Elhdhili ME, Saidane LA (2020) Novel enhanced Lorawan framework for smart home remote control security. In: Wireless personal communications. Springer, Berlin","DOI":"10.1007\/s11277-019-06832-x"},{"key":"784_CR43","doi-asserted-by":"crossref","unstructured":"Amin R, Lohani P, Ekka M, Chourasia S, Vollala S (2020) An enhanced anonymity resilience security protocol for vehicular ad-hoc network with scyther simulation. In: Computers & electrical engineering. Elsevier, Amsterdam","DOI":"10.1016\/j.compeleceng.2020.106554"},{"key":"784_CR44","doi-asserted-by":"crossref","unstructured":"Huang J, Huang C-T (2016) Design and verification of secure mutual authentication protocols for mobile multihop relay wimax networks against rogue base\/relay stations. J Electr Comput Eng Hindawi, vol. 2016:1\u201312","DOI":"10.1155\/2016\/9859830"},{"key":"784_CR45","unstructured":"Kotzanikolaou P (2016) Cryptographic protocol analysis\u2014a short introduction to the scyther tool Presentation at FOSSCOMM 2016-University of Piraeus"},{"key":"784_CR46","doi-asserted-by":"crossref","unstructured":"Mohammad Z (2020) Cryptanalysis and improvement of the yak protocol with formal security proof and security verification via scyther. International Journal of Communication Systems, Wiley","DOI":"10.1002\/dac.4386"},{"key":"784_CR47","doi-asserted-by":"crossref","unstructured":"Cremers C (2011) Key exchange in ipsec revisited: formal analysis of ikev1 and ikev2. In: European symposium on research in computer security. Springer, Berlin","DOI":"10.1007\/978-3-642-23822-2_18"},{"key":"784_CR48","doi-asserted-by":"crossref","unstructured":"Cremers C, Horvat M (2014) Improving the iso\/iec 11770 standard for key management techniques. In: International conference on research in security standardisation. Springer, Berlin","DOI":"10.1007\/978-3-319-14054-4_13"},{"key":"784_CR49","doi-asserted-by":"crossref","unstructured":"Cremers C, Horvat M (2016) Improving the iso\/iec 11770 standard for key management techniques. International Journal of Information Security. Springer","DOI":"10.1007\/s10207-015-0306-9"},{"key":"784_CR50","unstructured":"Basin D, Cremers C (2011) Evaluation of iso\/iec 9798 protocols: Version 2.0. ETH Zurich"},{"issue":"6","key":"784_CR51","doi-asserted-by":"publisher","first-page":"817","DOI":"10.3233\/JCS-130472","volume":"21","author":"D Basin","year":"2013","unstructured":"Basin D, Cremers C, Meier S (2013) Provably repairing the iso\/iec 9798 standard for entity authentication 1. J Comput Secur 21(6):817\u2013846","journal-title":"J Comput Secur"},{"key":"784_CR52","unstructured":"Lu S, Zhao J, Cheng Q (2016) Cryptanalysis and improvement of an efficient authenticated key exchange protocol with tight security reduction. International Journal of Communication Systems, Wiley Online Library"},{"key":"784_CR53","doi-asserted-by":"crossref","unstructured":"Cheng Q, Lu S, Ma J (2017) Analysis and improvement of the internet-draft ikev3 protocol. International Journal of Communication Systems, Wiley Online Library","DOI":"10.1002\/dac.3194"},{"key":"784_CR54","doi-asserted-by":"crossref","unstructured":"Kahya N, Ghoualmi N, Lafourcade P (2012) Secure key management protocol in wimax. International Journal of Network Security & Its Applications. Academy & Industry Research Collaboration Center (AIRCC)","DOI":"10.5121\/ijnsa.2012.4609"},{"key":"784_CR55","unstructured":"Yang H, Oleshchuk VA, Prinz A (2016) Verifying group authentication protocols by scyther. JoWUA"},{"key":"784_CR56","doi-asserted-by":"crossref","unstructured":"Lavanya M, Natarajan V (2017) Lwdsa: light-weight digital signature algorithm for wireless sensor networks. S\u0101dhan\u0101. Springer","DOI":"10.1007\/s12046-017-0718-5"},{"key":"784_CR57","doi-asserted-by":"crossref","unstructured":"Nikooghadam M, Amintoosi H (2020) An improved secure authentication and key agreement scheme for healthcare applications. In: 2020 25th International computer conference, computer society of Iran (CSICC). IEEE","DOI":"10.1109\/CSICC49403.2020.9050069"},{"key":"784_CR58","volume-title":"A signature-based mutual authentication protocol for remote health monitoring. SN Computer Science","author":"S Binu","year":"2020","unstructured":"Binu S, Misbahuddin M, Paulose J (2020) A signature-based mutual authentication protocol for remote health monitoring. SN Computer Science. Springer, Berlin"},{"key":"784_CR59","unstructured":"Lowe G (1997) A hierarchy of authentication specifications. In: Proceedings 10th computer security foundations workshop. IEEE"}],"container-title":["Annals of Telecommunications"],"original-title":[],"language":"en","link":[{"URL":"https:\/\/link.springer.com\/content\/pdf\/10.1007\/s12243-020-00784-1.pdf","content-type":"application\/pdf","content-version":"vor","intended-application":"text-mining"},{"URL":"https:\/\/link.springer.com\/article\/10.1007\/s12243-020-00784-1\/fulltext.html","content-type":"text\/html","content-version":"vor","intended-application":"text-mining"},{"URL":"https:\/\/link.springer.com\/content\/pdf\/10.1007\/s12243-020-00784-1.pdf","content-type":"application\/pdf","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2023,10,4]],"date-time":"2023-10-04T12:13:35Z","timestamp":1696421615000},"score":1,"resource":{"primary":{"URL":"https:\/\/link.springer.com\/10.1007\/s12243-020-00784-1"}},"subtitle":["A new security protocol formally analyzed by the Scyther tool"],"short-title":[],"issued":{"date-parts":[[2020,7,18]]},"references-count":59,"journal-issue":{"issue":"3-4","published-print":{"date-parts":[[2021,4]]}},"alternative-id":["784"],"URL":"https:\/\/doi.org\/10.1007\/s12243-020-00784-1","relation":{},"ISSN":["0003-4347","1958-9395"],"issn-type":[{"value":"0003-4347","type":"print"},{"value":"1958-9395","type":"electronic"}],"subject":[],"published":{"date-parts":[[2020,7,18]]},"assertion":[{"value":"29 February 2020","order":1,"name":"received","label":"Received","group":{"name":"ArticleHistory","label":"Article History"}},{"value":"18 June 2020","order":2,"name":"accepted","label":"Accepted","group":{"name":"ArticleHistory","label":"Article History"}},{"value":"18 July 2020","order":3,"name":"first_online","label":"First Online","group":{"name":"ArticleHistory","label":"Article History"}}]}}