Nothing Special   »   [go: up one dir, main page]

Skip to main content

On Email Spamming Under the Shadow of Large Scale Use of Identity-Based Encryption

  • Conference paper
Autonomic and Trusted Computing (ATC 2006)

Part of the book series: Lecture Notes in Computer Science ((LNPSE,volume 4158))

Included in the following conference series:

Abstract

In 1984 Adi Shamir requested a solution for a novel public-key encryption scheme, called identity-based encryption (IBE). The original motivation for IBE was to help the deployment of a public-key infrastructure. The idea of an IBE scheme is that the public key can be any arbitrary string, for example, an email address, a name or a role. An IBE scheme does not need to download certificates to authenticate public keys as in a public-key infrastructure (PKI). A public key in an identity-based cryptosystem is simply the receiver’s identity, e.g. an email address. As often, when new technology occurs, the focus is on the functionality of the technology and not on its security. In this paper we briefly review about identity-based encryption and decryption. Later on we show that IBE schemes used for secure emailing render spamming far easier for spammers compared to if a PKI certificate approach is used.

This is a preview of subscription content, log in via an institution to check access.

Access this chapter

Subscribe and save

Springer+ Basic
$34.99 /Month
  • Get 10 units per month
  • Download Article/Chapter or eBook
  • 1 Unit = 1 Article or 1 Chapter
  • Cancel anytime
Subscribe now

Buy Now

Chapter
USD 29.95
Price excludes VAT (USA)
  • Available as PDF
  • Read on any device
  • Instant download
  • Own it forever
eBook
USD 84.99
Price excludes VAT (USA)
  • Available as PDF
  • Read on any device
  • Instant download
  • Own it forever
Softcover Book
USD 109.99
Price excludes VAT (USA)
  • Compact, lightweight edition
  • Dispatched in 3 to 5 business days
  • Free shipping worldwide - see info

Tax calculation will be finalised at checkout

Purchases are for personal use only

Institutional subscriptions

Preview

Unable to display preview. Download preview PDF.

Unable to display preview. Download preview PDF.

Similar content being viewed by others

References

  1. Shamir, A.: Identity-based cryptography and signature schemes. In: Blakely, G.R., Chaum, D. (eds.) CRYPTO 1984. LNCS, vol. 196, pp. 47–53. Springer, Heidelberg (1985)

    Chapter  Google Scholar 

  2. Feige, U., Fiat, A., Shamir, A.: Zero-knowledge proofs of identity. J. Cryptology 1, 77–94 (1988)

    Article  MATH  MathSciNet  Google Scholar 

  3. Fiat, A., Shamir, A.: How to prove yourself: practical solutions to identification and signa-ture problems. In: Odlyzko, A.M. (ed.) CRYPTO 1986. LNCS, vol. 263, pp. 186–194. Springer, Heidelberg (1987)

    Google Scholar 

  4. Boneh, D., Franklin, M.: Identity-based encryption from the Weil pairing. In: Kilian, J. (ed.) CRYPTO 2001. LNCS, vol. 2139, pp. 213–229. Springer, Heidelberg (2001)

    Chapter  Google Scholar 

  5. Boyen, X.: Multipurpose Identity-based signcryption, a Swiss army knife for identity-based cryptography. In: Boneh, D. (ed.) CRYPTO 2003. LNCS, vol. 2729, pp. 383–399. Springer, Heidelberg (2003)

    Chapter  Google Scholar 

  6. Chen, L., Kudla, C.: Identity-based authenticated key agreement protocols from pairings, Cryptology ePrint Archive, Report 2002/184 (2002), http://eprint.iacr.org/2002/184

  7. Lynn, B.: Authenticated identity-based encryption, Cryptology ePrint Archive, Report 2002/072 (2002), http://eprint.iacr.org/2002/072

  8. Waters, B.R.: Efficient Identity-Based Encryption Without Random Oracles, Cryptology ePrint Archive, Report 2004/180 (2004), http://eprint.iacr.org/2004/180

  9. Voltage security, E-mail Security – The IBE Advantage (2004)

    Google Scholar 

  10. Veigner, C., Rong, C.: Identity-Based Key Agreement and Encryption for Wireless Sensor Networks (in preprint)

    Google Scholar 

  11. Veigner, C., Rong, C.: Simulating Identity-Based Key Agreement For Wireless Sensor Networks (in preprint)

    Google Scholar 

  12. Data Encryption Standard (DES), FIPS 46-2, http://www.itl.nist.gov/fipspubs/fip46-2.htm

  13. Advanced Encryption Standard (AES), FIPS 197, http://csrc.nist.gov/CryptoToolkit/aes/

  14. Securence, http://www.securence.com

  15. Frontbridge, http://www.forntbridge.com

  16. Logic, M.X.: http://www.mxlogic.com

  17. Norman, http://www.norman.com

  18. Clam Antivirus, www.clamav.net www.clamwin.com

  19. Schlegel, R., Vaudenay, S.: Enforcing Email Addresses Privacy Using Tokens. In: Feng, D., Lin, D., Yung, M. (eds.) CISC 2005. LNCS, vol. 3822, pp. 91–100. Springer, Heidelberg (2005)

    Chapter  Google Scholar 

  20. SpamArrest, http://www.spamarrest.com

  21. Roman, R., Zhou, J., Lopez, J.: Protection against Spam using Pre-Challenges. In: Security and Privacy in the Age of Ubiquitous Computing IFIP TC11, 20th International Information Security Conference (Sec 2005), pp. 281–294. Springer, Heidelberg (2005)

    Google Scholar 

  22. Harris, E.: The Next Step in the Spam Control War: Graylisting (2003), http://www.graylisting.org/

  23. Delany, M.: Domain-based Email Authentication Using Public-Keys Advertised in the DNS (DomainKeys). IETF Draft (2005)

    Google Scholar 

  24. Ioannidis, J.: Fighting Spam by Encapsulating Policy in Email Addresses. In: Symposium on Network and Distributed Systems Security (NDSS 2003) (February 2003)

    Google Scholar 

  25. Cranor, L.F., LaMacchia, B.A.: SPAM! Communications of the ACM 41(8), 74–83 (1998)

    Article  Google Scholar 

  26. Abadi, M., Birrell, A., Burrows, M., Dabek, F., Wobber, T.: Bankable Postage for Network Services. In: Saraswat, V.A. (ed.) ASIAN 2003. LNCS, vol. 2896, pp. 72–90. Springer, Heidelberg (2003)

    Chapter  Google Scholar 

Download references

Author information

Authors and Affiliations

Authors

Editor information

Editors and Affiliations

Rights and permissions

Reprints and permissions

Copyright information

© 2006 Springer-Verlag Berlin Heidelberg

About this paper

Cite this paper

Veigner, C., Rong, C. (2006). On Email Spamming Under the Shadow of Large Scale Use of Identity-Based Encryption. In: Yang, L.T., Jin, H., Ma, J., Ungerer, T. (eds) Autonomic and Trusted Computing. ATC 2006. Lecture Notes in Computer Science, vol 4158. Springer, Berlin, Heidelberg. https://doi.org/10.1007/11839569_51

Download citation

  • DOI: https://doi.org/10.1007/11839569_51

  • Publisher Name: Springer, Berlin, Heidelberg

  • Print ISBN: 978-3-540-38619-3

  • Online ISBN: 978-3-540-38622-3

  • eBook Packages: Computer ScienceComputer Science (R0)

Publish with us

Policies and ethics