Computational Science - New Dimensions & Perspectives |
Foundation of Computer Science USA |
NCCSE - Number 3 |
None 2011 |
Authors: Abin Oommen Philip |
142cb98d-9021-4b7e-8fd1-dc2f67b258f0 |
Abin Oommen Philip . Using Mobile Phones as Software Token for Generating Digital Signature Code � Digitally Signing An Online Banking Transaction. Computational Science - New Dimensions & Perspectives. NCCSE, 3 (None 2011), 118-121.
Nowadays, Online banking security mechanisms focus on safe authentication mechanisms, but all these mechanisms are rendered useless if we are unable to ensure the integrity of the transactions made. Of late a new threat has emerged known as Man In The Browser attack, its capable of modifying a transaction in real time without the users notice, after the user has successfully logged in using safe authentication mechanisms. In this paper we analyze the Man In the Browser attack and propose a solution based upon Digitally signing a transaction and using the mobile phones as a software token for Digital Signature code generation.