Authors:
Jorge L. Hernandez-Ardieta
;
Ana I. Gonzalez-Tablas
;
Benjamin Ramos
and
Arturo Ribagorda
Affiliation:
University Carlos III of Madrid, Spain
Keyword(s):
Non-repudiation, Digital evidence, Electronic signature, Vulnerabilities.
Related
Ontology
Subjects/Areas/Topics:
Identification, Authentication and Non-Repudiation
;
Information and Systems Security
;
Network Security
;
Phishing, Adfraud, Malware, and Countermeasures
;
Reliability and Dependability
;
Security in Information Systems
;
Security Information Systems Architecture and Design and Security Patterns
Abstract:
Electronic signatures have been legally recognized as the key element for boosting e-commerce under secure conditions. Several legislations throughout the world establish electronic signatures as legally equivalent to hand-written signatures, assigning them the property of evidence in legal proceedings. In addition, international standards define electronic signatures as non-repudiation evidence respecting the signed information. Bearing this in mind, it is obvious that the reliability of electronic signatures is paramount. However, the results show that several attacks on signature creation environments are feasible and easy to perform. As a result, the reliability of evidence is drastically undermined. We claim that the division of the environment becomes the most effective solution to counteract current threats. The formal proofs that support this statement are given along with an overview of the legal background and a summary of main potential threats on signature creation enviro
nments.
(More)