Enabling Secure Web Payments with GNU Taler
نویسندگان
چکیده
GNU Taler is a new electronic online payment system which provides privacy for customers and accountability for merchants. It uses an exchange service to issue digital coins using blind signatures, and is thus not subject to the performance issues that plague Byzantine fault-tolerant consensus-based solutions. The focus of this paper is addressing the challenges payment systems face in the context of the Web. We discuss how to address Web-specific challenges, such as handling bookmarks and sharing of links, as well as supporting users that have disabled JavaScript. Web payment systems must also navigate various constraints imposed by modern Web browser security architecture, such as same-origin policies and the separation between browser extensions and Web pages. While our analysis focuses on how Taler operates within the security infrastructure provided by the modern Web, the results partially generalize to other payment systems. We also include the perspective of merchants, as existing systems have often struggled with securing payment information at the merchant’s side. Here, challenges include avoiding database transactions for customers that do not actually go through with the purchase, as well as cleanly separating securitycritical functions of the payment system from the rest of the Web service.
منابع مشابه
Threat Analysis of GNU Software Radio
Software defined radio (SDR) technology implements some of the functional modules of a radio system in software enabling highly flexible handsets. SDR devices may be reconfigured dynamically via the download of new software modules. Malicious or malfunctioning downloaded software present serious security risks to SDR devices and networks in which they operate. In this paper, we analyze threats ...
متن کاملA New Approach to Compare the Impact of Direct and Indirect Payments on Regional Macroeconomic Indices
Several procedures have been employed to examine the impacts of subsidies on different indices in an economy. This paper proposes a new approach enabling one to compare direct and indirect payments on households. To this end, the impact of government payments is examined on Gross Regional Products, Employment, Income Distribution and Inflation of Golestan Province in Iran through a Social Accou...
متن کاملSecure Processing and Delivery of Medical Images for Patient Information Protection
In the delivery of medical imaging (such as Xray, MRI) for remote diagnosis, the protection of the security and privacy of patient’s information is extremely important. As conventional E-mail delivery is considered insecure, nowadays, people send medical images to a remote location using secure shared network storage space over IP protocol. While this is more reliable than traditional E-mail de...
متن کاملWebGLORE: a Web service for Grid LOgistic REgression
UNLABELLED WebGLORE is a free web service that enables privacy-preserving construction of a global logistic regression model from distributed datasets that are sensitive. It only transfers aggregated local statistics (from participants) through Hypertext Transfer Protocol Secure to a trusted server, where the global model is synthesized. WebGLORE seamlessly integrates AJAX, JAVA Applet/Servlet ...
متن کاملA physical layer DSB Enc scheme for RFID systems
Radio Frequency IDentification (RFID) is a contactless, automatic identification wireless technology primarily used for identifying and tracking of objects, goods and humans. RFID is not only limited to identification and tracking applications. This proliferating wireless technology has been deployed in numerous securities sensitive applications such as access control, e-passports, contactless ...
متن کاملذخیره در منابع من
با ذخیره ی این منبع در منابع من، دسترسی به آن را برای استفاده های بعدی آسان تر کنید
عنوان ژورنال:
دوره شماره
صفحات -
تاریخ انتشار 2016