Technology Review - Published By MIT
Advertisement
TR35

2009 Young Innovator

Michael Backes, 31

Saarland University

Proving that Internet security protocols can really be trusted

Problem: To help protect Internet users' privacy, cryptographers have developed zero-knowledge proofs, which allow users to demonstrate that they know, say, a password or bank-account number without actually revealing what it is. IBM, Intel, and Hewlett-­Packard have used these proofs as the basis for a new Internet security protocol, similar to the Secure Sockets Layer that protects e-commerce transactions. But while the proofs themselves are secure, it's hard to be sure that the protocols based on them are free of glitches that could allow them to be hacked.

Solution: Software designed by Michael Backes, a professor in the information security and cryptography group at Saarlan­d University in Saarbrücken, G­ermany, can prove in less than a second whether an Internet protocol is truly secure. The program, the first one that's been able to test protocols based on zero-­knowledge proofs, creates simplified mathematical representations of the proofs and evaluates how they work within the protocol. The result is that it can efficiently check to see whether individual instructions in a protocol might let an interloper into the system. --Neil Savage


 
 
TR35 Back to all TR35 2009 Winners   TR35 2009 Web Winners     
Jeffrey Bigham
Free service to help blind people navigate the Web
Michael Backes
Proving that Internet security protocols can really be trusted
Jeffrey Heer
Easy-to-use tools allow people to present data in creative and interesting ways
Vik Singh
Opening up search secrets to spur innovation
Jaime Teevan
Using personal information to improve search results

Comments

Advertisement
MIT Massachusetts Institute of Technology © 2009 Technology Review. All Rights Reserved.