9 Papers
45 Citations
Han Gao is an academic researcher from Technical University of Denmark. The author has contributed to research in topics: Cryptographic protocol & Principal (computer security). The author has an hindex of 6, co-authored 9 publications.
Chat about Author
Papers
A formal analysis for capturing replay attacks in cryptographic protocols
TL;DR: A reduction semantics for the LYSA calculus extended with session information, for modelling cryptographic protocols, and a static analysis for it, which shows that the analysis is able to capture potential replay attacks.
A Formal Analysis of Complex Type Flaw Attacks on Security Protocols
Han Gao,Chiara Bodei,Pierpaolo Degano +2 more
- 28 Jul 2008
TL;DR: This paper model in the process calculus LySa only the misinterpretation due to the confusion of a concatenation of fields with a single field, by extending the notation of one- to-one variable binding to many-to-one binding and presents a formal way of detecting these possible misinterpretations.
Detecting and Preventing Type flaws: a Control Flow Analysis with Tags
Chiara Bodei,Pierpaolo Degano,Han Gao,Linda Brodo +3 more
- 01 Nov 2007
TL;DR: An extension of the LySa calculus with tags attached to each field, indicating the intended types is presented, which developed a control flow analysis for analysing the extended LySa, which over-approximates all the possible behaviour of a protocol and hence is able to capture any type confusion that may happen during the protocol execution.
Protocol Stacks for Services
Han Gao,Flemming Nielson,Hanne Riis Nielson +2 more
- 01 Jan 2009
TL;DR: It is shown how to model service-oriented applications using process algebras such that a certain level of abstraction can be achieved without being overwhelmed by the underlying implementation details and the concrete industrial standards used for implementing the service- oriented applications are respected.
9
Analysis of LYSA-calculus with explicit confidentiality annotations
Han Gao,Hanne Riis Nielson +1 more
- 18 Apr 2006
TL;DR: A static analysis approach is developed for analyzing protocols specified in the extended LYSA that will over-approximate the possible executions of protocols while keeping track of all messages communicated over the network and capture the potential malicious activities performed by attackers as specified by the confidentiality annotations.