Skip to main navigation Skip to search Skip to main content

Enhancing the Security of JSON Web Token Using Signal Protocol and Ratchet System

Research output: Chapter in Book/Report/Conference proceedingArticle in proceedingsResearchpeer-review

Abstract

User Authentication is crucial for every application. Initially, session variables were used. If a session ID was compromised, lost, or stolen, the user's identity was compromised. This resulted from session IDs having a long lifespan and the tendency of most users not to log out of their accounts. JSON web tokens (JWTs) Tokens were introduced to overcome this problem and are currently considered industry standards. JWTs are secured using base 64 encryption and session variables. They have a shorter lifespan as compared to session variables. Even then, it is highly susceptible to Man-in-the-Middle attacks, especially over unsecured networks. Internal attack vectors also pose a significant threat in this particular scenario. To counter this problem, we explore the possibility of using the Signal algorithm with a double ratchet system to encrypt our JWTs to add a new layer of security. The result is an algorithm capable of securing primary JSON payloads in an end-to-end manner. This research aims to increase the security of JWTs using a ratchet system.
Original languageEnglish
Title of host publicationProceedings of Emerging Trends and Technologies on Intelligent Systems
PublisherSpringer Nature
Publication date2023
Pages387-400
ISBN (Print)9811941815
DOIs
Publication statusPublished - 2023
SeriesAdvances in Intelligent Systems and Computing
ISSN2194-5357

Fingerprint

Dive into the research topics of 'Enhancing the Security of JSON Web Token Using Signal Protocol and Ratchet System'. Together they form a unique fingerprint.

Cite this