Common Attacks on Near Field Communication Technology

Ashwag Hamad Alrobaish, Wejdan Faleh Al-mutairi, Hissah Abdullah Alsuqayhi, Dina M. Ibrahim · 2022

Web Application Security (WAS) is the focus of the cybersecurity world. The users use the web and mobile applications to offer personal data for data exchange and money transactions which can be misused by the attacker to launch malicious attacks. Broken Access Control (BAC) attack is the attack that targeting the URL resource to manipulate the SQL query parameters with the purpose of exposing personal information the attacker shouldn't be able to see or tamper with the improper linkage of right access to a specific function trying to do the function as a legitimate user. Our purpose is to highlight BAC vulnerability in e-Pay services that support Wi-Fi money transactions specifically in Mada-pay that uses Near Field Communication (NFC) by reviewing attacks targeting NFC technology.

Read the paper · More papers on PaperTik