Analysis of recent attacks on SSL/TLS protocols

Thesis Type: Postgraduate

Institution Of The Thesis: Orta Doğu Teknik Üniversitesi, Institute of Applied Mathematics, Cryptography, Turkey

Approval Date: 2016


Supervisor: MURAT CENK


Transport Layer Security(TLS) and its predecessor Secure Socket Layer(SSL) are two important cryptographic, certificate based protocols that satisfy secure communication in a network channel. They are widely used in many areas such as online banking systems, online shopping, e-mailing, military systems or governmental systems. Being at the center of secure communication makes SSL and TLS become the target of attackers and an important field of study for researchers. So many vulnerabilities and attacks towards these protocols were explored from past to present. In this thesis, we will mention about the design of SSL and TLS, the cryptographic algorithms used in them, important and recent attacks on these protocols with their precautions. At the end, we will touch on the important points and the selection of parameters for their design that will give strong ideas for the future works to fix these vulnerabilities and improve the protocols.