Score: 0

SoK: Attacks on Modern Card Payments

Published: April 4, 2025 | arXiv ID: 2504.03363v1

By: Xenia Hofmeier , David Basin , Ralf Sasse and more

Potential Business Impact:

Finds ways to break phone payment security.

Business Areas:
Mobile Payments Financial Services, Mobile, Payments, Software

EMV is the global standard for smart card payments and its NFC-based version, EMV contactless, is widely used, also for mobile payments. In this systematization of knowledge, we examine attacks on the EMV contactless protocol. We provide a comprehensive framework encompassing its desired security properties and adversary models. We also identify and categorize a comprehensive collection of protocol flaws and show how different subsets thereof can be combined into attacks. In addition to this systematization, we examine the underlying reasons for the many attacks against EMV and point to a better way forward.

Country of Origin
🇨🇭 Switzerland

Page Count
37 pages

Category
Computer Science:
Cryptography and Security