The invention discloses a security protocol
analysis method and a security protocol analysis device. The security protocol
analysis method mainly comprises the following steps of: initializing a security protocol, generating a subsequent state by adopting a subsequent generation
algorithm, judging whether the subsequent state is an insecure state, giving a path from an initial state to the subsequent state if the subsequent state is the insecure state, and finishing a flow if the subsequent state is not the insecure state, wherein an attacker knowledge analysis
algorithm introducing special algebraic properties is called by the subsequent generation
algorithm for attacker deduction problems. In the security protocol
analysis method provided by the invention, the
processing of the algebraic properties of
password operators is added, and the
message processing capability of DY attackers, so attacks caused by the algebraic properties can be detected; and the method is applied to most of current security protocol analysis in which
password primitives with the special algebraic properties are used, and the success rate of the analysis is greatly increased.