Cryptanalysis and security enhancement of a remote user authentication scheme using smart cards

被引:0
|
作者
WANG Ding1
机构
基金
中国国家自然科学基金;
关键词
cryptanalysis; authentication protocol; smart card; non-tamper resistant; forward secrecy;
D O I
暂无
中图分类号
TN409 [应用]; TP393.08 [];
学科分类号
080903 ; 0839 ; 1401 ; 1402 ;
摘要
With the broad implementations of the electronic business and government applications,robust system security and strong privacy protection have become essential requirements for remote user authentication schemes.Recently,Chen et al.pointed out that Wang et al.’s scheme is vulnerable to the user impersonation attack and parallel session attack,and proposed an enhanced version to overcome the identified security flaws.In this paper,however,we show that Chen et al.’s scheme still cannot achieve the claimed security goals and report its following problems:(1) It suffers from the offline password guessing attack,key compromise impersonation attack and known key attack;(2) It fails to provide forward secrecy;(3) It is not easily repairable.As our main contribution,a robust dynamic ID-based scheme based on non-tamper resistance assumption of the smart cards is presented to cope with the aforementioned defects,while preserving the merits of different related schemes.The analysis demonstrates that our scheme meets all the proposed criteria and eliminates several grave security threats that are difficult to be tackled at the same time in previous scholarship.
引用
收藏
页码:104 / 114
页数:11
相关论文
共 50 条
  • [1] Cryptanalysis and security enhancement of a remote user authentication scheme using smart cards
    WANG DingMA Chunguang College of Computer Science and TechnologyHarbin Engineering UniversityHarbin China Automobile Management Institute of PLABengbu China
    [J]. The Journal of China Universities of Posts and Telecommunications, 2012, 19 (05) - 114
  • [2] Security enhancement of a remote user authentication scheme using smart cards
    Lee, Youngsook
    Nam, Junghyun
    Won, Dongho
    [J]. ON THE MOVE TO MEANINGFUL INTERNET SYSTEMS 2006: OTM 2006 WORKSHOPS, PT 1, PROCEEDINGS, 2006, 4277 : 508 - +
  • [3] Cryptanalysis of a remote user authentication scheme using smart cards
    Huang Kai
    Ou Qingyu
    Wu Xiaoping
    Song Yexin
    [J]. 2009 5TH INTERNATIONAL CONFERENCE ON WIRELESS COMMUNICATIONS, NETWORKING AND MOBILE COMPUTING, VOLS 1-8, 2009, : 4490 - 4493
  • [4] Cryptanalysis of a remote user authentication scheme using smart cards
    Chan, CK
    Cheng, LM
    [J]. IEEE TRANSACTIONS ON CONSUMER ELECTRONICS, 2000, 46 (04) : 992 - 993
  • [5] Cryptanalysis and Improvement of a Remote User Authentication Scheme using Smart Cards
    Giri, Debasis
    Srivastava, P. D.
    [J]. PROCEEDINGS OF THE INTERNATIONAL SYMPOSIUM ON ELECTRONIC COMMERCE AND SECURITY, 2008, : 355 - 361
  • [6] Cryptanalysis of a modified remote user authentication scheme using smart cards
    Leung, KC
    Cheng, LM
    Fong, AS
    Chan, CK
    [J]. IEEE TRANSACTIONS ON CONSUMER ELECTRONICS, 2003, 49 (04) : 1243 - 1245
  • [7] Security of a remote user authentication scheme using smart cards
    Yeh, HT
    Sun, HM
    Hsieh, BT
    [J]. IEICE TRANSACTIONS ON COMMUNICATIONS, 2004, E87B (01) : 192 - 194
  • [8] Cryptanalysis of a user friendly remote authentication scheme with smart cards
    Yang, CC
    Wang, RC
    [J]. COMPUTERS & SECURITY, 2004, 23 (05) : 425 - 427
  • [9] CRYPTANALYSIS OF AN EFFICIENT REMOTE USER AUTHENTICATION SCHEME WITH SMART CARDS
    Yeh, Kuo-Hui
    Lo, Nai Wei
    Winata, Enrico
    [J]. INTERNATIONAL JOURNAL OF INNOVATIVE COMPUTING INFORMATION AND CONTROL, 2010, 6 (06): : 2595 - 2608
  • [10] Security Enhancement on an Improvement on Two Remote User Authentication Scheme Using Smart Cards
    Hsiang, HanCheng
    Chen, TienHo
    Shih, WeiKuan
    [J]. COMMUNICATION AND NETWORKING, 2009, 56 : 65 - +