Hash and Physical Unclonable Function (PUF)-Based Mutual Authentication Mechanism

被引:0
|
作者
Bhatia, Kavita [1 ]
Pandey, Santosh K. [2 ]
Singh, Vivek K. [1 ]
Gupta, Deena Nath [3 ]
机构
[1] Banaras Hindu Univ, Dept Comp Sci, Varanasi 221005, India
[2] Govt India, Minist Elect & IT, New Delhi 110003, India
[3] Ctr Dev Adv Comp, Mumbai 400049, India
关键词
hash; PUF; broken authentication; mutual authentication; privacy-preserving protocol; RFID AUTHENTICATION; PRIVACY; PROTOCOL; SECURE; ECC;
D O I
10.3390/s23146307
中图分类号
O65 [分析化学];
学科分类号
070302 ; 081704 ;
摘要
The security of web applications in an enterprise is of paramount importance. To strengthen the security of applications, the identification and mitigation of vulnerabilities through appropriate countermeasures becomes imperative. The Open Web Application Security Project (OWASP) Top 10 API Security Risks, 2023 Edition, indicates the prominent vulnerabilities of API security risks. Broken authentication, however, is placed in second position with level-3 exploitability, level-2 prevalence, level-3 detectability, and level-3 technical impact. To mitigate this vulnerability, many mitigation strategies have been proposed by using the cryptographic primitives wherein two techniques, namely hashing and PUF, are used. Some of the proposals have integrated the concepts of hashing and PUF. However, the unnecessarily lengthy and complex mathematics used in these proposals makes them unsuitable for current API-based application scenarios. Therefore, in this paper, the authors propose a privacy-preserving authentication protocol that incorporates the capability of both mechanisms in an easy and low-complexity manner. In addition to overcoming existing limitations, the proposed protocol is tested to provide more security properties over existing schemes. Analysis of their performance has demonstrated that the proposed solutions are secure, efficient, practical, and effective for API-based web applications in an enterprise environment.
引用
收藏
页数:15
相关论文
共 50 条
  • [21] Lightweight Mutual Authentication Protocol for V2G Using Physical Unclonable Function
    Bansal, Gaurang
    Naren, Naren
    Chamola, Vinay
    Sikdar, Biplab
    Kumar, Neeraj
    Guizani, Mohsen
    IEEE TRANSACTIONS ON VEHICULAR TECHNOLOGY, 2020, 69 (07) : 7234 - 7246
  • [22] SD-PUF: Spliced Digital Physical Unclonable Function
    Miao, Jin
    Li, Meng
    Roy, Subhendu
    Ma, Yuzhe
    Yu, Bei
    IEEE TRANSACTIONS ON COMPUTER-AIDED DESIGN OF INTEGRATED CIRCUITS AND SYSTEMS, 2018, 37 (05) : 927 - 940
  • [23] Sensitized Path PUF: A Lightweight Embedded Physical Unclonable Function
    Sauer, Matthias
    Raiola, Pascal
    Feiten, Linus
    Becker, Bernd
    Ruehrmair, Ulrich
    Polian, Ilia
    PROCEEDINGS OF THE 2017 DESIGN, AUTOMATION & TEST IN EUROPE CONFERENCE & EXHIBITION (DATE), 2017, : 680 - 685
  • [24] Implementation Ring Oscillator Physical Unclonable Function (PUF) in FPGA
    Pramudita, Resa
    Ramadhan, Surya
    Hariadi, Farkhad Ihsan
    Ahmad, Adang Suwandi
    2018 INTERNATIONAL SYMPOSIUM ON ELECTRONICS AND SMART DEVICES (ISESD 2018): SMART DEVICES FOR BIG DATA ANALYTIC AND MACHINE LEARNING, 2018, : 7 - 11
  • [25] Intrinsic Physical Unclonable Function (PUF) Sensors in Commodity Devices
    Chen, Shuai
    Li, Bing
    Cao, Yuan
    SENSORS, 2019, 19 (11):
  • [26] Ed-PUF: Event-Driven Physical Unclonable Function for Camera Authentication in Reactive Monitoring System
    Zheng, Yue
    Zhao, Xiaojin
    Sato, Takashi
    Cao, Yuan
    Chang, Chip-Hong
    IEEE TRANSACTIONS ON INFORMATION FORENSICS AND SECURITY, 2020, 15 : 2824 - 2839
  • [27] IIoT Key Distribution and Authentication Technology Based on Physical Unclonable Function
    Ou, Long-Ci
    Lee, Narn-Yih
    2021 INTERNATIONAL CONFERENCE ON SECURITY AND INFORMATION TECHNOLOGIES WITH AI, INTERNET COMPUTING AND BIG-DATA APPLICATIONS, 2023, 314 : 295 - 303
  • [28] Secret Sharing Schemes Based Secure Authentication for Physical Unclonable Function
    Nozaki, Yusuke
    Yoshikawa, Masaya
    2019 IEEE 4TH INTERNATIONAL CONFERENCE ON COMPUTER AND COMMUNICATION SYSTEMS (ICCCS 2019), 2019, : 445 - 449
  • [29] Robust Mutual Authentication and Secure Transmission of Information on Low-cost Devices Using Physical Unclonable Functions and Hash Functions
    Clupek, Vlastimil
    Zeman, Vaclav
    2016 39TH INTERNATIONAL CONFERENCE ON TELECOMMUNICATIONS AND SIGNAL PROCESSING (TSP), 2016, : 100 - 103
  • [30] MBM PUF: A Multi-Bit Memory-Based Physical Unclonable Function
    Dehghanzadeh, Peyman
    Mandal, Soumyajit
    Bhunia, Swarup
    IEEE TRANSACTIONS ON CIRCUITS AND SYSTEMS I-REGULAR PAPERS, 2025,