Improvement of a security enhanced one-time two-factor authentication and key agreement scheme

被引:14
|
作者
Xie, Qi [1 ]
机构
[1] Hangzhou Normal Univ, Sch Informat Sci & Engn, Hangzhou 310036, Zhejiang, Peoples R China
基金
中国国家自然科学基金;
关键词
Authentication; Key exchange; Password; Smart card; One-time; Two-factor; REMOTE MUTUAL AUTHENTICATION; PASSWORD AUTHENTICATION; EFFICIENT; WEAKNESSES;
D O I
10.1016/j.scient.2012.02.029
中图分类号
T [工业技术];
学科分类号
08 ;
摘要
In 2010, Holbl et al. showed that Shieh et al.'s mutual authentication and key agreement scheme is vulnerable to the smart card lost attack, not achieving perfect forward secrecy, and proposed a security enhanced scheme to eliminate these weaknesses. In this paper, we show that Holbl et al.'s security enhancement is still vulnerable to the smart card lost attacks. In addition, their scheme cannot resist impersonation attacks and parallel session attacks. Seeing that the existing mutual authentication schemes using smart cards are almost vulnerable to the smart card lost attacks, we further propose a new one-time two-factor mutual authentication and key agreement scheme to eliminate these weaknesses. (C) 2012 Sharif University of Technology. Production and hosting by Elsevier B.V. All rights reserved.
引用
收藏
页码:1856 / 1860
页数:5
相关论文
共 50 条
  • [41] A security-enhanced one-time payment scheme for credit card
    Li, YJ
    Zhang, XW
    14TH INTERNATIONAL WORKSHOP ON RESEARCH ISSUES ON DATA ENGINEERING: WEB SERVICES FOR E-COMMERCE AND E-GOVERNMENT APPLICATIONS, PROCEEDINGS, 2004, : 40 - 47
  • [42] An efficient Key Agreement and Authentication Scheme (KAAS) with enhanced security control for IIoT systems
    Srikanth G.U.
    Geetha R.
    Prabhu S.
    International Journal of Information Technology, 2023, 15 (3) : 1221 - 1230
  • [43] Efficient and Security Enhanced Anonymous Authentication with Key Agreement Scheme in Wireless Sensor Networks
    Jung, Jaewook
    Moon, Jongho
    Lee, Donghoon
    Won, Dongho
    SENSORS, 2017, 17 (03)
  • [44] 2F-MASK-VSS: Two-factor mutual authentication and session key agreement scheme for video surveillance system
    Kumar, Pramod
    Pal, Arup Kumar
    Islam, S. K. Hafizul
    JOURNAL OF SYSTEMS ARCHITECTURE, 2024, 153
  • [45] On the security of an enhanced UMTS authentication and key agreement protocol
    Hwang, Min-Shiang
    Chong, Song-Kong
    Ou, Hsia-Hung
    EUROPEAN TRANSACTIONS ON TELECOMMUNICATIONS, 2011, 22 (03): : 99 - 112
  • [46] One-time identity-password authenticated key agreement scheme based on biometrics
    Zhu, Hongfeng
    SECURITY AND COMMUNICATION NETWORKS, 2015, 8 (13) : 2350 - 2360
  • [47] Two-factor localized authentication scheme for WLAN roaming
    Lin, Xiaodong
    Zhu, Haojin
    Ho, Pin-Han
    Shen, Xuemin
    2007 IEEE INTERNATIONAL CONFERENCE ON COMMUNICATIONS, VOLS 1-14, 2007, : 1172 - 1178
  • [48] Two-factor Distributed Authentication Scheme for Cloud Storage
    Han, Yunxia
    Xu, Chunxiang
    Li, Shanshan
    Lu, Jingjie
    2024 9TH INTERNATIONAL CONFERENCE ON COMPUTER AND COMMUNICATION SYSTEMS, ICCCS 2024, 2024, : 297 - 303
  • [49] Cryptanalysis and Improvement on Lee-Chen's One-Time Password Authentication Scheme
    Lin, Chun-Li
    Hung, Ching-Po
    INTERNATIONAL JOURNAL OF SECURITY AND ITS APPLICATIONS, 2008, 2 (02): : 1 - 8
  • [50] Two-factor authentication scheme using attribute and password
    Wei, Jianghong
    Hu, Xuexian
    Liu, Wenfen
    INTERNATIONAL JOURNAL OF COMMUNICATION SYSTEMS, 2017, 30 (01)