Security analysis and improvement of the efficient password-based authentication protocol

被引:8
|
作者
Kwon, T [1 ]
Park, YH
Lee, HJ
机构
[1] Sejong Univ, Fac Sch Comp Engn, Seoul, South Korea
[2] Sejong Cyber Univ, Seoul, South Korea
[3] Kangnam Univ, Fac Dept Math, Yongin, South Korea
关键词
information security; authentication protocol; security analysis;
D O I
10.1109/LCOMM.2005.01032
中图分类号
TN [电子技术、通信技术];
学科分类号
0809 ;
摘要
We analyze and improve the security of the efficient password-based authentication protocol that has been proposed recently in the Australasian Conference on Information Security and Privacy (ACISP) 2003. Its distinct idea is to utilize two generators of a certain cyclic group for efficiency, while the protocol is vulnerable to the server compromise attack on the contrary to the original assumption. Fortunately, we improve its security in this paper and also remark on its extended version called EPA+.
引用
收藏
页码:93 / 95
页数:3
相关论文
共 50 条
  • [31] EPA: An efficient password-based protocol for authenticated key exchange
    Hwang, YH
    Yum, DH
    Lee, PJ
    INFORMATION SECURITY AND PRIVACY, PROCEEDINGS, 2003, 2727 : 452 - 463
  • [32] Security Analysis and Improvements of a Three-Party Password-Based Key Exchange Protocol
    Tu, Hang
    Shen, Han
    He, Debiao
    Chen, Jianhua
    INFORMATION TECHNOLOGY AND CONTROL, 2014, 43 (01): : 57 - 63
  • [33] Simple and Efficient Password-Based Authenticated Key Exchange Protocol
    王立斌
    潘嘉昕
    马昌社
    Journal of Shanghai Jiaotong University(Science), 2011, 16 (04) : 459 - 465
  • [34] Efficient augmented password-based encrypted key exchange protocol
    Wu, Shuhua
    Zhu, Yuefei
    MOBILE AD-HOC AND SENSOR NETWORKS, PROCEEDINGS, 2006, 4325 : 533 - +
  • [35] Mitigating Server Breaches in Password-Based Authentication: Secure and Efficient Solutions
    Blazy, Olivier
    Chevalier, Celine
    Vergnaud, Damien
    TOPICS IN CRYPTOLOGY - CT-RSA 2016, 2016, 9610 : 3 - 18
  • [36] Efficient and secure password-based authentication protocols against guessing attacks
    Yonsei Univ, Seoul, Korea, Republic of
    Comput Commun, 9 (853-861):
  • [37] Efficient and secure password-based authenticated key exchange protocol
    Wu, Shuhua
    Zhu, Yuefei
    2006 INTERNATIONAL CONFERENCE ON COMPUTATIONAL INTELLIGENCE AND SECURITY, PTS 1 AND 2, PROCEEDINGS, 2006, : 1269 - 1272
  • [38] Efficient password-based authenticated group key exchange protocol
    School of Computer Science and Engineering, University of Electronic Science and Technology of China, Chengdu 610054, China
    不详
    Dianzi Keji Diaxue Xuebao, 2009, 3 (393-396+414):
  • [39] Structured and efficient password-based group key agreement protocol
    Zhu, Hongfeng, 1600, Ubiquitous International (05):
  • [40] Simple and efficient password-based authenticated key exchange protocol
    Wang L.-B.
    Pan J.-X.
    Ma C.-S.
    Journal of Shanghai Jiaotong University (Science), 2011, 16 (4) : 459 - 465