Cryptanalysis of a mutual authentication scheme based on nonce and smart cards

被引:19
|
作者
Sun, Da-Zhi [1 ,2 ]
Huai, Jin-Peng [2 ]
Sun, Ji-Zhou [1 ]
Li, Jian-Xin [2 ]
机构
[1] Tianjin Univ, Sch Comp Sci & Technol, Tianjin 300072, Peoples R China
[2] Beihang Univ, Sch Comp, Beijing 100083, Peoples R China
基金
中国博士后科学基金; 中国国家自然科学基金;
关键词
Network security; Authentication; Impersonation; Forged login attack; Smart card;
D O I
10.1016/j.comcom.2008.12.023
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
To prevent the forged login attacks, Liu et al. recently proposed a new mutual authentication scheme using smart cards. However, we demonstrate that the attacker without any secret information can successfully not only impersonate any user to cheat the server but also impersonate the server to cheat any user. That is, Liu et al.'s scheme fails to defend the forged login attack as the previous version. Our cryptanalysis result is important for security engineers, who are responsible for the design and development of smart card-based user authentication systems. (C) 2008 Elsevier B.V. All rights reserved.
引用
收藏
页码:1015 / 1017
页数:3
相关论文
共 50 条
  • [1] A new mutual authentication scheme based on nonce and smart cards
    Liu, Jia-Yong
    Zhou, An-Min
    Gao, Min-Xu
    [J]. COMPUTER COMMUNICATIONS, 2008, 31 (10) : 2205 - 2209
  • [2] Designing a new mutual authentication scheme based on nonce and smart cards
    Huang, Hui-Feng
    Liu, Su-E
    Chen, Hui-Fang
    [J]. JOURNAL OF THE CHINESE INSTITUTE OF ENGINEERS, 2013, 36 (01) : 98 - 102
  • [3] A security enhanced mutual authentication scheme based on nonce and smart cards
    Shi, Wenbo
    He, Debiao
    [J]. JOURNAL OF THE CHINESE INSTITUTE OF ENGINEERS, 2014, 37 (08) : 1090 - 1095
  • [4] A Novel Mutual Authentication Scheme Based on Fingerprint Biometric and Nonce Using Smart Cards
    Wang, De-song
    Li, Jian-ping
    [J]. INTERNATIONAL JOURNAL OF SECURITY AND ITS APPLICATIONS, 2011, 5 (04): : 1 - 12
  • [5] New cryptanalysis paradigm on a nonce-based mutual authentication scheme
    School of Computer Science and Technology, Tianjin University, No 92 Weijin Road, Nankai District, Tianjin 300072, China
    不详
    [J]. Int. J. Netw. Secur., 2008, 1 (116-120):
  • [6] Cryptanalysis and Improvement on Remote User Mutual Authentication Scheme with Smart Cards
    Arshad, Razi
    Ikram, Nassar
    [J]. 11TH INTERNATIONAL CONFERENCE ON ADVANCED COMMUNICATION TECHNOLOGY, VOLS I-III, PROCEEDINGS,: UBIQUITOUS ICT CONVERGENCE MAKES LIFE BETTER!, 2009, : 1202 - 1206
  • [7] Cryptanalysis and an Improvement of New Remote Mutual Authentication Scheme using Smart Cards
    Karuppiah, Marimuthu
    Saravanan, R.
    [J]. JOURNAL OF DISCRETE MATHEMATICAL SCIENCES & CRYPTOGRAPHY, 2015, 18 (05): : 623 - 649
  • [8] Further cryptanalysis of a password authentication scheme with smart cards
    Sun, HM
    Yeh, HT
    [J]. IEICE TRANSACTIONS ON COMMUNICATIONS, 2003, E86B (04) : 1412 - 1415
  • [9] Efficient nonce-based remote user authentication scheme using smart cards
    Lee, SW
    Kim, HS
    Yoo, KY
    [J]. APPLIED MATHEMATICS AND COMPUTATION, 2005, 167 (01) : 355 - 361
  • [10] Security analysis of a nonce-based user authentication scheme using smart cards
    Nam, Junghyun
    Kim, Seungjoo
    Park, Sangjoon
    Won, Dongho
    [J]. IEICE TRANSACTIONS ON FUNDAMENTALS OF ELECTRONICS COMMUNICATIONS AND COMPUTER SCIENCES, 2007, E90A (01) : 299 - 302