Security Analysis of a Chaotic Map-based Authentication Scheme for Telecare Medicine Information Systems

被引:14
|
作者
Yau, Wei-Chuen [1 ]
Phan, Raphael C. -W. [1 ]
机构
[1] Multimedia Univ, Fac Engn, Cyberjaya, Selangor, Malaysia
关键词
Authentication; Password; Smart card; Telecare medicine information system; KEY; CRYPTANALYSIS; PROTOCOL; ATTACK;
D O I
10.1007/s10916-013-9993-9
中图分类号
R19 [保健组织与事业(卫生事业管理)];
学科分类号
摘要
Many authentication schemes have been proposed for telecare medicine information systems (TMIS) to ensure the privacy, integrity, and availability of patient records. These schemes are crucial for TMIS systems because otherwise patients' medical records become susceptible to tampering thus hampering diagnosis or private medical conditions of patients could be disclosed to parties who do not have a right to access such information. Very recently, Hao et al. proposed a chaotic map-based authentication scheme for telecare medicine information systems in a recent issue of Journal of Medical Systems. They claimed that the authentication scheme can withstand various attacks and it is secure to be used in TMIS. In this paper, we show that this authentication scheme is vulnerable to key-compromise impersonation attacks, off-line password guessing attacks upon compromising of a smart card, and parallel session attacks. We also exploit weaknesses in the password change phase of the scheme to mount a denial-of-service attack. Our results show that this scheme cannot be used to provide security in a telecare medicine information system.
引用
收藏
页数:9
相关论文
共 50 条
  • [1] Security Analysis of a Chaotic Map-based Authentication Scheme for Telecare Medicine Information Systems
    Wei-Chuen Yau
    Raphael C.-W. Phan
    [J]. Journal of Medical Systems, 2013, 37
  • [2] A Chaotic Map-based Authentication Scheme for Telecare Medicine Information Systems
    Xinhong Hao
    Jiantao Wang
    Qinghai Yang
    Xiaopeng Yan
    Ping Li
    [J]. Journal of Medical Systems, 2013, 37
  • [3] A Chaotic Map-based Authentication Scheme for Telecare Medicine Information Systems
    Hao, Xinhong
    Wang, Jiantao
    Yang, Qinghai
    Yan, Xiaopeng
    Li, Ping
    [J]. JOURNAL OF MEDICAL SYSTEMS, 2013, 37 (02)
  • [4] A secure chaotic map-based remote authentication scheme for telecare medicine information systems
    Li, Xiong
    Wu, Fan
    Khan, Muhammad Khurram
    Xu, Lili
    Shen, Jian
    Jo, Minho
    [J]. FUTURE GENERATION COMPUTER SYSTEMS-THE INTERNATIONAL JOURNAL OF ESCIENCE, 2018, 84 : 149 - 159
  • [5] Cryptanalysis of a Chaotic Map-Based Authentication and Key Agreement Scheme for Telecare Medicine Information Systems
    Roy, Sandip
    Chatterjee, Santanu
    [J]. PROCEEDINGS OF THE 4TH INTERNATIONAL CONFERENCE ON FRONTIERS IN INTELLIGENT COMPUTING: THEORY AND APPLICATIONS (FICTA) 2015, 2016, 404 : 527 - 537
  • [6] Robust Chaotic Map-based Authentication and Key Agreement Scheme with Strong Anonymity for Telecare Medicine Information Systems
    Qi Jiang
    Jianfeng Ma
    Xiang Lu
    Youliang Tian
    [J]. Journal of Medical Systems, 2014, 38
  • [7] Robust Chaotic Map-based Authentication and Key Agreement Scheme with Strong Anonymity for Telecare Medicine Information Systems
    Jiang, Qi
    Ma, Jianfeng
    Lu, Xiang
    Tian, Youliang
    [J]. JOURNAL OF MEDICAL SYSTEMS, 2014, 38 (02)
  • [8] A Secure and Efficient Chaotic Map-Based Authenticated Key Agreement Scheme for Telecare Medicine Information Systems
    Mishra, Dheerendra
    Srinivas, Jangirala
    Mukhopadhyay, Sourav
    [J]. JOURNAL OF MEDICAL SYSTEMS, 2014, 38 (10)
  • [9] A Secure and Efficient Chaotic Map-Based Authenticated Key Agreement Scheme for Telecare Medicine Information Systems
    Dheerendra Mishra
    Jangirala Srinivas
    Sourav Mukhopadhyay
    [J]. Journal of Medical Systems, 2014, 38
  • [10] Security Enhancement of a Biometric based Authentication Scheme for Telecare Medicine Information Systems with Nonce
    Dheerendra Mishra
    Sourav Mukhopadhyay
    Saru Kumari
    Muhammad Khurram Khan
    Ankita Chaturvedi
    [J]. Journal of Medical Systems, 2014, 38