A security enhanced mutual authentication scheme based on nonce and smart cards

被引:4
|
作者
Shi, Wenbo [1 ]
He, Debiao [2 ]
机构
[1] Northeastern Univ, Dept Elect Engn, Qinhuangdao 066004, Hebei, Peoples R China
[2] Wuhan Univ, Sch Math & Stat, Wuhan 430072, Hubei, Peoples R China
基金
中国国家自然科学基金;
关键词
mutual authentication; smart card; password; PASSWORD AUTHENTICATION; CRYPTANALYSIS;
D O I
10.1080/02533839.2014.912785
中图分类号
T [工业技术];
学科分类号
08 ;
摘要
There are many mutual authentication schemes proposed in the literature for preventing unauthorized parties from accessing resources in an insecure environment. However, most of them based on smart cards have assumed a tamper resistant condition for the smart card. To solve the problem, Huang, Liu, and Chen (2013) proposed a mutual authentication scheme based on nonce and smart cards and claimed that the adversary was not able to attack and access the system even if he could extract the data stored in the smart card. Unfortunately, in this paper, we will demonstrate that Huang et al.'s scheme is vulnerable to the offline password guessing attack and the privileged insider attack. We also propose an improved scheme to overcome the weaknesses.
引用
收藏
页码:1090 / 1095
页数:6
相关论文
共 50 条
  • [1] A new mutual authentication scheme based on nonce and smart cards
    Liu, Jia-Yong
    Zhou, An-Min
    Gao, Min-Xu
    [J]. COMPUTER COMMUNICATIONS, 2008, 31 (10) : 2205 - 2209
  • [2] Cryptanalysis of a mutual authentication scheme based on nonce and smart cards
    Sun, Da-Zhi
    Huai, Jin-Peng
    Sun, Ji-Zhou
    Li, Jian-Xin
    [J]. COMPUTER COMMUNICATIONS, 2009, 32 (06) : 1015 - 1017
  • [3] Designing a new mutual authentication scheme based on nonce and smart cards
    Huang, Hui-Feng
    Liu, Su-E
    Chen, Hui-Fang
    [J]. JOURNAL OF THE CHINESE INSTITUTE OF ENGINEERS, 2013, 36 (01) : 98 - 102
  • [4] A Novel Mutual Authentication Scheme Based on Fingerprint Biometric and Nonce Using Smart Cards
    Wang, De-song
    Li, Jian-ping
    [J]. INTERNATIONAL JOURNAL OF SECURITY AND ITS APPLICATIONS, 2011, 5 (04): : 1 - 12
  • [5] Security analysis of a nonce-based user authentication scheme using smart cards
    Nam, Junghyun
    Kim, Seungjoo
    Park, Sangjoon
    Won, Dongho
    [J]. IEICE TRANSACTIONS ON FUNDAMENTALS OF ELECTRONICS COMMUNICATIONS AND COMPUTER SCIENCES, 2007, E90A (01) : 299 - 302
  • [6] Efficient nonce-based remote user authentication scheme using smart cards
    Lee, SW
    Kim, HS
    Yoo, KY
    [J]. APPLIED MATHEMATICS AND COMPUTATION, 2005, 167 (01) : 355 - 361
  • [7] A SECURITY ENHANCED REMOTE USER AUTHENTICATION SCHEME USING SMART CARDS
    Yoon, Eun-Jun
    Kim, Sung-Ho
    Yoo, Kee-Young
    [J]. INTERNATIONAL JOURNAL OF INNOVATIVE COMPUTING INFORMATION AND CONTROL, 2012, 8 (5B): : 3661 - 3675
  • [8] A security enhanced timestamp-based password authentication scheme using smart cards
    Pathan, Al-Sakib Khan
    Hong, Choong Seon
    [J]. IEICE TRANSACTIONS ON INFORMATION AND SYSTEMS, 2007, E90D (11) : 1885 - 1888
  • [9] An Enhanced Remote User Authentication Scheme Providing Mutual Authentication and Key Agreement with Smart Cards
    Li, Chun-Ta
    [J]. FIFTH INTERNATIONAL CONFERENCE ON INFORMATION ASSURANCE AND SECURITY, VOL 1, PROCEEDINGS, 2009, : 517 - 520
  • [10] Trusted mutual authentication scheme with smart cards and passwords
    Yang, Li
    Ma, Jian-Feng
    [J]. Dianzi Keji Daxue Xuebao/Journal of the University of Electronic Science and Technology of China, 2011, 40 (01): : 128 - 133