Cryptanalysis and Improvement of Authentication and Key Agreement Protocols for Telecare Medicine Information Systems

被引:0
|
作者
SK Hafizul Islam
Muhammad Khurram Khan
机构
[1] Birla Institute of Technology and Science,Department of Computer Science and Information Systems
[2] King Saud University,Center of Excellence in Information Assurance
来源
关键词
Anonymity; Authentication; Random oracle model; Smartcard; Cryptanalysis; Hash function; Password;
D O I
暂无
中图分类号
学科分类号
摘要
Recently, many authentication protocols have been presented using smartcard for the telecare medicine information system (TMIS). In 2014, Xu et al. put forward a two-factor mutual authentication with key agreement protocol using elliptic curve cryptography (ECC). However, the authors have proved that the protocol is not appropriate for practical use as it has many problems (1) it fails to achieve strong authentication in login and authentication phases; (2) it fails to update the password correctly in the password change phase; (3) it fails to provide the revocation of lost/stolen smartcard; and (4) it fails to protect the strong replay attack. We then devised an anonymous and provably secure two-factor authentication protocol based on ECC. Our protocol is analyzed with the random oracle model and demonstrated to be formally secured against the hardness assumption of computational Diffie-Hellman problem. The performance evaluation demonstrated that our protocol outperforms from the perspective of security, functionality and computation costs over other existing designs.
引用
收藏
相关论文
共 50 条
  • [1] Cryptanalysis and Improvement of Authentication and Key Agreement Protocols for Telecare Medicine Information Systems
    Islam, S. K. Hafizul
    Khan, Muhammad Khurram
    [J]. JOURNAL OF MEDICAL SYSTEMS, 2014, 38 (10)
  • [2] Cryptanalysis of a Chaotic Map-Based Authentication and Key Agreement Scheme for Telecare Medicine Information Systems
    Roy, Sandip
    Chatterjee, Santanu
    [J]. PROCEEDINGS OF THE 4TH INTERNATIONAL CONFERENCE ON FRONTIERS IN INTELLIGENT COMPUTING: THEORY AND APPLICATIONS (FICTA) 2015, 2016, 404 : 527 - 537
  • [3] Cryptanalysis and improvement of an authentication scheme for telecare medical information systems
    Zhao, Yun
    Zhang, Chunming
    [J]. INTERNATIONAL JOURNAL OF ELECTRONIC SECURITY AND DIGITAL FORENSICS, 2014, 6 (03) : 157 - 168
  • [4] A Lightweight Authentication and Key Agreement Scheme for Telecare Medicine Information System
    Lo, Jung-Wen
    Wu, Chun-Yueh
    Chiou, Shu-Fen
    [J]. JOURNAL OF INTERNET TECHNOLOGY, 2020, 21 (01): : 263 - 272
  • [5] A Secure Authentication and Key Agreement Protocol for Telecare Medicine Information System
    Li, Xuanang
    Zheng, Zhiming
    Zhang, Xiao
    [J]. 2015 9TH INTERNATIONAL CONFERENCE ON NEXT GENERATION MOBILE APPLICATIONS, SERVICES AND TECHNOLOGIES (NGMAST 2015), 2015, : 275 - 281
  • [6] A Robust and Anonymous Two Factor Authentication and Key Agreement Protocol for Telecare Medicine Information Systems
    Xiong, Hu
    Tao, Junyi
    Chen, Yanan
    [J]. JOURNAL OF MEDICAL SYSTEMS, 2016, 40 (11)
  • [7] Understanding Security Failures of Two Authentication and Key Agreement Schemes for Telecare Medicine Information Systems
    Dheerendra Mishra
    [J]. Journal of Medical Systems, 2015, 39
  • [8] On the Security of a Two-Factor Authentication and Key Agreement Scheme for Telecare Medicine Information Systems
    Hamed Arshad
    Vahid Teymoori
    Morteza Nikooghadam
    Hassan Abbassi
    [J]. Journal of Medical Systems, 2015, 39
  • [9] A Secure and Efficient Authentication and Key Agreement Scheme Based on ECC for Telecare Medicine Information Systems
    Xin Xu
    Ping Zhu
    Qiaoyan Wen
    Zhengping Jin
    Hua Zhang
    Lian He
    [J]. Journal of Medical Systems, 2014, 38
  • [10] A Robust and Anonymous Two Factor Authentication and Key Agreement Protocol for Telecare Medicine Information Systems
    Hu Xiong
    Junyi Tao
    Yanan Chen
    [J]. Journal of Medical Systems, 2016, 40