Understanding Security Failures of Two Authentication and Key Agreement Schemes for Telecare Medicine Information Systems

被引:0
|
作者
Dheerendra Mishra
机构
[1] Indian Institute of Technology,Department of Mathematics
来源
关键词
Telecare medicine information system; Authentication; Key agreement; Chaotic maps; Elliptic curve cryptography; Cryptanalysis;
D O I
暂无
中图分类号
学科分类号
摘要
Smart card based authentication and key agreement schemes for telecare medicine information systems (TMIS) enable doctors, nurses, patients and health visitors to use smart cards for secure login to medical information systems. In recent years, several authentication and key agreement schemes have been proposed to present secure and efficient solution for TMIS. Most of the existing authentication schemes for TMIS have either higher computation overhead or are vulnerable to attacks. To reduce the computational overhead and enhance the security, Lee recently proposed an authentication and key agreement scheme using chaotic maps for TMIS. Xu et al. also proposed a password based authentication and key agreement scheme for TMIS using elliptic curve cryptography. Both the schemes provide better efficiency from the conventional public key cryptography based schemes. These schemes are important as they present an efficient solution for TMIS. We analyze the security of both Lee’s scheme and Xu et al.’s schemes. Unfortunately, we identify that both the schemes are vulnerable to denial of service attack. To understand the security failures of these cryptographic schemes which are the key of patching existing schemes and designing future schemes, we demonstrate the security loopholes of Lee’s scheme and Xu et al.’s scheme in this paper.
引用
下载
收藏
相关论文
共 50 条
  • [31] Security Enhancement of a Biometric based Authentication Scheme for Telecare Medicine Information Systems with Nonce
    Mishra, Dheerendra
    Mukhopadhyay, Sourav
    Kumari, Saru
    Khan, Muhammad Khurram
    Chaturvedi, Ankita
    JOURNAL OF MEDICAL SYSTEMS, 2014, 38 (05)
  • [32] An Enhanced Version of Key Agreement System with User Privacy for Telecare Medicine Information Systems
    Limbasiya, Trupil
    Doshi, Nishant
    PROCEEDINGS OF FIRST INTERNATIONAL CONFERENCE ON INFORMATION AND COMMUNICATION TECHNOLOGY FOR INTELLIGENT SYSTEMS: VOL 1, 2016, 50 : 137 - 145
  • [33] On the Security Flaws in ID-based Password Authentication Schemes for Telecare Medical Information Systems
    Dheerendra Mishra
    Journal of Medical Systems, 2015, 39
  • [34] On the Security Flaws in ID-based Password Authentication Schemes for Telecare Medical Information Systems
    Mishra, Dheerendra
    JOURNAL OF MEDICAL SYSTEMS, 2015, 39 (01)
  • [35] Strong Authentication Scheme for Telecare Medicine Information Systems
    Pu, Qiong
    Wang, Jian
    Zhao, Rongyong
    JOURNAL OF MEDICAL SYSTEMS, 2012, 36 (04) : 2609 - 2619
  • [36] An Improved Authentication Scheme for Telecare Medicine Information Systems
    Wei, Jianghong
    Hu, Xuexian
    Liu, Wenfen
    JOURNAL OF MEDICAL SYSTEMS, 2012, 36 (06) : 3597 - 3604
  • [37] An Improved Authentication Scheme for Telecare Medicine Information Systems
    Jianghong Wei
    Xuexian Hu
    Wenfen Liu
    Journal of Medical Systems, 2012, 36 : 3597 - 3604
  • [38] An Efficient Authentication Scheme for Telecare Medicine Information Systems
    Zhu, Zhian
    JOURNAL OF MEDICAL SYSTEMS, 2012, 36 (06) : 3833 - 3838
  • [39] An Efficient Authentication Scheme for Telecare Medicine Information Systems
    Zhian Zhu
    Journal of Medical Systems, 2012, 36 : 3833 - 3838
  • [40] Strong Authentication Scheme for Telecare Medicine Information Systems
    Qiong Pu
    Jian Wang
    Rongyong Zhao
    Journal of Medical Systems, 2012, 36 : 2609 - 2619