Security improvements of dynamic ID-based remote user authentication scheme with session key agreement

作者: Young-Hwa An

DOI:

关键词:

摘要: Password-based authentication schemes have been widely adopted to protect resources from unauthorized access. In 2010, Khan et al. proposed an efficient and secure dynamic ID-based scheme overcome the weaknesses of Wang al.'s scheme. this paper, we show that is vulnerable password guessing attack, forgery does not provide user anonymity. Also, propose improved security drawbacks anonymity session key agreement, even if secret values stored in smart card revealed. As a result, relatively more than related terms security.

参考文章(13)
W.-C. KU, Impersonation Attack on a Dynamic ID-Based Remote User Authentication Scheme Using Smart Cards IEICE Transactions on Communications. ,vol. E88-B, pp. 2165- 2167 ,(2005) , 10.1093/IETCOM/E88-B.5.2165
Yan-yan Wang, Jia-yong Liu, Feng-xia Xiao, Jing Dan, A more efficient and secure dynamic ID-based remote user authentication scheme Computer Communications. ,vol. 32, pp. 583- 585 ,(2009) , 10.1016/J.COMCOM.2008.11.008
Muhammad Khurram Khan, Soo-Kyun Kim, Khaled Alghathbar, Cryptanalysis and security enhancement of a 'more efficient & secure dynamic ID-based remote user authentication scheme' Computer Communications. ,vol. 34, pp. 305- 309 ,(2011) , 10.1016/J.COMCOM.2010.02.011
Chun-Ta Li, Min-Shiang Hwang, An efficient biometrics-based remote user authentication scheme using smart cards Journal of Network and Computer Applications. ,vol. 33, pp. 1- 5 ,(2010) , 10.1016/J.JNCA.2009.08.001
Eun-Jun Yoon, Eun-Kyung Ryu, Kee-Young Yoo, Further improvement of an efficient password based remote user authentication scheme using smart cards IEEE Transactions on Consumer Electronics. ,vol. 50, pp. 612- 614 ,(2004) , 10.1109/TCE.2004.1309437
T.S. Messerges, E.A. Dabbish, R.H. Sloan, Examining smart-card security under the threat of power analysis attacks IEEE Transactions on Computers. ,vol. 51, pp. 541- 552 ,(2002) , 10.1109/TC.2002.1004593
I-En Liao, Cheng-Chi Lee, Min-Shiang Hwang, Security enhancement for a dynamic ID-based remote user authentication scheme international conference on next generation web services practices. pp. 437- 440 ,(2005) , 10.1109/NWESP.2005.67
M.L. Das, A. Saxena, V.P. Gulati, A dynamic ID-based remote user authentication scheme IEEE Transactions on Consumer Electronics. ,vol. 50, pp. 629- 631 ,(2004) , 10.1109/TCE.2004.1309441
Paul Kocher, Joshua Jaffe, Benjamin Jun, Differential Power Analysis international cryptology conference. ,vol. 1666, pp. 388- 397 ,(1999) , 10.1007/3-540-48405-1_25