Cryptanalysis and security enhancement of a remote user authentication scheme using smart cards

来源 :The Journal of China Universities of Posts and Telecommunica | 被引量 : 0次 | 上传用户:yinqing68
下载到本地 , 更方便阅读
声明 : 本文档内容版权归属内容提供方 , 如果您对本文有版权争议 , 可与客服联系进行内容授权或下架
论文部分内容阅读
With the broad implementations of the electronic business and government applications,robust system security and strong privacy protection have become essential requirements for remote user authentication schemes.Recently,Chen et al.pointed out that Wang et al.’s scheme is vulnerable to the user impersonation attack and parallel session attack,and proposed an enhanced version to overcome the identified security flaws.In this paper,however,we show that Chen et al.’s scheme still cannot achieve the claimed security goals and report its following problems:(1) It suffers from the offline password guessing attack,key compromise impersonation attack and known key attack;(2) It fails to provide forward secrecy;(3) It is not easily repairable.As our main contribution,a robust dynamic ID-based scheme based on non-tamper resistance assumption of the smart cards is presented to cope with the aforementioned defects,while preserving the merits of different related schemes.The analysis demonstrates that our scheme meets all the proposed criteria and eliminates several grave security threats that are difficult to be tackled at the same time in previous scholarship. With the broad implementations of the electronic business and government applications, robust system security and strong privacy protection have become essential requirements for remote user authentication schemes. Recipiently, Chen et al. Pointed out that Wang et al.’s scheme is vulnerable to the user impersonation attack and parallel session attack, and proposed an enhanced version to overcome the identified security flaws.In this paper, however, we show that Chen et al.’s scheme still can not achieve the claimed security goals and report its following problems: (1 ) It suffers from the offline password guessing attack, key compromise impersonation attack and known key attack; (2) It fails to provide forward secrecy; (3) It is not readily repairable. As our main contribution, a robust dynamic ID-based scheme based on non-tamper resistance assumption of the smart cards is presented to cope with thePivance, while preserving the merits of different related schemes. the analysis demonstrates that our scheme meets all the proposed criteria and eliminates several grave security threats that are difficult to be tackled at the same time in previous scholarship.
其他文献
A comprehensive study on Raman spectroscopy with different excitation wavelengths, sample sizes, and sample shapes for optic phonons (OPs) and acoustic phonons
高尔基城汽车厂对汽车行驶时传动系产生的轴向力对壳体件(离合器壳、气缸体和变速箱壳体)强度以及对发动机悬置零件强度的影响进行了研究。对装有排量4250厘米~3的 V 型八缸
同心县水务局是全国文明单位,是同心县人民政府的水利行政主管部门,主要负责全县水利行政执法、水资源统一管理、防汛抗旱、扬黄灌溉、水土保持、人畜饮水、农田基本建设等工
We numerically study the artificial spectral-filtering effect in dissipative soliton fiber lasers without intracavity spectral filters. It is found that in diss
为了使本刊办得活泼一些,及时反映读者的意见和要求,我们开辟了“读者信箱”这个栏目,望广大防腐蚀工作者踊跃投稿.请您把需要解答的有关石油化工腐蚀与防护方面的问题,和对
由牛蹄塘组生物群、台江生物群、凯里生物群组成贵州寒武纪布尔吉斯页岩型生物群。牛蹄塘组生物群由德国柏林工业大学和贵州工业大学于1998年在贵州北部下寒武统牛蹄塘组黑色泥页
临城县政协常委赵占超,1996年从河北省工程技术高等专科学校毕业后,分配到县水务局工作至今,一直从事临城县水务局的防汛和水利工程建设。“献身水利事业、造福家乡人民”是
患儿,女,5岁。因活动后四周青紫5年,心悸、胸闷、气短半个月伴发热、咳嗽入院。其母妊娠两个月时有“感冒”病史。父母非近亲婚配。体检:体温38.6℃,脉搏118次/分,呼吸38次/分。唇、指
前言2D3.5-20/8型无润滑空气压缩机压缩的空气较洁净不含油,用于仪表控制及其它需要洁净空气的场合,在化工厂起着重要的作用。但冷却水系统易结垢,导致各种故障。有效的清洗是预防故障,维护
An Ni Schottky contact on the AlGaN/GaN heterostructure is fabricated. The flat-band voltage for the Schottky contact on the AlGaN/GaN heterostructure is obtain