首页> 外文会议>International Conference on Information Science, Computer Technology and Transportation >Security Analysis of Improved User Authentication Schemes Using Smart Cards
【24h】

Security Analysis of Improved User Authentication Schemes Using Smart Cards

机译:使用智能卡改进用户认证方案的安全分析

获取原文

摘要

Smart card based remote user authentication is a broadly adopted method of authentication within insecure communication channels. Recently, Wen and Li proposed a dynamic ID-based remote user authentication protocol with key agreement. Unfortunately, Kim, Nam and Won pointed out that Wen and Li's authentication protocol suffers from leakage of some key information to an adversary and a man-in-the-middle attack. Kim et al. proposed an improved ID-based remote user authentication scheme. In this work, we revisit Kim et al.'s protocol. Our results indicate that their scheme is vulnerable to smart card loss attack, stolen verifier attack and privileged insider attack. Furthermore, the authentication protocol cannot provide perfect forward secrecy and user anonymity. These weaknesses also exist in Wen and Li's authentication scheme.
机译:基于智能卡的远程用户身份验证是不安全通信通道内的广泛采用的身份验证方法。最近,Wen和Li提出了一种带有密钥协议的基于动态的ID的远程用户身份验证协议。不幸的是,金,NAM和赢得指出,文和李的认证协议遭受了一些关键信息泄露给对手和中间人攻击。 Kim等人。提出了一种改进的基于ID的远程用户身份验证方案。在这项工作中,我们重新审视Kim等人。的协议。我们的结果表明,他们的计划容易受到智能卡损失攻击,偷窃验证者攻击和特权的内幕攻击。此外,身份验证协议不能提供完美的前向保密和用户匿名性。这些弱点也存在于文和李的认证方案中。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号