首页> 外文会议>Annual IFIP WG 11.3 conference on data and applications security and privacy >Secure Password-Based Remote User Authentication Scheme with Non-tamper Resistant Smart Cards
【24h】

Secure Password-Based Remote User Authentication Scheme with Non-tamper Resistant Smart Cards

机译:具有防篡改智能卡的基于密码的安全远程用户身份验证方案

获取原文

摘要

In DBSec'll, Li et al. showed that Kim and Chung's password-based remote user authentication scheme is vulnerable to various attacks if the smart card is non-tamper resistant. Consequently, an improved version was proposed and claimed that it is secure against smart card security breach attacks. In this paper, however, we will show that Li et al.'s scheme still cannot withstand offline password guessing attack under the non-tamper resistance assumption of the smart card. In addition, their scheme is also prone to denial of service attack and fails to provide user anonymity and forward secrecy. Therefore, a robust scheme with a brief analysis is presented to overcome the identified drawbacks.
机译:Li等人在DBSec'll中。结果表明,如果智能卡不防篡改,Kim and Chung的基于密码的远程用户身份验证方案很容易受到各种攻击。因此,提出了一种改进的版本,并声称它可以防止智能卡安全漏洞攻击。但是,在本文中,我们将显示Li等人的方案在智能卡的防篡改假设下仍无法承受脱机密码猜测攻击。此外,他们的方案还容易遭到拒绝服务攻击,并且无法提供用户匿名性和前向保密性。因此,提出了一种具有简要分析的鲁棒方案,以克服已确定的缺点。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号