...
首页> 外文期刊>Journal of Physics: Conference Series >Security Analysis of Improved User Authentication Schemes Using Smart Cards
【24h】

Security Analysis of Improved User Authentication Schemes Using Smart Cards

机译:使用智能卡的改进的用户身份验证方案的安全性分析

获取原文
           

摘要

Smart card based remote user authentication is a broadly adopted method of authentication within insecure communication channels. Recently, Wen and Li proposed a dynamic ID-based remote user authentication protocol with key agreement. Unfortunately, Kim, Nam and Won pointed out that Wen and Li's authentication protocol suffers from leakage of some key information to an adversary and a man-in-the-middle attack. Kim et al. proposed an improved ID-based remote user authentication scheme. In this work, we revisit Kim et al.'s protocol. Our results indicate that their scheme is vulnerable to smart card loss attack, stolen verifier attack and privileged insider attack. Furthermore, the authentication protocol cannot provide perfect forward secrecy and user anonymity. These weaknesses also exist in Wen and Li's authentication scheme.
机译:基于智能卡的远程用户身份验证是不安全的通信通道中广泛采用的身份验证方法。最近,Wen和Li提出了一种具有密钥协议的基于动态ID的远程用户认证协议。不幸的是,Kim,Nam和Won指出,Wen和Li的身份验证协议遭受一些关键信息泄露给对手和中间人攻击。 Kim等。提出了一种改进的基于ID的远程用户身份验证方案。在这项工作中,我们将重新审视Kim等人的协议。我们的结果表明,它们的方案容易受到智能卡丢失攻击,被盗验证程序攻击和特权内部人员攻击的攻击。而且,认证协议不能提供完美的前向保密性和用户匿名性。这些弱点在Wen和Li的身份验证方案中也存在。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号