Recently Yang et al. proposed an authenticated encryption scheme based on elliptic curve cryptography. The scheme reduced computation cost by excluding the construction of sender's digital signatures. Furthermore, Yang et al. presented an e-payment system based on their authenticated encryption scheme. They claimed their scheme to resist replay, man-in-middle, impersonation and identity theft attack, while providing confidentiality, authenticity, integrity and privacy protection. However, in this paper we show that Yang et al.'s both authenticated encryption scheme and e-payment system are vulnerable to impersonation attack. An attacker after acquiring the public key and identities of the participants can easily masquerade as legitimate user. Then, we presented improvements over both Yang et al.'s authenticated encryption and e-payment schemes. We analyze the security of proposed schemes using widespread automated tool ProVerif. The proposed schemes are more secure and lightweight as compared with Yang et al.'s schemes.
机构:
Indian Inst Technol, Dept Math, Kharagpur 721302, W Bengal, India
Indian Inst Informat Technol, Dept Comp Sci & Engn, Sri City 517588, Andhra Pradesh, IndiaIndian Inst Technol, Dept Math, Kharagpur 721302, W Bengal, India
Odelu, Vanga
Banerjee, Soumya
论文数: 0引用数: 0
h-index: 0
机构:
Jadavpur Univ, Dept Informat Technol, Kolkata 700098, IndiaIndian Inst Technol, Dept Math, Kharagpur 721302, W Bengal, India
Banerjee, Soumya
Das, Ashok Kumar
论文数: 0引用数: 0
h-index: 0
机构:
Int Inst Informat Technol, Ctr Secur Theory & Algorithm Res, Hyderabad 500032, Andhra Pradesh, IndiaIndian Inst Technol, Dept Math, Kharagpur 721302, W Bengal, India
Das, Ashok Kumar
Chattopadhyay, Samiran
论文数: 0引用数: 0
h-index: 0
机构:
Jadavpur Univ, Dept Informat Technol, Kolkata 700098, IndiaIndian Inst Technol, Dept Math, Kharagpur 721302, W Bengal, India
Chattopadhyay, Samiran
Kumari, Saru
论文数: 0引用数: 0
h-index: 0
机构:
Ch Charan Singh Univ, Dept Math, Meerut, Uttar Pradesh, IndiaIndian Inst Technol, Dept Math, Kharagpur 721302, W Bengal, India
Kumari, Saru
Li, Xiong
论文数: 0引用数: 0
h-index: 0
机构:
Hunan Univ Sci & Technol, Sch Comp Sci & Engn, Xiangtan 411201, Peoples R China
Nanjing Univ Informat Sci & Technol, Nanjing 210044, Jiangsu, Peoples R ChinaIndian Inst Technol, Dept Math, Kharagpur 721302, W Bengal, India
Li, Xiong
Goswami, Adrijit
论文数: 0引用数: 0
h-index: 0
机构:
Indian Inst Technol, Dept Math, Kharagpur 721302, W Bengal, IndiaIndian Inst Technol, Dept Math, Kharagpur 721302, W Bengal, India
机构:
OP Jindal Global Univ, Jindal Global Business Sch, Sonipat 131001, Haryana, IndiaOP Jindal Global Univ, Jindal Global Business Sch, Sonipat 131001, Haryana, India
Srinivas, Jangirala
Mishra, Dheerendra
论文数: 0引用数: 0
h-index: 0
机构:
LNM Inst Informat Technol, Dept Math, Jaipur, Rajasthan, IndiaOP Jindal Global Univ, Jindal Global Business Sch, Sonipat 131001, Haryana, India
Mishra, Dheerendra
Mukhopadhyay, Sourav
论文数: 0引用数: 0
h-index: 0
机构:
Indian Inst Technol, Dept Math, Kharagpur 721302, W Bengal, IndiaOP Jindal Global Univ, Jindal Global Business Sch, Sonipat 131001, Haryana, India
Mukhopadhyay, Sourav
Kumari, Saru
论文数: 0引用数: 0
h-index: 0
机构:
Ch Charan Singh Univ, Dept Math, Meerut, Uttar Pradesh, IndiaOP Jindal Global Univ, Jindal Global Business Sch, Sonipat 131001, Haryana, India
Kumari, Saru
Guleria, Vandana
论文数: 0引用数: 0
h-index: 0
机构:
Birla Inst Technol, Dept Math, Ranchi, Bihar, IndiaOP Jindal Global Univ, Jindal Global Business Sch, Sonipat 131001, Haryana, India
Guleria, Vandana
INFORMATION TECHNOLOGY AND CONTROL,
2019,
48
(01):
: 129
-
145