An Improved Authentication Scheme for Electroni Payment Systems in Global Mobility Networks

被引:5
作者
Heydari, Mohammad [1 ]
Sadough, S. Mohammad-Sajad [1 ]
Chaudhry, Shehzad Ashraf [2 ]
Farash, Mohammad Sabzinejad [3 ]
Aref, Mohammad Reza [4 ]
机构
[1] Shahid Beheshti Univ, Dept Elect Engn, Tehran, Iran
[2] Int Islamic Univ, Dept Comp Sci & Software Engn, Islamabad, Pakistan
[3] Kharazmi Univ, Dept Math & Comp Sci, Tehran, Iran
[4] Sharif Univ, Dept Elect Engn, Tehran, Iran
来源
INFORMATION TECHNOLOGY AND CONTROL | 2015年 / 44卷 / 04期
关键词
authenticated encryption; e-payment system; elliptic curve cryptography; digital signature; signcryption; SECURE; PROTOCOL; ENCRYPTION;
D O I
10.5755/j01.itc.44.4.9197
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Recently Yang et al. proposed an authenticated encryption scheme based on elliptic curve cryptography. The scheme reduced computation cost by excluding the construction of sender's digital signatures. Furthermore, Yang et al. presented an e-payment system based on their authenticated encryption scheme. They claimed their scheme to resist replay, man-in-middle, impersonation and identity theft attack, while providing confidentiality, authenticity, integrity and privacy protection. However, in this paper we show that Yang et al.'s both authenticated encryption scheme and e-payment system are vulnerable to impersonation attack. An attacker after acquiring the public key and identities of the participants can easily masquerade as legitimate user. Then, we presented improvements over both Yang et al.'s authenticated encryption and e-payment schemes. We analyze the security of proposed schemes using widespread automated tool ProVerif. The proposed schemes are more secure and lightweight as compared with Yang et al.'s schemes.
引用
收藏
页码:387 / 403
页数:17
相关论文
共 50 条
[21]   A robust biometrics based three-factor authentication scheme for Global Mobility Networks in smart city [J].
Li, Xiong ;
Niu, Jianwei ;
Kumari, Saru ;
Wu, Fan ;
Choo, Kim-Kwang Raymond .
FUTURE GENERATION COMPUTER SYSTEMS-THE INTERNATIONAL JOURNAL OF ESCIENCE, 2018, 83 :607-618
[22]   Enhanced secure mutual authentication and key agreement scheme with user anonymity in ubiquitous global mobility networks [J].
Gope, Prosanta .
JOURNAL OF INFORMATION SECURITY AND APPLICATIONS, 2017, 35 :160-167
[23]   AUGChain: blockchain-based mobile user authentication scheme in global mobility network [J].
Palit, Sudip Kumar ;
Chakraborty, Mohuya ;
Chakraborty, Subhalaxmi .
JOURNAL OF SUPERCOMPUTING, 2022, 78 (05) :6788-6816
[24]   User Authentication with Anonymity for Roaming Service with Smart Cards in Global Mobility Networks [J].
Chen, Chia-Chen ;
Huang, Hui-Feng ;
Liu, Cheng-Yi ;
Lai, Chi-Wen .
AD HOC & SENSOR WIRELESS NETWORKS, 2014, 20 (1-2) :5-19
[25]   Improved Privacy-Preserving Authentication Scheme for Roaming Service in Mobile Networks [J].
Wang, Ding ;
Wang, Ping ;
Liu, Jing .
2014 IEEE WIRELESS COMMUNICATIONS AND NETWORKING CONFERENCE (WCNC), 2014, :3136-3141
[26]   An improved authentication scheme for mobile satellite communication systems [J].
Zhang, Yuanyuan ;
Chen, Jianhua ;
Huang, Baojun .
INTERNATIONAL JOURNAL OF SATELLITE COMMUNICATIONS AND NETWORKING, 2015, 33 (02) :135-146
[27]   An efficient mutual authentication and key agreement scheme preserving strong anonymity of the mobile user in global mobility networks [J].
Gope, Prosanta ;
Hwang, Tzonelih .
JOURNAL OF NETWORK AND COMPUTER APPLICATIONS, 2016, 62 :1-8
[28]   An Improved Multifactor User Authentication Scheme for Wireless Sensor Networks [J].
Tyagi, Gaurav ;
Kumar, Rahul .
WIRELESS PERSONAL COMMUNICATIONS, 2022, 123 (02) :1311-1343
[29]   An improved authentication and security scheme for LTE/LTE-A networks [J].
Prabhat Kumar Panda ;
Sudipta Chattopadhyay .
Journal of Ambient Intelligence and Humanized Computing, 2020, 11 :2163-2185
[30]   An improved authentication and security scheme for LTE/LTE-A networks [J].
Panda, Prabhat Kumar ;
Chattopadhyay, Sudipta .
JOURNAL OF AMBIENT INTELLIGENCE AND HUMANIZED COMPUTING, 2020, 11 (05) :2163-2185