A Novel Provably-Secure ECC-based Authentication and Key Management Protocol for Telecare Medical Information Systems

被引:0
|
作者
Amintoosi, Haleh [1 ]
Nikooghadam, Mahdi [1 ]
机构
[1] Ferdowsi Univ Mashhad, Comp Engn Dept, Fac Engn, Mashhad, Razavi Khorasan, Iran
来源
2019 9TH INTERNATIONAL CONFERENCE ON COMPUTER AND KNOWLEDGE ENGINEERING (ICCKE 2019) | 2019年
关键词
Authentication; Key Agreement; Healthcare; TMIS; Cryptanalysis; MUTUAL AUTHENTICATION; AGREEMENT SCHEME; HEALTH-CARE;
D O I
10.1109/iccke48569.2019.8965036
中图分类号
TP18 [人工智能理论];
学科分类号
081104 ; 0812 ; 0835 ; 1405 ;
摘要
Telecare medical information systems are becoming more and more popular due to the provision of delivering health services, including remote access to health profiles for doctors, staff, and patients. Since these systems are installed entirely on the Internet, they are faced with different security and privacy threats. So, a significant challenge is the establishment of a secure key agreement and authentication procedure between the medical servers and patients. Recently, an ECC-based authentication and key agreement scheme for telecare medical systems in the smart city has been proposed by Khatoon et.al. In this paper, at first, we descriptively analyze Khatoon et al.'s protocol and demonstrate that it is vulnerable against known-session-specific temporary information attacks and cannot satisfy perfect forward secrecy. Next, we propose a provably secure and efficient authentication and key agreement protocol using Elliptic Curve Cryptography (ECC). We informally analyze the security of the proposed protocol, and prove that it can satisfy perfect forward secrecy and resist known attacks such as user/server impersonation attack. We also simulate and formally analyze the security of the protocol using the Scyther tool. The results show its robustness against different types of attacks.
引用
收藏
页码:85 / 90
页数:6
相关论文
共 50 条
  • [41] An Identity-Based Authentication Protocol for the Telecare Medical Information System (TMIS) Using a Physically Unclonable Function
    Shamshad, Salman
    Ayub, Muhammad Faizan
    Mahmood, Khalid
    Rana, Minahil
    Shafiq, Akasha
    Rodrigues, Joel J. P. C.
    IEEE SYSTEMS JOURNAL, 2022, 16 (03): : 4831 - 4838
  • [42] A Privacy Preserving Secure and Efficient Authentication Scheme for Telecare Medical Information Systems
    Raghavendra Mishra
    Amit Kumar Barnwal
    Journal of Medical Systems, 2015, 39
  • [43] Cryptanalysis and Improvement of an Improved Two Factor Authentication Protocol for Telecare Medical Information Systems
    Chaudhry, Shehzad Ashraf
    Naqvi, Husnain
    Shon, Taeshik
    Sher, Muhammad
    Farash, Mohammad Sabzinejad
    JOURNAL OF MEDICAL SYSTEMS, 2015, 39 (06)
  • [44] A Privacy Preserving Secure and Efficient Authentication Scheme for Telecare Medical Information Systems
    Mishra, Raghavendra
    Barnwal, Amit Kumar
    JOURNAL OF MEDICAL SYSTEMS, 2015, 39 (05)
  • [45] Cryptanalysis and Improvement of an Improved Two Factor Authentication Protocol for Telecare Medical Information Systems
    Shehzad Ashraf Chaudhry
    Husnain Naqvi
    Taeshik Shon
    Muhammad Sher
    Mohammad Sabzinejad Farash
    Journal of Medical Systems, 2015, 39
  • [46] Cryptanalysis and Improvement of "An Efficient and Secure Dynamic ID-based Authentication Scheme for Telecare Medical Information Systems"
    Khan, Muhammad Khurram
    Kumari, Saru
    SECURITY AND COMMUNICATION NETWORKS, 2014, 7 (02) : 399 - 408
  • [47] Design of Secure Authentication Protocol for Cloud-Assisted Telecare Medical Information System Using Blockchain
    Son, Seunghwan
    Lee, Joonyoung
    Kim, Myeonghyun
    Yu, Sungjin
    Das, Ashok Kumar
    Park, Youngho
    IEEE ACCESS, 2020, 8 : 192177 - 192191
  • [48] An Efficient and Provably Secure ECC-Based Conditional Privacy-Preserving Authentication for Vehicle-to-Vehicle Communication in VANETs
    Ali, Ikram
    Chen, Yong
    Ullah, Niamat
    Kumar, Rajesh
    He, Wen
    IEEE TRANSACTIONS ON VEHICULAR TECHNOLOGY, 2021, 70 (02) : 1278 - 1291
  • [49] Secure Delegation-Based Authentication for Telecare Medicine Information Systems
    Tan, Zuowen
    IEEE ACCESS, 2018, 6 : 26091 - 26110
  • [50] A secure and efficient ECC-based user anonymity-preserving session initiation authentication protocol using smart card
    Mishra, Dheerendra
    Das, Ashok Kumar
    Mukhopadhyay, Sourav
    PEER-TO-PEER NETWORKING AND APPLICATIONS, 2016, 9 (01) : 171 - 192