Efficient Two-Factor Authentication Protocol Using Password and Smart Card

被引:2
作者
Liu, Fenghua [1 ]
机构
[1] Xuzhou Inst Technol, Sch Math & Phys Sci, Xuzhou 221008, Jiangsu, Peoples R China
关键词
authentication; smart card; forward secrecy; off-line password guessing attack; Privileged administrator;
D O I
10.4304/jcp.8.12.3257-3263
中图分类号
TP39 [计算机的应用];
学科分类号
081203 ; 0835 ;
摘要
Two-factor authentication using password and smart card could reduce the risk than the use of a password alone. Recently, Chen et al. proposed a two-factor remote user authentication protocol using password and smart card and provide the criteria of authentication protocols. They claimed their protocol is secure against certain known attacks. In this paper, the authors showed that Chen et al.'s scheme is still vulnerable to the off-line password guessing attack, privileged administrator attack, key control attack and lacks of forward security. To solve these security problems, we propose an efficient two-factor authentication and key agreement protocol..
引用
收藏
页码:3257 / 3263
页数:7
相关论文
共 50 条
  • [21] An Improved Password Authentication Scheme for Smart Card
    Tsai, Cheng-Yi
    Pan, Chiu-Shu
    Hwang, Min-Shiang
    RECENT DEVELOPMENTS IN INTELLIGENT SYSTEMS AND INTERACTIVE APPLICATIONS (IISA2016), 2017, 541 : 194 - 199
  • [22] An In-Depth Analysis of Password Managers and Two-Factor Authentication Tools
    Jubur, Mohammed
    Shrestha, Prakash
    Saxena, Nitesh
    ACM COMPUTING SURVEYS, 2025, 57 (05)
  • [23] Robust password and smart card based authentication scheme with smart card revocation
    Xie Q.
    Liu W.-H.
    Wang S.-B.
    Hu B.
    Dong N.
    Yu X.-Y.
    Journal of Shanghai Jiaotong University (Science), 2014, 19 (04) : 418 - 424
  • [24] Breaking a smart card based secure password authentication scheme
    Yoon, Eun-Jun
    Yoo, Kee-Young
    PROCEEDINGS OF THE SECOND INTERNATIONAL CONFERENCE ON INFORMATION SECURITY AND ASSURANCE, 2008, : 83 - +
  • [25] Robust Password and Smart Card Based Authentication Scheme with Smart Card Revocation
    谢琪
    刘文浩
    王圣宝
    胡斌
    董娜
    于秀源
    JournalofShanghaiJiaotongUniversity(Science), 2014, 19 (04) : 418 - 424
  • [26] Efficient and secure two-factor dynamic ID-based password authentication scheme with provable security
    Mishra, Dheerendra
    CRYPTOLOGIA, 2018, 42 (02) : 146 - 175
  • [27] A robust ElGamal-based password-authentication protocol using smart card for client-server communication
    Maitra, Tanmoy
    Obaidat, Mohammad S.
    Amin, Ruhul
    Islam, S. K. Hafizul
    Chaudhry, Shehzad Ashraf
    Giri, Debasis
    INTERNATIONAL JOURNAL OF COMMUNICATION SYSTEMS, 2017, 30 (11)
  • [28] Secure and Efficient Two-Factor Authentication Protocol Using RSA Signature for Multi-server Environments
    Xu, Zhiqiang
    He, Debiao
    Huang, Xinyi
    INFORMATION AND COMMUNICATIONS SECURITY, ICICS 2017, 2018, 10631 : 595 - 605
  • [29] Improvements of a Remote User Password Authentication Scheme using Smart Card
    Shin, Kwang Cheul
    Huh, Won Whoi
    INTERNATIONAL JOURNAL OF SECURITY AND ITS APPLICATIONS, 2013, 7 (04): : 119 - 126
  • [30] Two-factor remote authentication protocol and BAN Analysis
    Zhang, Lihua
    Bai, Erfei
    2010 SECOND ETP/IITA WORLD CONGRESS IN APPLIED COMPUTING, COMPUTER SCIENCE, AND COMPUTER ENGINEERING, 2010, : 411 - 414