An Improvement of Sood, et al. 's Authentication Scheme using Smart Card

被引:0
作者
Shin, Kwang Cheul [1 ]
Cho, Jung Gil [2 ]
机构
[1] Sungkyul Univ, Div Ind Management Engn, Anyang, Gyeonggi Do 430742, South Korea
[2] Sungkyul Univ, Div Comp Sci Engn, 147-2,Anyang 8 Dong, Anyang, Gyeonggi Do 430742, South Korea
来源
INTERNATIONAL JOURNAL OF SECURITY AND ITS APPLICATIONS | 2013年 / 7卷 / 03期
关键词
Authentication; Smart Card; Forgery Attack; Anonymity;
D O I
暂无
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
In 2004, Das, et al.'s proposed the dynamic ID-based remote user authentication scheme to protect the user's anonymity. However, in 2005, Chein, et al.'s and Liao, et al.'s demonstrated that Das, et al.'s scheme failed to protecting user's anonymity. In addition, they showed that it was susceptible to guessing attack, so that it might expose the password to the remote system. In 2006, Liou, et al.'s proposed a new scheme which aimed to resolve the security vulnerabilities of Das, et al's scheme such as mutual authentication and malicious server attacks. However, in 2010, Sood, et al.'s demonstrated that Liou, et al's scheme is susceptible to impersonal attack, malicious user attack, man in the middle attack and offline password guessing attack. To resolve those vulnerabilities, Sood, et al.'s proposed new scheme. However, as a result of analysis of the new scheme proposed by Sood, et al., it is still vulnerable to malicious legal user attack and various attacks such as forgery, insider and database. In this paper, we propose an improvement to the Sood, et al.'s scheme in order to resolve such problems.
引用
收藏
页码:271 / 281
页数:11
相关论文
共 16 条
  • [1] BINDU CS, 2008, IJCSNS, V8
  • [2] Chen CM, 2002, IEICE T COMMUN, VE85B, P2519
  • [3] Cheng-Chi Lee, 2002, Operating Systems Review, V36, P23, DOI 10.1145/583800.583803
  • [4] Chien HY, 2005, AINA 2005: 19th International Conference on Advanced Information Networking and Applications, Vol 2, P245
  • [5] A dynamic ID-based remote user authentication scheme
    Das, ML
    Saxena, A
    Gulati, VP
    [J]. IEEE TRANSACTIONS ON CONSUMER ELECTRONICS, 2004, 50 (02) : 629 - 631
  • [6] A simple remote user authentication scheme
    Hwang, MS
    Lee, CC
    Tang, YL
    [J]. MATHEMATICAL AND COMPUTER MODELLING, 2002, 36 (1-2) : 103 - 107
  • [7] Ku WC, 2003, IEICE T COMMUN, VE86B, P1682
  • [8] PASSWORD AUTHENTICATION WITH INSECURE COMMUNICATION
    LAMPORT, L
    [J]. COMMUNICATIONS OF THE ACM, 1981, 24 (11) : 770 - 772
  • [9] Liao IE, 2005, International Conference on Next Generation Web Services Practices, P437
  • [10] A secure dynamic ID based remote user authentication scheme for multi-server environment
    Liao, Yi-Pin
    Wang, Shuenn-Shyang
    [J]. COMPUTER STANDARDS & INTERFACES, 2009, 31 (01) : 24 - 29