DocumentCode :
153286
Title :
Cryptanalysis of a Remote User Authentication Protocol Using Smart Cards
Author :
Madhusudhan, R. ; Kumar, S.R.
Author_Institution :
Dept. of Math. & Comput. Sci., Nat. Inst. of Technol. Karnataka, Surathkal, India
fYear :
2014
fDate :
7-11 April 2014
Firstpage :
474
Lastpage :
477
Abstract :
Remote user authentication using smart cards is a method of verifying the legitimacy of remote users accessing the server through insecure channel, by using smart cards to increase the efficiency of the system. During last couple of years many protocols to authenticate remote users using smart cards have been proposed. But unfortunately, most of them are proved to be unsecure against various attacks. Recently this year, Yung-Cheng Lee improved Shin et al.´s protocol and claimed that their protocol is more secure. In this article, we have shown that Yung-Cheng-Lee´s protocol too has defects. It does not provide user anonymity; it is vulnerable to Denial-of-Service attack, Session key reveal, user impersonation attack, Server impersonation attack and insider attacks. Further it is not efficient in password change phase since it requires communication with server and uses verification table.
Keywords :
computer network security; cryptographic protocols; message authentication; smart cards; Yung-Cheng-Lee´s protocol; cryptanalysis; denial-of-service attack; insecure channel; insider attacks; legitimacy verification; password change phase; remote user authentication protocol; server impersonation attack; session key; smart cards; user impersonation attack; verification table; Authentication; Bismuth; Cryptography; Protocols; Servers; Smart cards; authentication; smart card; cryptanalysis; dynamic id;
fLanguage :
English
Publisher :
ieee
Conference_Titel :
Service Oriented System Engineering (SOSE), 2014 IEEE 8th International Symposium on
Conference_Location :
Oxford
Type :
conf
DOI :
10.1109/SOSE.2014.84
Filename :
6830951
Link To Document :
بازگشت