Cryptanalysis of three dynamic ID-based remote user authentication schemes using smart cards

Author(s):  
Zhengxian Gao ◽  
Shou Hsuan Stephen Huang ◽  
Wei Ding
Computers ◽  
2018 ◽  
Vol 7 (1) ◽  
pp. 9 ◽  
Author(s):  
Chin-Ling Chen ◽  
Yong-Yuan Deng ◽  
Yung-Wen Tang ◽  
Jung-Hsuan Chen ◽  
Yu-Fan Lin

2014 ◽  
Vol 543-547 ◽  
pp. 3343-3347
Author(s):  
Xue Lei Li ◽  
Qiao Yan Wen ◽  
Wen Min Li ◽  
Hua Zhang ◽  
Zheng Ping Jin

In this paper, we analyze and point out several weaknesses in the dynamic ID-based remote user authentication schemes using smart card for multi-server environments, and present the countermeasures to enhance the security of the schemes. Taking Li et al.'s scheme for instance, we demonstrate that their scheme does not provide forward secrecy and key privacy for the session keys, and cannot resist offline password guessing attack. Furthermore, the reasons of these security weaknesses are analyzed through extending the attacks to its predecessors. Finally, the improved ideas of local verification and authenticated Diffie-Hellman key agreement are presented to overcome the weaknesses mentioned above.


Sign in / Sign up

Export Citation Format

Share Document