An off-line dictionary attack on a simple three-party key exchange protocol

2009 ◽  
Vol 13 (3) ◽  
pp. 205-207 ◽  
Author(s):  
Junghyun Nam ◽  
Juryon Paik ◽  
Hyun-kyu Kang ◽  
Ung Kim ◽  
Dongho Won
2014 ◽  
Vol 2014 ◽  
pp. 1-7 ◽  
Author(s):  
Junghyun Nam ◽  
Kim-Kwang Raymond Choo ◽  
Minkyu Park ◽  
Juryon Paik ◽  
Dongho Won

Authenticated key exchange protocols are of fundamental importance in securing communications and are now extensively deployed for use in various real-world network applications. In this work, we reveal major previously unpublished security vulnerabilities in the password-based authenticated three-party key exchange protocol according to Lee and Hwang (2010): (1) the Lee-Hwang protocol is susceptible to a man-in-the-middle attack and thus fails to achieve implicit key authentication; (2) the protocol cannot protect clients’ passwords against an offline dictionary attack; and (3) the indistinguishability-based security of the protocol can be easily broken even in the presence of a passive adversary. We also propose an improved password-based authenticated three-party key exchange protocol that addresses the security vulnerabilities identified in the Lee-Hwang protocol.


2011 ◽  
Vol 15 ◽  
pp. 1691-1694 ◽  
Author(s):  
Wei Yuan ◽  
Liang Hu ◽  
Hongtu Li ◽  
Jianfeng Chu

2015 ◽  
Vol 06 (02) ◽  
pp. 69-81
Author(s):  
Eman Alharbi ◽  
Noha Alsulami ◽  
Omar Batarfi

2006 ◽  
Vol 1 (2) ◽  
pp. 52-70
Author(s):  
Mohammed A. Tawfiq ◽  
◽  
Sufyan T. Faraj Al-janabi ◽  
Abdul-Karim A. R. Kadhim ◽  
◽  
...  

2010 ◽  
Vol 30 (7) ◽  
pp. 1805-1808
Author(s):  
Shao-feng DENG ◽  
Fan DENG ◽  
Yi-fa LI

2020 ◽  
Vol 9 (12) ◽  
pp. 11169-11177
Author(s):  
A. J. Meshram ◽  
C. Meshram ◽  
S. D. Bagde ◽  
R. R. Meshram

Sign in / Sign up

Export Citation Format

Share Document