An Improvement of Wang. et. al. 's Remote User Authentication Scheme against Smart Card Security Breach
Ruhul Amin, Tanmoy Maitra, Soumya Prakash Rana
Abstract
Open-access reader
Ruhul Amin, Tanmoy Maitra, Soumya Prakash Rana
Abstract
Open-access reader
User authentication is one of the fundamental procedures to provide secure communications between user and server over an insecure public channel.Recently, Wang et.al. proposed password-based user authentication scheme based on hash function and modular exponentiation and they claimed that their scheme provides strong authentication than related scheme.But in this paper, it is pointed out that their scheme suffers from off-line password guessing attack, off-line identity guessing attack, user impersonation attack, server masquerading attack, smart card stolen attack and password change attack.Then an improved scheme over Wang et.al.'s scheme has been proposed to overcome their weaknesses.The proposed scheme resists all possible attacks and provides more security than wang et.al's scheme, published earlier.
OpenAlex reports 14 citations for this work. Citation counts describe recorded attention and do not establish research quality.
A contribution statement is not available in the OpenAlex record.
Method details are not available in the OpenAlex metadata.
Findings are not separately available in the OpenAlex metadata.
Limitations are not available in the OpenAlex metadata.
Application details are not available in the OpenAlex metadata.
User authentication is one of the fundamental procedures to provide secure communications between user and server over an insecure public channel.Recently, Wang et.al. proposed password-based user authentication scheme based on hash function and modular exponentiation and they claimed that their scheme provides strong authentication than related scheme.But in this paper, it is pointed out that their scheme suffers from off-line password guessing attack, off-line identity guessing attack, user impersonation attack, server masquerading attack, smart card stolen attack and password change attack.Then an improved scheme over Wang et.al.'s scheme has been proposed to overcome their weaknesses.The proposed scheme resists all possible attacks and provides more security than wang et.al's scheme, published earlier.
Key concepts: Computer science, Smart card, Computer security, Scheme (mathematics), Authentication (law), OpenPGP card, MULTOS, Smart card application protocol data unit