2013International Journal of Computer ApplicationsOpen access

An Improvement of Wang. et. al. 's Remote User Authentication Scheme against Smart Card Security Breach

Ruhul Amin, Tanmoy Maitra, Soumya Prakash Rana

Open full text 14 citations

Abstract

User authentication is one of the fundamental procedures to provide secure communications between user and server over an insecure public channel.Recently, Wang et.al. proposed password-based user authentication scheme based on hash function and modular exponentiation and they claimed that their scheme provides strong authentication than related scheme.But in this paper, it is pointed out that their scheme suffers from off-line password guessing attack, off-line identity guessing attack, user impersonation attack, server masquerading attack, smart card stolen attack and password change attack.Then an improved scheme over Wang et.al.'s scheme has been proposed to overcome their weaknesses.The proposed scheme resists all possible attacks and provides more security than wang et.al's scheme, published earlier.

Open-access reader

About this research paper

What this paper is about

User authentication is one of the fundamental procedures to provide secure communications between user and server over an insecure public channel.Recently, Wang et.al. proposed password-based user authentication scheme based on hash function and modular exponentiation and they claimed that their scheme provides strong authentication than related scheme.But in this paper, it is pointed out that their scheme suffers from off-line password guessing attack, off-line identity guessing attack, user impersonation attack, server masquerading attack, smart card stolen attack and password change attack.Then an improved scheme over Wang et.al.'s scheme has been proposed to overcome their weaknesses.The proposed scheme resists all possible attacks and provides more security than wang et.al's scheme, published earlier.

Why it matters

OpenAlex reports 14 citations for this work. Citation counts describe recorded attention and do not establish research quality.

Key contribution

A contribution statement is not available in the OpenAlex record.

Method / approach

Method details are not available in the OpenAlex metadata.

Main findings

Findings are not separately available in the OpenAlex metadata.

Limitations

Limitations are not available in the OpenAlex metadata.

Applications

Application details are not available in the OpenAlex metadata.

Available abstract

User authentication is one of the fundamental procedures to provide secure communications between user and server over an insecure public channel.Recently, Wang et.al. proposed password-based user authentication scheme based on hash function and modular exponentiation and they claimed that their scheme provides strong authentication than related scheme.But in this paper, it is pointed out that their scheme suffers from off-line password guessing attack, off-line identity guessing attack, user impersonation attack, server masquerading attack, smart card stolen attack and password change attack.Then an improved scheme over Wang et.al.'s scheme has been proposed to overcome their weaknesses.The proposed scheme resists all possible attacks and provides more security than wang et.al's scheme, published earlier.

Key concepts: Computer science, Smart card, Computer security, Scheme (mathematics), Authentication (law), OpenPGP card, MULTOS, Smart card application protocol data unit

Related papers

Back to paper searchBrowse research topicsOriginal source
An Improvement of Wang. et. al. 's Remote User Authentication Scheme against Smart Card Security Breach — Research Paper | ScholarLens