2008Unpublished venueRequires access

Security Enhancement for a Novel Mutual Authentication Scheme Based on Quadratic Residues for RFID Systems

Han-Cheng Hsiang, Hsiang-Chou Kuo, Wei‐Kuan Shih

Open publisher page 0 citations

Abstract

In 2004, Ari Juels [1] proposed a Yoking-Proofs protocol for RFID systems. The goal is to permit tags to generate a proof which is verifiable off-line by a trusted entity even when the readers are potentially untrusted. But the protocol not only doesn¿t possess the anonymity property but also suffers from both the replay and off-line attacks. In 2005, Wong et al. [3] proposed an authentication scheme on RFID passive tags, attempting to as a standard for apparel products. However, the protocol suffers from the known-plain text attack. Recently Chou et al. proposed a scheme to improve both of the above schemes and claimed that their scheme is anonymous. In this paper, we point out that Chou et al.¿s scheme is vulnerable to the replay attack, the reflection attack and the server spoofing attack. A modification of Chou et al.¿s scheme to enhance their security is proposed. Our scheme is suitable for applications with high security requirement.

About this research paper

What this paper is about

In 2004, Ari Juels [1] proposed a Yoking-Proofs protocol for RFID systems. The goal is to permit tags to generate a proof which is verifiable off-line by a trusted entity even when the readers are potentially untrusted. But the protocol not only doesn¿t possess the anonymity property but also suffers from both the replay and off-line attacks. In 2005, Wong et al. [3] proposed an authentication scheme on RFID passive tags, attempting to as a standard for apparel products. However, the protocol suffers from the known-plain text attack. Recently Chou et al. proposed a scheme to improve both of the above schemes and claimed that their scheme is anonymous. In this paper, we point out that Chou et al.¿s scheme is vulnerable to the replay attack, the reflection attack and the server spoofing attack. A modification of Chou et al.¿s scheme to enhance their security is proposed. Our scheme is suitable for applications with high security requirement.

Why it matters

A significance statement is not available in the OpenAlex record.

Key contribution

A contribution statement is not available in the OpenAlex record.

Method / approach

Method details are not available in the OpenAlex metadata.

Main findings

Findings are not separately available in the OpenAlex metadata.

Limitations

Limitations are not available in the OpenAlex metadata.

Applications

Application details are not available in the OpenAlex metadata.

Available abstract

In 2004, Ari Juels [1] proposed a Yoking-Proofs protocol for RFID systems. The goal is to permit tags to generate a proof which is verifiable off-line by a trusted entity even when the readers are potentially untrusted. But the protocol not only doesn¿t possess the anonymity property but also suffers from both the replay and off-line attacks. In 2005, Wong et al. [3] proposed an authentication scheme on RFID passive tags, attempting to as a standard for apparel products. However, the protocol suffers from the known-plain text attack. Recently Chou et al. proposed a scheme to improve both of the above schemes and claimed that their scheme is anonymous. In this paper, we point out that Chou et al.¿s scheme is vulnerable to the replay attack, the reflection attack and the server spoofing attack. A modification of Chou et al.¿s scheme to enhance their security is proposed. Our scheme is suitable for applications with high security requirement.

Key concepts: Replay attack, Reflection attack, Computer science, Mutual authentication, Scheme (mathematics), Computer security, Anonymity, Authentication (law)

Related papers

Back to paper searchBrowse research topicsOriginal source
Security Enhancement for a Novel Mutual Authentication Scheme Based on Quadratic Residues for RFID Systems — Research Paper | ScholarLens