首页> 外文会议>Annual IFIP WG 11.3 Conference on Data and Applications Security and Privacy >Security Vulnerabilities of User Authentication Scheme Using Smart Card
【24h】

Security Vulnerabilities of User Authentication Scheme Using Smart Card

机译:使用智能卡的用户身份验证方案的安全漏洞

获取原文

摘要

With the exponential growth of Internet users, various business transactions take place over an insecure channel. To secure these transactions, authentication is the primary step that needs to be passed. To overcome the problems associated with traditional password based authentication methods, smart card authentication schemes have been widely used. However, most of these schemes are vulnerable to one or the other possible attack. Recently, Yang, Jiang and Yang proposed RSA based smart card authentication scheme. They claimed that their scheme provides security against replay attack, password guessing attack, insider attack and impersonation attack. This paper demonstrates that Yang et al.'s scheme is vulnerable to impersonation attack and fails to provide essential features to satisfy the needs of a user. Further, comparative study of existing schemes is also presented on the basis of various security features provided and vulnerabilities present in these schemes.
机译:随着互联网用户的指数增长,各种商业交易在不安全的频道上进行。为确保这些事务,身份验证是需要传递的主要步骤。为了克服与传统的基于密码的身份验证方法相关的问题,已广泛使用智能卡认证方案。然而,大多数这些方案都容易受到一个或其他可能的攻击。最近,杨,江和阳提出了基于RSA的智能卡认证方案。他们声称他们的计划为重播攻击,密码猜测,内幕攻击和模拟攻击提供了安全性。本文展示了杨等人。的计划容易受到模拟攻击的影响,并且未能提供满足用户需求的基本特征。此外,还根据这些计划中提供的各种安全特征和漏洞的各种安全特征来介绍现有计划的比较研究。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号