Secure hash-based password authentication protocol using smartcards

  • Authors:
  • Hyunhee Jung;Hyun Sung Kim

  • Affiliations:
  • School of Computer Engineering, Kyungil University, Kyungsansi, Kyungpuk, Korea;School of Computer Engineering, Kyungil University, Kyungsansi, Kyungpook Province, Korea

  • Venue:
  • ICCSA'11 Proceedings of the 2011 international conference on Computational science and Its applications - Volume Part V
  • Year:
  • 2011

Quantified Score

Hi-index 0.00

Visualization

Abstract

Recently, Jeong-Won-Kim proposed a hash-based strong-password authentication protocol and claimed that the protocol is secure against guessing attack, stolen-verifier attack, replay attack, and impersonation attack. However, we show that their protocol has two vulnerabilities, password guessing attack and authentication answer guessing attack. Furthermore, we present a secure hash-based password authentication protocol using smartcards to cope with the vulnerabilities. Security analysis shows that our protocol provides better security properties than the other related authentication protocols with the similar computational complexity with others.