Security Flaws in a Smart Card Based Authentication Scheme for Multi-server Environment

  • Authors:
  • Debiao He;Shuhua Wu

  • Affiliations:
  • School of Mathematics and Statistics, Wuhan University, Wuhan, China;Department of Networks Engineering, Information Engineering University, Zhengzhou, China

  • Venue:
  • Wireless Personal Communications: An International Journal
  • Year:
  • 2013

Quantified Score

Hi-index 0.00

Visualization

Abstract

Recently, Wang and Ma (Wireless Pers Commun, 2012. doi: 10.1007/s11277-011-0456-7 ) proposed a smart card based authentication scheme for multi-server environment. They also demonstrated that their scheme could overcome various attacks. In this paper, the security of Wang et al.'s scheme is evaluated. Our analysis shows their scheme is vulnerable to the server spoofing attack, the impersonation attack, the privileged insider attack and the off-line password guessing attack.