Title
A Security Enhancement on a Remote User Authentication Scheme Based on the Rabin Cryptosystem with Secure Password Updating
Abstract
User authentication plays an important role to ensure that only authorized users can access resources. Kim et al. proposed a remote user authentication scheme based on the Rabin cryptosystem to resist well-known attack such as offline password guessing attack, unlimited online password guessing attack and server impersonation. In their scheme, a user will be issued a smart card for authentication, and the computation load of the smart card is light. Although their scheme possesses superior properties, we find that it suffers from one fatal security flaw such that a legal user cannot access resources after password change phase. In this paper, we first show the security flaw and propose an improvement with secure password updating.
Year
DOI
Venue
2012
10.1109/WAINA.2012.13
AINA Workshops
Keywords
Field
DocType
offline password,rabin cryptosystem,legal user,user authentication,well-known attack,password change phase,secure password,access resource,remote user authentication scheme,security enhancement,smart card,secure password updating,unlimited online password,cryptography,authorisation,smart cards,resource allocation,servers,law,authentication,public key cryptography
Zero-knowledge password proof,Password strength,Computer security,Challenge–response authentication,Computer science,Computer network,S/KEY,One-time password,Password policy,Password,Cognitive password
Conference
Citations 
PageRank 
References 
2
0.36
12
Authors
4
Name
Order
Citations
PageRank
Wei-Liang Tai173336.91
Ya-Fen Chang250927.66
Yuanfu Li341.08
Shun-Meng Pan420.36