Title
Cryptanalysis and improvement of authentication scheme for roaming service in ubiquitous network
Abstract
The paper analyzes a recently proposed secure authentication and key agreement scheme for roaming service in a ubiquitous network. In 2018, Lee et al. proposed a biometric-based anonymous authentication scheme for roaming in ubiquitous networks. But, we found that Lee et al. scheme is prone to the off-line dictionary attack when a user's smart device is stolen, replay attack due to static variables and de-synchronization attack when an adversary blocks a message causing failure of authentication mechanism. Further, the scheme lacks no key control property and has incorrect XOR calculation. In the sequel, we presented an improved biometric based scheme to remove the weaknesses in Lee et al.'s scheme, which also does not require an update of identity in every session, hence preventing de-synchronization attack. Also, the security of the proposed schemes were analyzed in a widely accepted random oracle model. Further, computational and communication cost comparisons indicate that our improved scheme is more suitable for ubiquitous networks.
Year
DOI
Venue
2020
10.1080/01611194.2019.1706061
CRYPTOLOGIA
Keywords
DocType
Volume
cryptanalysis,elliptic curve cryptography,random oracle
Journal
44.0
Issue
ISSN
Citations 
4.0
0161-1194
0
PageRank 
References 
Authors
0.34
0
2
Name
Order
Citations
PageRank
Shaheena Khatoon100.34
Balwant Singh Thakur200.34