Title :
Cryptanalysis and improvement of a password-based key exchange protocol
Author :
Liu, Feng-mei ; Luo, Shi-Xin ; Ren, Chuan-Lun
Author_Institution :
Dept. of Inf. Res., Inf. Eng. Univ., Zhengzhou
Abstract :
In 2002, Yeh and Sun proposed a simple authenticated key agreement protocol resistant to password guessing attacks. And they provided a formal proof of security to show its strength against both passive and active adversaries. However, the scheme presented by Yeh and Sun has secure flaws. In this paper, we provide the secure analysis of the scheme and show that it cannot resist the stolen-verifier attack and man-in-the-middle attack. Then we presents an improved scheme of the Yeh-Sunpsilas scheme which is resistant to the stolen-verifier attack combining with man-in-the-middle attack.
Keywords :
cryptographic protocols; authenticated key agreement protocol; cryptanalysis; password-based key exchange protocol; Authentication; Cryptographic protocols; Cryptography; Cybernetics; Educational institutions; Electronic mail; Information security; Machine learning; Resists; Sun; Attack; Cryptanalysis; Password-based Key Exchange;
Conference_Titel :
Machine Learning and Cybernetics, 2008 International Conference on
Conference_Location :
Kunming
Print_ISBN :
978-1-4244-2095-7
Electronic_ISBN :
978-1-4244-2096-4
DOI :
10.1109/ICMLC.2008.4621042