DocumentCode
3422415
Title
Drawbacks of Liao et al.´s Password Authentication Scheme
Author
Yoon, Eun-Jun ; Yoo, Kee-Young
Author_Institution
Dept. of Comput. Eng., Kyungpook Nat. Univ., Daegu
fYear
2006
fDate
25-28 Sept. 2006
Firstpage
101
Lastpage
108
Abstract
In 2006, Liao et al. proposed a new password authentication scheme over insecure networks. The primary merit of their scheme is its simplicity and practicality for implementation under insecure communication links. The current paper, however, demonstrates that Liao et al.´s scheme is vulnerable to masquerading server attacks, password guessing attacks using lost smart cards, and insider attacks. In addition, we point out that Liao et al.´s password change scheme is insecure, because an unauthorized user can easily change a new password for a smart card
Keywords
authorisation; message authentication; Diffie-Hellman key agreement; password authentication; password change scheme; password guessing attack; server attack; smart card; Authentication; Computational complexity; Cryptography; IP networks; Law; Legal factors; Network servers; Resists; Security; Smart cards; Authentication; Cryptanalysis; Diffie-Hellman key agreement; Password; Smart card;
fLanguage
English
Publisher
ieee
Conference_Titel
Next Generation Web Services Practices, 2006. NWeSP 2006. International Conference on
Conference_Location
Seoul
Print_ISBN
0-7695-2664-0
Type
conf
DOI
10.1109/NWESP.2006.15
Filename
4090011
Link To Document