Title :
Cryptanalysis of the end-to--end security for mobile communications with end-user identification/authentication
Author :
Zhou, Yongbin ; Zhang, Zhenfeng ; Feng, Dengguo
Author_Institution :
State Key Lab. of Inf. Security, Chinese Acad. of Sci., Beijing, China
fDate :
4/1/2005 12:00:00 AM
Abstract :
This letter shows that the end-to-end security protocol for mobile communications with end-user identification/authentication due to Chang et al., (2004) has a serious security flaw. We demonstrate this by presenting a simple but powerful impersonation attack against the protocol so that the protocol is insecure against impersonation attack. Hence, the protocol cannot achieve the claimed security. To overcome such a security flaw, a modification is presented.
Keywords :
message authentication; mobile communication; protocols; public key cryptography; telecommunication security; telecommunication services; authenticated key agreement; cryptanalysis; end-to-end security protocol; end-user identification; mobile communication; security flaw; Authentication; Communication system security; Cryptography; Data privacy; Data security; GSM; Mobile communication; Power system security; Protocols; Public key;
Journal_Title :
Communications Letters, IEEE
DOI :
10.1109/LCOMM.2005.1413638