JOURNAL ARTICLE

Security Analysis and Enhancement on Smart card-based Remote User Authentication Scheme Using Hash Function

Youngil KimDongho Won

Year: 2014 Journal:   Journal of the Korea Institute of Information Security and Cryptology Vol: 24 (6)Pages: 1027-1036

Abstract

2012년 Sonwanshi 등은 스마트카드 기반의 해쉬함수를 이용한 효율적인 원격 사용자 인증 스킴을 제안하였다. 본 논문에서는 Sonwanshi 등이 주장한 바와 달리 제안된 스킴이 offline password guessing attack, server impersonation attack, insider attack, replay attack에 취약하며 세션키 및 프라이버시 문제가 존재함을 보이고, 이를 개선한 스킴을 제안한다. 또한, 제안하는 스킴에 대한 분석과 비교를 통해 제안하는 인증 스킴이 다른 인증 스킴보다 상대적으로 안전하고 효율적인 스킴임을 보인다. In 2012, Sonwanshi et al. suggested an efficient smar card based remote user authentication scheme using hash function. In this paper, we point out that their scheme is vulnerable to offline password guessing attack, sever impersonation attack, insider attack, and replay attack and it has weakness for session key vulnerability and privacy problem. Furthermore, we propose an improved scheme which resolves security flaws and show that the scheme is more secure and efficient than others.

Keywords:
Replay attack Computer science Computer security Challenge–response authentication Password Password cracking Dictionary attack Hash function Reflection attack One-time password S/KEY Smart card Security analysis Vulnerability (computing) Scheme (mathematics) Authentication (law) Session key Authentication protocol Encryption Mathematics

Metrics

1
Cited By
0.37
FWCI (Field Weighted Citation Impact)
5
Refs
0.67
Citation Normalized Percentile
Is in top 1%
Is in top 10%

Citation History

Topics

Advanced Authentication Protocols Security
Physical Sciences →  Computer Science →  Computer Networks and Communications
User Authentication and Security Systems
Physical Sciences →  Computer Science →  Information Systems
Biometric Identification and Security
Physical Sciences →  Computer Science →  Signal Processing
© 2026 ScienceGate Book Chapters — All rights reserved.