2014
DOI: 10.1155/2014/247836
|View full text |Cite
|
Sign up to set email alerts
|

Analysis and Enhancement of a Password Authentication and Update Scheme Based on Elliptic Curve Cryptography

Abstract: Recently, a password authentication and update scheme has been presented by Islam and Biswas to remove the security weaknesses in Lin and Huang’s scheme. Unfortunately, He et al., Wang et al., and Li have found out that Islam and Biswas’ improvement was vulnerable to offline password guessing attack, stolen verifier attack, privilege insider attack, and denial of service attack. In this paper, we further analyze Islam and Biswas’ scheme and demonstrate that their scheme cannot resist password compromise impers… Show more

Help me understand this report

Search citation statements

Order By: Relevance

Paper Sections

Select...
5

Citation Types

0
9
0

Year Published

2017
2017
2022
2022

Publication Types

Select...
7
1

Relationship

0
8

Authors

Journals

citations
Cited by 15 publications
(9 citation statements)
references
References 15 publications
0
9
0
Order By: Relevance
“…Similarly, the technique in [95] lacks user anonymity and is vulnerable to smart card loss, offline password guessing and credentials leakage attacks. Consequently, an improved a biometric based distributed key management protocol is developed in [96].…”
Section: Related Workmentioning
confidence: 99%
“…Similarly, the technique in [95] lacks user anonymity and is vulnerable to smart card loss, offline password guessing and credentials leakage attacks. Consequently, an improved a biometric based distributed key management protocol is developed in [96].…”
Section: Related Workmentioning
confidence: 99%
“…Usually, the real-time users adopt to use easy-tomemorialize parameters, such as secret keys and identities, for their convenience, as explain in [23][24][25]; hence, user anonymity is not provided. For the enhancement security of IoT WSNs, studies in [26][27][28][29][30] presented lightweight remote user authentication schemes. Nonetheless, these contributions have need of improvements to resist attacks while persevering optimum communication and computation performance.…”
Section: Related Workmentioning
confidence: 99%
“…Likewise, an enhanced remote authentication using smart devices was offered to claim that their scheme can prevent password-guessing attacks i.e. online/offline [39]. Additionally, their scheme holds client anonymity to prevent information outflow.…”
Section: Related Workmentioning
confidence: 99%