본문 바로가기
  • Home

Improvements of the Hsiang-Shih's remote user authentication scheme using the smart cards

  • Journal of The Korea Society of Computer and Information
  • Abbr : JKSCI
  • 2010, 15(2), pp.119-125
  • Publisher : The Korean Society Of Computer And Information
  • Research Area : Engineering > Computer Science

Younghwa An 1

1강남대학교

Accredited

ABSTRACT

Recently Hsiang-Shih proposed the user authentication scheme to improve Yoon et al's scheme. But the proposed scheme has not been satisfied security requirements considering in the user authentication scheme using the password based smart card. In this paper, we proved that Hsiang-Shih's scheme is vulnerable to the off-line password guessing attack. In other words, the attacker can get the user's password using the off-line password guessing attack on the scheme when the attacker steals the user's smart card and extracts the information in the smart card. Also, the improved scheme based on the hash function and random number was introduced, thus preventing the attacks, such as password guessing attack, forgery attack and impersonation attack etc. And we suggested the effective mutual authentication scheme that can authenticate each other at the same time between the user and server.

Citation status

* References for papers published after 2023 are currently being built.