본문 바로가기
  • Home

Secure Password Authenticated Key Exchange Protocol for Imbalanced Wireless Networks

  • Journal of The Korea Society of Computer and Information
  • Abbr : JKSCI
  • 2011, 16(2), pp.173-182
  • Publisher : The Korean Society Of Computer And Information
  • Research Area : Engineering > Computer Science

Yang,Hyung-Kyu 1

1강남대학교

Accredited

ABSTRACT

User authentication and key exchange protocols are the most important cryptographic applications. For user authentication, most protocols are based on the users' secret passwords. However, protocols based on the users' secret passwords are vulnerable to the password guessing attack. In 1992, Bellovin and Merritt proposed an EKE(Encrypted Key Exchange) protocol for user authentication and key exchage that is secure against password guessing attack. After that, many enhanced and secure EKE protocols are proposed so far. In 2006, Lo pointed out that Yeh et al.'s password-based authenticated key exchange protocol has a security weakness and proposed an improved protocol. However, Cao and Lin showed that his protocol is also vulnerable to off-line password guessing attack. In this paper, we show his protocol is vulnerable to on-line password guessing attack using new attack method, and propose an improvement of password authenticated key exchange protocol for imbalanced wireless networks secure against password guessing attack.

Citation status

* References for papers published after 2023 are currently being built.