본문 바로가기
  • Home

Structural vulnerability analysis and improvement of a biometrics-based remote user authentication scheme of Li and Hwang's

  • Journal of The Korea Society of Computer and Information
  • Abbr : JKSCI
  • 2012, 17(7), pp.107-115
  • Publisher : The Korean Society Of Computer And Information
  • Research Area : Engineering > Computer Science

Kwang Cheul Shin ORD ID 1

1성결대학교

Accredited

ABSTRACT

Recently, Li and Hwang scheme proposed a biometrics-based remote user authentication scheme using smart card. It is asserted that this scheme has very excellent benefits by the operation cost efficiency based on the smart card, one-way function and biometrics using random numbers. But this scheme cannot provide the properly authentication, especially, it is analyzed as the vulnerable security scheme for Denial-of-Service(DoS) attacks by impersonate attacks. The attacker controls the insecure channel, they can easily fabricate messages to pass the user's or server's authentication, and the malicious attacker can impersonate the user to cheat the server and can impersonate the server to cheat the user without knowing any secret information. This paper proposes the strong improved scheme which can respond to multiple attacks by supplementing the function of integrity check from the server which applied variable authenticator and OSPA without exposing the user's password information. It is supplemented pregnable of disguise attack and mutual authentication of Li and Hwang scheme.

Citation status

* References for papers published after 2023 are currently being built.