@article{ART002768428},
author={Mi-Og Park},
title={Design Errors and Cryptanalysis of Shin’s Robust Authentication Scheme based Dynamic ID for TMIS},
journal={Journal of The Korea Society of Computer and Information},
issn={1598-849X},
year={2021},
volume={26},
number={10},
pages={101-108},
doi={10.9708/jksci.2021.26.10.101}
TY - JOUR
AU - Mi-Og Park
TI - Design Errors and Cryptanalysis of Shin’s Robust Authentication Scheme based Dynamic ID for TMIS
JO - Journal of The Korea Society of Computer and Information
PY - 2021
VL - 26
IS - 10
PB - The Korean Society Of Computer And Information
SP - 101
EP - 108
SN - 1598-849X
AB - In this paper, we analyze Shin's proposed dynamic ID-based user authentication scheme for TMIS(Telecare Medicine Information System), and Shin's authentication scheme is vulnerable to smart card loss attacks, allowing attackers to acquire user IDs, which enables user impersonation attack. In 2019, Shin's proposed authentication scheme attempted to generate a strong random number using ECC, claiming that it is safe to lose a smart card because it is impossible to calculate random number r'i due to the difficulty of the ECC algorithm without knowing random number ri. However, after analyzing Shin's authentication scheme in this paper, the use of transmission messages and smart cards makes it easy to calculate random numbers r'i, which also enables attackers to generate session keys. In addition, Shin's authentication scheme were analyzed to have significantly greater overhead than other authentication scheme, including vulnerabilities to safety analysis, the lack of a way to pass the server's ID to users, and the lack of biometric characteristics with slightly different templates.
KW - User Authentication;Stolen Smart-Card attack;Password Guessing attack;TMIS(Telecare Medicine Information System);ECC(Elliptic curve cryptography)
DO - 10.9708/jksci.2021.26.10.101
ER -
Mi-Og Park. (2021). Design Errors and Cryptanalysis of Shin’s Robust Authentication Scheme based Dynamic ID for TMIS. Journal of The Korea Society of Computer and Information, 26(10), 101-108.
Mi-Og Park. 2021, "Design Errors and Cryptanalysis of Shin’s Robust Authentication Scheme based Dynamic ID for TMIS", Journal of The Korea Society of Computer and Information, vol.26, no.10 pp.101-108. Available from: doi:10.9708/jksci.2021.26.10.101
Mi-Og Park "Design Errors and Cryptanalysis of Shin’s Robust Authentication Scheme based Dynamic ID for TMIS" Journal of The Korea Society of Computer and Information 26.10 pp.101-108 (2021) : 101.
Mi-Og Park. Design Errors and Cryptanalysis of Shin’s Robust Authentication Scheme based Dynamic ID for TMIS. 2021; 26(10), 101-108. Available from: doi:10.9708/jksci.2021.26.10.101
Mi-Og Park. "Design Errors and Cryptanalysis of Shin’s Robust Authentication Scheme based Dynamic ID for TMIS" Journal of The Korea Society of Computer and Information 26, no.10 (2021) : 101-108.doi: 10.9708/jksci.2021.26.10.101
Mi-Og Park. Design Errors and Cryptanalysis of Shin’s Robust Authentication Scheme based Dynamic ID for TMIS. Journal of The Korea Society of Computer and Information, 26(10), 101-108. doi: 10.9708/jksci.2021.26.10.101
Mi-Og Park. Design Errors and Cryptanalysis of Shin’s Robust Authentication Scheme based Dynamic ID for TMIS. Journal of The Korea Society of Computer and Information. 2021; 26(10) 101-108. doi: 10.9708/jksci.2021.26.10.101
Mi-Og Park. Design Errors and Cryptanalysis of Shin’s Robust Authentication Scheme based Dynamic ID for TMIS. 2021; 26(10), 101-108. Available from: doi:10.9708/jksci.2021.26.10.101
Mi-Og Park. "Design Errors and Cryptanalysis of Shin’s Robust Authentication Scheme based Dynamic ID for TMIS" Journal of The Korea Society of Computer and Information 26, no.10 (2021) : 101-108.doi: 10.9708/jksci.2021.26.10.101