본문 바로가기
  • Home

A Secure and Efficient User Authentication Protocol for IoT Environments

  • Journal of The Korea Society of Computer and Information
  • Abbr : JKSCI
  • 2025, 30(12), pp.205~213
  • Publisher : The Korean Society Of Computer And Information
  • Research Area : Engineering > Computer Science
  • Received : October 2, 2025
  • Accepted : December 11, 2025
  • Published : December 31, 2025

Mi-Og Park 1

1성결대학교

Accredited

ABSTRACT

In this paper, the security limitations and design flaws of the Li protocol proposed in 2023 are analyzed, and a new authentication protocol is proposed that addresses these concerns is proposed. The Li protocol analyzed in this paper contains a structural flaw that allows all legitimate users to directly access the server's secret key, which compromises the integrity of authentication and the confidentiality of the entire system, posing a critical security threat. Furthermore, the protocol is vulnerable to attacks such as smart-card lost attack, forward secrecy, session key exposure, ephemeral secret leakage attack, and key impersonation attack. This paper improves upon these issues and proposes a lightweight authentication protocol suitable for IoT environments. The proposed protocol, through security and performance analysis compared with related protocols, satisfies high security attributes while minimizing both computational and communication costs. Therefore this study is well-suited as a secure and practical IoT security authentication protocol.

Citation status

* References for papers published after 2024 are currently being built.