Analysis and improvement on a biometric-based remote user authentication scheme using smart cards
In a recent paper (BioMed Research International, 2013/491289), Khan et al. proposed an improved biometrics-based remote user authentication scheme with user anonymity. The scheme is believed to be secure against password guessing attack, user impersonation attack, server masquerading attack, and pr...
Saved in:
Main Authors: | , , |
---|---|
Format: | text |
Language: | English |
Published: |
Institutional Knowledge at Singapore Management University
2015
|
Subjects: | |
Online Access: | https://ink.library.smu.edu.sg/sis_research/7341 https://ink.library.smu.edu.sg/context/sis_research/article/8344/viewcontent/s11277_014_2111_6.pdf |
Tags: |
Add Tag
No Tags, Be the first to tag this record!
|
Institution: | Singapore Management University |
Language: | English |
id |
sg-smu-ink.sis_research-8344 |
---|---|
record_format |
dspace |
spelling |
sg-smu-ink.sis_research-83442022-10-06T02:24:09Z Analysis and improvement on a biometric-based remote user authentication scheme using smart cards WEN, Fengtong SUSILO, Willy YANG, Guomin In a recent paper (BioMed Research International, 2013/491289), Khan et al. proposed an improved biometrics-based remote user authentication scheme with user anonymity. The scheme is believed to be secure against password guessing attack, user impersonation attack, server masquerading attack, and provide user anonymity, even if the secret information stored in the smart card is compromised. In this paper, we analyze the security of Khan et al.’s scheme, and demonstrate that their scheme doesn’t provide user anonymity. This also renders that their scheme is insecure against other attacks, such as off-line password guessing attack, user impersonation attacks. Subsequently, we propose a robust biometric-based remote user authentication scheme. Besides, we simulate our scheme for the formal security verification using the wide-accepted BAN logic to ensure our scheme is working correctly by achieving the mutual authentication goals. 2015-02-01T08:00:00Z text application/pdf https://ink.library.smu.edu.sg/sis_research/7341 info:doi/10.1007/s11277-014-2111-6 https://ink.library.smu.edu.sg/context/sis_research/article/8344/viewcontent/s11277_014_2111_6.pdf http://creativecommons.org/licenses/by-nc-nd/4.0/ Research Collection School Of Computing and Information Systems eng Institutional Knowledge at Singapore Management University Authentication BAN logic Biometrics Roaming Security Smart card Information Security |
institution |
Singapore Management University |
building |
SMU Libraries |
continent |
Asia |
country |
Singapore Singapore |
content_provider |
SMU Libraries |
collection |
InK@SMU |
language |
English |
topic |
Authentication BAN logic Biometrics Roaming Security Smart card Information Security |
spellingShingle |
Authentication BAN logic Biometrics Roaming Security Smart card Information Security WEN, Fengtong SUSILO, Willy YANG, Guomin Analysis and improvement on a biometric-based remote user authentication scheme using smart cards |
description |
In a recent paper (BioMed Research International, 2013/491289), Khan et al. proposed an improved biometrics-based remote user authentication scheme with user anonymity. The scheme is believed to be secure against password guessing attack, user impersonation attack, server masquerading attack, and provide user anonymity, even if the secret information stored in the smart card is compromised. In this paper, we analyze the security of Khan et al.’s scheme, and demonstrate that their scheme doesn’t provide user anonymity. This also renders that their scheme is insecure against other attacks, such as off-line password guessing attack, user impersonation attacks. Subsequently, we propose a robust biometric-based remote user authentication scheme. Besides, we simulate our scheme for the formal security verification using the wide-accepted BAN logic to ensure our scheme is working correctly by achieving the mutual authentication goals. |
format |
text |
author |
WEN, Fengtong SUSILO, Willy YANG, Guomin |
author_facet |
WEN, Fengtong SUSILO, Willy YANG, Guomin |
author_sort |
WEN, Fengtong |
title |
Analysis and improvement on a biometric-based remote user authentication scheme using smart cards |
title_short |
Analysis and improvement on a biometric-based remote user authentication scheme using smart cards |
title_full |
Analysis and improvement on a biometric-based remote user authentication scheme using smart cards |
title_fullStr |
Analysis and improvement on a biometric-based remote user authentication scheme using smart cards |
title_full_unstemmed |
Analysis and improvement on a biometric-based remote user authentication scheme using smart cards |
title_sort |
analysis and improvement on a biometric-based remote user authentication scheme using smart cards |
publisher |
Institutional Knowledge at Singapore Management University |
publishDate |
2015 |
url |
https://ink.library.smu.edu.sg/sis_research/7341 https://ink.library.smu.edu.sg/context/sis_research/article/8344/viewcontent/s11277_014_2111_6.pdf |
_version_ |
1770576315497316352 |