Analysis and improvement on a biometric-based remote user authentication scheme using smart cards

In a recent paper (BioMed Research International, 2013/491289), Khan et al. proposed an improved biometrics-based remote user authentication scheme with user anonymity. The scheme is believed to be secure against password guessing attack, user impersonation attack, server masquerading attack, and pr...

Full description

Saved in:
Bibliographic Details
Main Authors: WEN, Fengtong, SUSILO, Willy, YANG, Guomin
Format: text
Language:English
Published: Institutional Knowledge at Singapore Management University 2015
Subjects:
Online Access:https://ink.library.smu.edu.sg/sis_research/7341
https://ink.library.smu.edu.sg/context/sis_research/article/8344/viewcontent/s11277_014_2111_6.pdf
Tags: Add Tag
No Tags, Be the first to tag this record!
Institution: Singapore Management University
Language: English
id sg-smu-ink.sis_research-8344
record_format dspace
spelling sg-smu-ink.sis_research-83442022-10-06T02:24:09Z Analysis and improvement on a biometric-based remote user authentication scheme using smart cards WEN, Fengtong SUSILO, Willy YANG, Guomin In a recent paper (BioMed Research International, 2013/491289), Khan et al. proposed an improved biometrics-based remote user authentication scheme with user anonymity. The scheme is believed to be secure against password guessing attack, user impersonation attack, server masquerading attack, and provide user anonymity, even if the secret information stored in the smart card is compromised. In this paper, we analyze the security of Khan et al.’s scheme, and demonstrate that their scheme doesn’t provide user anonymity. This also renders that their scheme is insecure against other attacks, such as off-line password guessing attack, user impersonation attacks. Subsequently, we propose a robust biometric-based remote user authentication scheme. Besides, we simulate our scheme for the formal security verification using the wide-accepted BAN logic to ensure our scheme is working correctly by achieving the mutual authentication goals. 2015-02-01T08:00:00Z text application/pdf https://ink.library.smu.edu.sg/sis_research/7341 info:doi/10.1007/s11277-014-2111-6 https://ink.library.smu.edu.sg/context/sis_research/article/8344/viewcontent/s11277_014_2111_6.pdf http://creativecommons.org/licenses/by-nc-nd/4.0/ Research Collection School Of Computing and Information Systems eng Institutional Knowledge at Singapore Management University Authentication BAN logic Biometrics Roaming Security Smart card Information Security
institution Singapore Management University
building SMU Libraries
continent Asia
country Singapore
Singapore
content_provider SMU Libraries
collection InK@SMU
language English
topic Authentication
BAN logic
Biometrics
Roaming
Security
Smart card
Information Security
spellingShingle Authentication
BAN logic
Biometrics
Roaming
Security
Smart card
Information Security
WEN, Fengtong
SUSILO, Willy
YANG, Guomin
Analysis and improvement on a biometric-based remote user authentication scheme using smart cards
description In a recent paper (BioMed Research International, 2013/491289), Khan et al. proposed an improved biometrics-based remote user authentication scheme with user anonymity. The scheme is believed to be secure against password guessing attack, user impersonation attack, server masquerading attack, and provide user anonymity, even if the secret information stored in the smart card is compromised. In this paper, we analyze the security of Khan et al.’s scheme, and demonstrate that their scheme doesn’t provide user anonymity. This also renders that their scheme is insecure against other attacks, such as off-line password guessing attack, user impersonation attacks. Subsequently, we propose a robust biometric-based remote user authentication scheme. Besides, we simulate our scheme for the formal security verification using the wide-accepted BAN logic to ensure our scheme is working correctly by achieving the mutual authentication goals.
format text
author WEN, Fengtong
SUSILO, Willy
YANG, Guomin
author_facet WEN, Fengtong
SUSILO, Willy
YANG, Guomin
author_sort WEN, Fengtong
title Analysis and improvement on a biometric-based remote user authentication scheme using smart cards
title_short Analysis and improvement on a biometric-based remote user authentication scheme using smart cards
title_full Analysis and improvement on a biometric-based remote user authentication scheme using smart cards
title_fullStr Analysis and improvement on a biometric-based remote user authentication scheme using smart cards
title_full_unstemmed Analysis and improvement on a biometric-based remote user authentication scheme using smart cards
title_sort analysis and improvement on a biometric-based remote user authentication scheme using smart cards
publisher Institutional Knowledge at Singapore Management University
publishDate 2015
url https://ink.library.smu.edu.sg/sis_research/7341
https://ink.library.smu.edu.sg/context/sis_research/article/8344/viewcontent/s11277_014_2111_6.pdf
_version_ 1770576315497316352