Cryptanalysis of Arshad et al.'s ECC-based mutual authentication scheme for session initiation protocol

被引:26
|
作者
Tang, Hongbin [1 ]
Liu, Xinsong [1 ]
机构
[1] Univ Elect Sci & Technol China, Sch Comp Sci & Engn, Chengdu 610054, Peoples R China
关键词
Password guessing attack; Session initiation protocol; Elliptic curve cryptography; Authentication; Protocol; Cryptography;
D O I
10.1007/s11042-012-1001-8
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Session Initiation Protocol (SIP) has been widely used in the current Internet protocols such as Hyper Text Transport Protocol (HTTP) and Simple Mail Transport Protocol (SMTP). However, the original SIP authentication scheme was insecure and many researchers tried to propose schemes to overcome the flaws. In the year 2011, Arshad et al. proposed a SIP authentication protocol using elliptic curve cryptography (ECC), but their scheme suffered from off-line password guessing attack along with password change pitfalls. To conquer the mentioned weakness, we proposed an ECC-based authentication scheme for SIP. Our scheme only needs to compute four elliptic curve scale multiplications and two hash-to-point operations, and maintains high efficiency. The analysis of security of the ECC-based protocol shows that our scheme is suitable for the applications with higher security requirement.
引用
收藏
页码:321 / 333
页数:13
相关论文
共 50 条
  • [31] A secure and efficient ECC-based user anonymity-preserving session initiation authentication protocol using smart card
    Dheerendra Mishra
    Ashok Kumar Das
    Sourav Mukhopadhyay
    Peer-to-Peer Networking and Applications, 2016, 9 : 171 - 192
  • [32] Biometrics based authentication scheme for session initiation protocol
    Xie, Qi
    Tang, Zhixiong
    SPRINGERPLUS, 2016, 5
  • [33] A Secure ECC-based RFID Mutual Authentication Protocol to Enhance Patient Medication Safety
    Jin, Chunhua
    Xu, Chunxiang
    Zhang, Xiaojun
    Li, Fagen
    JOURNAL OF MEDICAL SYSTEMS, 2016, 40 (01) : 1 - 6
  • [34] Cryptanalysis of Yang et al.'s Handover Authentication Scheme For Mobile Network Environment
    Deng, Yong-Yuan
    Chen, Chin-Ling
    Shin, Jungpil
    Wang, Kun-hao
    2017 INTERNATIONAL SYMPOSIUM ON COMPUTER SCIENCE AND INTELLIGENT CONTROLS (ISCSIC), 2017, : 152 - 157
  • [35] A Secure ECC-based RFID Mutual Authentication Protocol to Enhance Patient Medication Safety
    Chunhua Jin
    Chunxiang Xu
    Xiaojun Zhang
    Fagen Li
    Journal of Medical Systems, 2016, 40
  • [36] Cryptanalysis and improvement of barman et al.’s secure remote user authentication scheme
    Patel, Chintan
    Doshi, Nishant
    International Journal of Circuits, Systems and Signal Processing, 2019, 13 : 604 - 610
  • [37] SAS-SIP: A secure authentication scheme based on ECC and a fuzzy extractor for session initiation protocol
    Maitra, Tanmoy
    Giri, Debasis
    Mohapatra, Ram N.
    CRYPTOLOGIA, 2019, 43 (03) : 212 - 232
  • [38] An efficient and secure authentication and key agreement scheme for session initiation protocol using ECC
    Hamed Arshad
    Morteza Nikooghadam
    Multimedia Tools and Applications, 2016, 75 : 181 - 197
  • [39] An efficient and secure authentication and key agreement scheme for session initiation protocol using ECC
    Arshad, Hamed
    Nikooghadam, Morteza
    MULTIMEDIA TOOLS AND APPLICATIONS, 2016, 75 (01) : 181 - 197
  • [40] ERMAP: ECC-based robust mutual authentication protocol for smart grid communication with AVISPA simulations
    Rajaram, Sangeetha
    Vollala, Satyanarayana
    Ramasubramanian, N.
    INTERNATIONAL JOURNAL OF AD HOC AND UBIQUITOUS COMPUTING, 2022, 41 (04) : 232 - 245