Security Analysis of a Chaotic Map-based Authentication Scheme for Telecare Medicine Information Systems

被引:14
|
作者
Yau, Wei-Chuen [1 ]
Phan, Raphael C. -W. [1 ]
机构
[1] Multimedia Univ, Fac Engn, Cyberjaya, Selangor, Malaysia
关键词
Authentication; Password; Smart card; Telecare medicine information system; KEY; CRYPTANALYSIS; PROTOCOL; ATTACK;
D O I
10.1007/s10916-013-9993-9
中图分类号
R19 [保健组织与事业(卫生事业管理)];
学科分类号
摘要
Many authentication schemes have been proposed for telecare medicine information systems (TMIS) to ensure the privacy, integrity, and availability of patient records. These schemes are crucial for TMIS systems because otherwise patients' medical records become susceptible to tampering thus hampering diagnosis or private medical conditions of patients could be disclosed to parties who do not have a right to access such information. Very recently, Hao et al. proposed a chaotic map-based authentication scheme for telecare medicine information systems in a recent issue of Journal of Medical Systems. They claimed that the authentication scheme can withstand various attacks and it is secure to be used in TMIS. In this paper, we show that this authentication scheme is vulnerable to key-compromise impersonation attacks, off-line password guessing attacks upon compromising of a smart card, and parallel session attacks. We also exploit weaknesses in the password change phase of the scheme to mount a denial-of-service attack. Our results show that this scheme cannot be used to provide security in a telecare medicine information system.
引用
收藏
页数:9
相关论文
共 50 条
  • [21] A Secure Authentication Scheme for Telecare Medicine Information Systems
    Wu, Zhen-Yu
    Lee, Yueh-Chun
    Lai, Feipei
    Lee, Hung-Chang
    Chung, Yufang
    JOURNAL OF MEDICAL SYSTEMS, 2012, 36 (03) : 1529 - 1535
  • [22] A Secure Authentication Scheme for Telecare Medicine Information Systems
    Zhen-Yu Wu
    Yueh-Chun Lee
    Feipei Lai
    Hung-Chang Lee
    Yufang Chung
    Journal of Medical Systems, 2012, 36 : 1529 - 1535
  • [23] Security Analysis and Improvement of a Privacy Authentication Scheme for Telecare Medical Information Systems
    Wu, Fan
    Xu, Lili
    JOURNAL OF MEDICAL SYSTEMS, 2013, 37 (04)
  • [24] Security analysis and Improvement of a Privacy Authentication Scheme for Telecare Medical Information Systems
    Fan Wu
    Lili Xu
    Journal of Medical Systems, 2013, 37
  • [25] A More Secure Authentication Scheme for Telecare Medicine Information Systems
    He Debiao
    Chen Jianhua
    Zhang Rui
    JOURNAL OF MEDICAL SYSTEMS, 2012, 36 (03) : 1989 - 1995
  • [26] A Biometric Authentication Scheme for Telecare Medicine Information Systems with Nonce
    Amit K. Awasthi
    Keerti Srivastava
    Journal of Medical Systems, 2013, 37
  • [27] An Efficient Chaotic Map-Based Authentication Scheme with Mutual Anonymity
    Zhou, Yousheng
    Zhou, Junfeng
    Wang, Feng
    Guo, Feng
    APPLIED COMPUTATIONAL INTELLIGENCE AND SOFT COMPUTING, 2016, 2016
  • [28] A Secure Biometrics-based Authentication Scheme for Telecare Medicine Information Systems
    Yan, Xiaopeng
    Li, Weiheng
    Li, Ping
    Wang, Jiantao
    Hao, Xinhong
    Gong, Peng
    JOURNAL OF MEDICAL SYSTEMS, 2013, 37 (05)
  • [29] A Secure Sketch-based Authentication Scheme for Telecare Medicine Information Systems
    Zhang, Min
    Zhang, Jia-Shu
    Tan, Wen-Rong
    JOURNAL OF INFORMATION SCIENCE AND ENGINEERING, 2016, 32 (02) : 389 - 402
  • [30] A More Secure Authentication Scheme for Telecare Medicine Information Systems
    He Debiao
    Chen Jianhua
    Zhang Rui
    Journal of Medical Systems, 2012, 36 : 1989 - 1995