Security Analysis of a Chaotic Map-based Authentication Scheme for Telecare Medicine Information Systems

被引:14
|
作者
Yau, Wei-Chuen [1 ]
Phan, Raphael C. -W. [1 ]
机构
[1] Multimedia Univ, Fac Engn, Cyberjaya, Selangor, Malaysia
关键词
Authentication; Password; Smart card; Telecare medicine information system; KEY; CRYPTANALYSIS; PROTOCOL; ATTACK;
D O I
10.1007/s10916-013-9993-9
中图分类号
R19 [保健组织与事业(卫生事业管理)];
学科分类号
摘要
Many authentication schemes have been proposed for telecare medicine information systems (TMIS) to ensure the privacy, integrity, and availability of patient records. These schemes are crucial for TMIS systems because otherwise patients' medical records become susceptible to tampering thus hampering diagnosis or private medical conditions of patients could be disclosed to parties who do not have a right to access such information. Very recently, Hao et al. proposed a chaotic map-based authentication scheme for telecare medicine information systems in a recent issue of Journal of Medical Systems. They claimed that the authentication scheme can withstand various attacks and it is secure to be used in TMIS. In this paper, we show that this authentication scheme is vulnerable to key-compromise impersonation attacks, off-line password guessing attacks upon compromising of a smart card, and parallel session attacks. We also exploit weaknesses in the password change phase of the scheme to mount a denial-of-service attack. Our results show that this scheme cannot be used to provide security in a telecare medicine information system.
引用
收藏
页数:9
相关论文
共 50 条
  • [31] A Biometric Authentication Scheme for Telecare Medicine Information Systems with Nonce
    Awasthi, Amit K.
    Srivastava, Keerti
    JOURNAL OF MEDICAL SYSTEMS, 2013, 37 (05)
  • [32] A Secure Biometrics-based Authentication Scheme for Telecare Medicine Information Systems
    Xiaopeng Yan
    Weiheng Li
    Ping Li
    Jiantao Wang
    Xinhong Hao
    Peng Gong
    Journal of Medical Systems, 2013, 37
  • [33] On the Security of a Two-Factor Authentication and Key Agreement Scheme for Telecare Medicine Information Systems
    Hamed Arshad
    Vahid Teymoori
    Morteza Nikooghadam
    Hassan Abbassi
    Journal of Medical Systems, 2015, 39
  • [34] On the Security of a Two-Factor Authentication and Key Agreement Scheme for Telecare Medicine Information Systems
    Arshad, Hamed
    Teymoori, Vahid
    Nikooghadam, Morteza
    Abbassi, Hassan
    JOURNAL OF MEDICAL SYSTEMS, 2015, 39 (08)
  • [35] An Enhanced Biometric Authentication Scheme for Telecare Medicine Information Systems with Nonce Using Chaotic Hash Function
    Ashok Kumar Das
    Adrijit Goswami
    Journal of Medical Systems, 2014, 38
  • [36] Robust and Efficient Biometrics Based Password Authentication Scheme for Telecare Medicine Information Systems Using Extended Chaotic Maps
    Lu, Yanrong
    Li, Lixiang
    Peng, Haipeng
    Xie, Dong
    Yang, Yixian
    JOURNAL OF MEDICAL SYSTEMS, 2015, 39 (06)
  • [37] An Efficient Chaotic Maps-Based Authentication and Key Agreement Scheme Using Smartcards for Telecare Medicine Information Systems
    Lee, Tian-Fu
    JOURNAL OF MEDICAL SYSTEMS, 2013, 37 (06)
  • [38] Robust and Efficient Biometrics Based Password Authentication Scheme for Telecare Medicine Information Systems Using Extended Chaotic Maps
    Yanrong Lu
    Lixiang Li
    Haipeng Peng
    Dong Xie
    Yixian Yang
    Journal of Medical Systems, 2015, 39
  • [39] An Efficient Chaotic Maps-Based Authentication and Key Agreement Scheme Using Smartcards for Telecare Medicine Information Systems
    Tian-Fu Lee
    Journal of Medical Systems, 2013, 37
  • [40] An Enhanced Biometric Authentication Scheme for Telecare Medicine Information Systems with Nonce Using Chaotic Hash Function
    Das, Ashok Kumar
    Goswami, Adrijit
    JOURNAL OF MEDICAL SYSTEMS, 2014, 38 (06)